phpһЩ»ù´¡µÄÎÊÌâ - PHP / »ù´¡±à³Ì
¸Õ½Ó´¥php£¬Óм¸¸öµØ·½¸Ð¾õºÜ²»Çå³þ
1.±ÈÈçÓиöĿ¼
http://192.168.0.2/www/index.php
Ò»°ã´«µÝ²ÎÊýÓ¦¸ÃÏñÕâÑù
http://192.168.0.2/www/index.php?var=val,
Èç¹ûindex.phpĬÈϵϰӦ¸Ã¿ÉÒÔд³É
http://192.168.0.2/www/?var=val£¬
µ«ÎÒ¿´µ½µÄÊÇ
http://192.168.0.2/www/?val
ÕâÖÖÑùʽµÄ£¬why£¿ÈçºÎ»ñÈ¡ÄØ£¿£¨²»È·¶¨valÊDz»ÊÇÖµ£¬Ö»ÊǸоõÓ¦¸ÃÊÇ£©
2.ÉÏÃæµÄindex.phpÄÚÈÝÊÇ
PHP code:
header("location:./abc/index.php");
exit();
Õâ¸öÓ¦¸ÃÊÇÌø×ªµ½abcĿ¼µÄindex.phpÁË£¬¸Õ²Åhttp://192.168.0.2/www/?val ÖУ¬valÒ²´«¹ýÈ¥ÁË£¿
·¿´Ò»ÏÂwww/abc/index.php£¬·¢ÏÖ$_SCONFIG¡¢$_SGETÕâÑùµÄ±äÁ¿£¬ÊÇϵͳ±äÁ¿Ã´£¿
ÈçºÎÇø·ÖÊÇ×Ô¶¨Ò廹ÊÇϵͳµÄ£¿£¨ÓüÇʱ¾¿´µÄ£¬Ò²Ã»ÑÕÉ«Ìáʾ£©
ÎÊÌâÓеãÂÞ࣬²»¹ý¸Õ½Ó´¥phpȷʵÓеãÔΣ¬Íû¸÷λǰ±²Ö¸½Ì
²¹³ä¸öÎÊÌ⣺
3. $_GET["id"],Èç¹ûûÓд«¹ýÀ´»áÌáʾ Undefined index: id£¬Õâ¸öÔõô½â¾ö£¿¾ÍÊÇû´©¹ýÀ´¾ÍÊÇֵΪ¡°¡±¾ÍÊÇÁË£¿
ÎÊÌâ1:ºÃÏñÊÇ$_SERVER["QUERY_STRING"]£¿ÕâÑùдÓÐɶºÃµÄ¡£¡£
Õâ»°²»Ì«Ã÷°×£¬ÊÇ˵¡°var=val¡±±¾Éí¿ÉÒÔËãÒ»¸öÖµ£¿¾Í¿´ÎÒÔõô¿´ÁË£¿
ÆäËû»Ø´ðµÄͦÇå³þ¡£Ë¬¿ì
Ïà¹ØÎÊ´ð£º
×î½üÒ»¸öÏîÄ¿ÖÐÓöµ½Ò»¸öÎÊÌ⣺ÔÚÔÓеÄÒ»Ì×ϵͳÖÐ(php¿ª·¢)Ìí¼ÓһЩС¹¦ÄÜ(jsp¿ª·¢)£¬ÔÀ´Óû§ÏµÍ³¶¼ÊÇphp¿ª·¢µÄ£¬ÎÒÈçºÎÔÚjsp¿ª·¢µÄ¹¦ÄÜÖÐ×öµ½Óû§ÐÅÏ¢sessionͬ²½ÄØ£¿ ÓÐÈËÊÇ·ñÓÐ×ö¹ýÀàÒÔÏîÄ¿£¬ÏëÌýÌý´ó¼ÒµÄ¿´·¨
......
mssql_select_db("f1",mssql_connect("localhost","sa","sa"));
mssql_select_db("f2",mssql_connect("192.168.0.1","sa","sa") ......
ÔÚfirefoxä¯ÀÀÆ÷ÏÂÕý³£µÇ½£¬µ«ÔÚIE ä¯ÀÀÆ÷ÏÂÎÞ·¨µÇ½£¬Ã¿´Î¶¼»áÖØÐÂÉú³ÉÒ»¸ösession,ÔÀ´µÄÄÚÈݻᶪʧ¡£¡£¡£¡£¡£¡£¡£¡£¡£¡£Ôõô»ØÊÂ......
¾ßÌåÇé¿ö£¿²Â²â¿ÉÄÜÊÇÄã±¾»úIEµÄcookie±»½ûÓÃÁ˰ɣ¬¿ÉÒÔ¿´¿´
cookie Æ ......
ÏÖÓÐÒ»PHP¿Õ¼ä£¬Ö§³ÖMYSQLÊý¾Ý¿â
Ϊ½ÚÊ¡·ÑÓã¬ÏÖÏëͨ¹ýÓòÃûתÏòĿ¼ÐÎʽ½øÐйÜÀí£¨¼´½«ÓòÃûA¼Ç¼£Û°üÀ¨¶¥¼¶ÓòÃû¼°¶þ¼¶ÓòÃû£Ý¶¼Ö¸Ïòͬһ¿Õ¼ä£©
È磺·ÃÎÊÓòÃû abcd.cn Ö±½Ó·ÃÎÊÍøÕ¾¸ùĿ¼
·ÃÎʶþ¼¶ÓòÃû ef.abcd.cn ......
PHPÔõôÑù½«µÚÒ»¸ö±íµ¥µÄÖµ´«µ½µÚ¶þ¸ö±íµ¥
ûÓöµ½¹ý£¬°ï¶¥ÏÂ
ͨ¹ýcookie»òͨ¹ýphpÒ³Ãæ¸³Öµ
µÚÒ»¸ö±íµ¥Ìá½»µ½php£¬php»ñÈ¡ÔÙ´«µ½µÚ¶þ¸ö±íµ¥ÖÐ
ÓÃjs°É
»ñȡֵÔÚ·â×°±íµ¥¡£²»ÖªµÀÄãµÄÐèÇóÊÇÔõÑùµÄ
ÓÃjQ ......