MySQL ¹ØÓÚ½¨Á¢Íâ¼üʧ°ÜµÄÎÊÌâ
½ñÌ죬ÓÃNavicatΪÁ½ÕÅ±í½¨Á¢Í⽡¹ØÏµ£¬×ÜÊÇÌáʾ´´½¨Ê§°ÜÐÅÏ¢£¬·¢ÏÖÊÇÁ½ÕÅ±í¹ØÁªµÄ×Ö¶ÎÀàÐÍÎÊÌ⣬µ«Á½¸ö×ֶζ¼ÊÇintÐÍÁ¨£¬Ôõô»á»¹»áÀàÐͲ»Ò»ÖÂÄØ£¬×îºó·¢ÏÖµ½Ò»¸öµØ·½Óе㲻һÑù£¬¾ÍÊÇÔÚ“Éè¼Æ±í”½çÃæÏ·½Óиö“ÎÞ·ûºÅ”µÄ¸´Ñ¡¿ò£¬Á½ÕűíµÄÖ÷¼ü×Ö¶ÎÆäÖÐÒ»¸öû¹´Ñ¡ÉÏÕâ¸ö¸´Ñ¡¿ò¶øµ¼ÖÂËäÈ»¶¼ÊÇintÀàÐÍ£¬µ«Ò»¸öÊÇÎÞ·ûºÅÕûÐΣ¬Ò»¸ö²»ÊÇ¡£
Ïà¹ØÎĵµ£º
µ±ÄãÔËÐÐmysql commond line clientºó£¬»á¿´µ½Ìáʾ·û
ÊäÈëÃÜÂëºó½øÈëÈçÏÂÒ³Ãæ
ÕâÑùÄã¾Í¿ÉÒÔÔÚÕâ¸öDOS¿òÀïÊäÈëSQLÓï¾ä£¬Ö´ÐÐÁË¡£
1 ´´½¨Êý¾Ý¿âÃüÁî
ÔÚ´´½¨Êý¾Ý¿â֮ǰ¿ÉÒÔÊÇÓÃÃüÁî
show databases;
²é¿´ÓÐÄÇЩÊý¾Ý¿â£¬ÈçÏÂͼ
³õѧÕßÔÚÊäÈëÕâ¸öÃüÁîµÄʱºò»á¾³£Íü¼ÇDATABASESµÄ×îºóÒ»¸öS£¬¿ÉÒÔÏëÏñÔÚÊý¾Ý¿âÈí¼þÖв»Ö¹ ......
È¡µÃÎÄÕ¹ؼü×ÖΪkeywords
±ínewsµÄ¹Ø¼ü×Ö×Ö¶ÎΪkeyword
keywords=keywords.replace(',','|');
String sql="SELECT * from news WHERE keyword REGEXP '"+keywords+"' ORDER BY id ";
ÓÉÓÚijЩÔÒò£¬ÓÐʱºòÎÒÃÇûÓа´ÕÕ·¶Ê½µÄÉè¼Æ×¼Ôò¶ø°ÑһЩÊôÐԷŵ½Í¬Ò»¸ö×Ö·û´®×Ö¶ÎÖС£±ÈÈç¸öÈËÐËȤ£¬ÓÐʱºòÎÒÃÇÉè¼Æ±íΪ
cr ......
×î½üµÄÏîÄ¿ÖÐʹÓÃÁËMySQLÊý¾Ý¿â£¬Ò»Ð©MySQLµÄÐÂÓû§ÔÚÅäÖÃʹÓÃʱ»¹ÓÐЩ²»¹»ÊìÁ·£¬ÌØÔڴ˼Ǽ£¬·½±ã¿ª·¢ÍŶÓʹÓ㬸ÃÎÄÕÂËùÉæ¼°ÄÚÈݾù¿ÉÒÔÔÚMySQL²Î¿¼ÊÖ²áµÚ¶þÕ“°²×°MySQL”ÖÐÕÒµ½¡£MySQL°²×°ºó×Ô´øÁËÓ¢ÎIJο¼ÊֲᣬҲ¿ÉÒÔÔÚhttp://dev.mysql.com/doc/refman/5.1/zh/index.html²é¿´ÖÐÎİ汾£ ......
·ÀÖ¹×¢ÈëµÄ¼¸ÖÖ°ì·¨
ÆäʵÔÀ´¾ÍÊÇÎÒÃÇÐèÒª¹ýÂËһЩÎÒÃdz£¼ûµÄ¹Ø¼ü×ֺͷûºÏÈ磺
Select£¬insert£¬update£¬delete£¬and£¬*£¬µÈµÈ
function inject_check($sql_str) {
return eregi('select|insert|update|delete|\'|\/\*|\*|\.\.\/|\.\/|union|into|load_file
|outfile', $sql_str); & ......