Ò׽ؽØͼÈí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

È·±£PHP°²È«µÄËÄÌõ°²È«¹æÔò

ÓйØPHP
°²È«µÄ¼¸Ìõ¹æÔò
¹æÔò 1£º¾ø²»ÒªÐÅÈÎÍⲿÊý¾Ý»òÊäÈë
¹ØÓÚ Web Ó¦ÓóÌÐò°²È«ÐÔ£¬±ØÐëÈÏʶµ½µÄµÚÒ»¼þÊÂÊDz»Ó¦¸ÃÐÅÈÎÍⲿÊý¾Ý¡£ÍⲿÊý¾Ý£¨outside data£© °üÀ¨²»ÊÇÓɳÌÐòÔ±ÔÚ PHP

´úÂëÖÐÖ±½ÓÊäÈëµÄÈκÎÊý¾Ý¡£ÔÚ²ÉÈ¡´ëÊ©È·±£°²È«Ö®Ç°£¬À´×ÔÈκÎÆäËûÀ´Ô´£¨±ÈÈç GET ±äÁ¿¡¢±íµ¥ POST¡¢Êý¾Ý¿â¡¢ÅäÖÃÎļþ¡¢»á»°±äÁ¿»ò
cookie£©µÄÈκÎÊý¾Ý¶¼ÊDz»¿ÉÐÅÈεÄ
ÀýÈ磬ÏÂÃæµÄÊý¾ÝÔªËØ¿ÉÒÔ±»ÈÏΪÊÇ°²È«µÄ£¬ÒòΪËüÃÇÊÇÔÚ PHP
ÖÐÉèÖõġ£
Çåµ¥ 1. °²È«ÎÞϾµÄ´úÂë
ÒÔÏÂΪÒýÓõÄÄÚÈÝ£º
<?php
$myUsername = ‘tmyer’;
$arrayUsers =
array(’tmyer’, ‘tom’, ‘tommy’);
define(”GREETING”, ‘hello there’ .
$myUsername);
?>
µ«ÊÇ£¬ÏÂÃæµÄÊý¾ÝÔªËض¼ÊÇÓÐ覴õġ£
Çåµ¥ 2. ²»°²È«¡¢ÓÐ覴õĴúÂë
ÒÔÏÂΪÒýÓõÄÄÚÈÝ£º
<?php
$myUsername = $_POST['username'];
//tainted!
$arrayUsers = array($myUsername, ‘tom’, ‘tommy’);
//tainted!
define(”GREETING”, ‘hello there’ . $myUsername);
//tainted!
?>
Ϊ ʲôµÚÒ»¸ö±äÁ¿ $myUsername ÊÇÓÐ覴õģ¿ÒòΪËüÖ±½ÓÀ´×Ô±íµ¥
POST¡£Óû§¿ÉÒÔÔÚÕâ¸öÊäÈëÓòÖÐÊäÈëÈκÎ×Ö·û´®£¬°üÀ¨ÓÃÀ´Çå³ýÎļþ»òÔËÐÐÒÔÇ°ÉÏ´«µÄÎļþµÄ¶ñÒâÃüÁî¡£Äú¿ÉÄÜ»áÎÊ£¬“ÄѵÀ²»ÄÜʹÓÃÖ»½ÓÊÜ×Öĸ A-Z
µÄ¿Í»§¶Ë£¨Javascrīpt£©±íµ¥¼ìÑé½Å±¾À´±ÜÃâÕâÖÖΣÏÕÂ𣿔Êǵģ¬Õâ×ÜÊÇÒ»¸öÓкô¦µÄ²½Ö裬µ«ÊÇÕýÈçÔÚºóÃæ»á¿´µ½µÄ£¬ÈκÎÈ˶¼¿ÉÒÔ½«ÈÎºÎ±íµ¥ÏÂÔØ
µ½×Ô¼ºµÄ»úÆ÷ÉÏ£¬ÐÞ¸ÄËü£¬È»ºóÖØÐÂÌá½»ËûÃÇÐèÒªµÄÈκÎÄÚÈÝ¡£
½â¾ö·½°¸ºÜ¼òµ¥£º±ØÐë¶Ô $_POST['username'] ÔËÐÐÇåÀí´úÂë¡£Èç¹û²»Õâô×ö£¬ÄÇôÔÚʹÓà $myUsername
µÄÈκÎÆäËûʱºò£¨±ÈÈçÔÚÊý×é»ò³£Á¿ÖУ©£¬¾Í¿ÉÄÜÎÛȾÕâЩ¶ÔÏó¡£
¶ÔÓû§ÊäÈë½øÐÐÇåÀíµÄÒ»¸ö¼òµ¥·½·¨ÊÇ£¬Ê¹ÓÃÕýÔò±í´ïʽÀ´´¦ÀíËü¡£ÔÚÕâ¸öʾÀýÖУ¬Ö»Ï£Íû½ÓÊÜ×Öĸ¡£½«×Ö·û´®ÏÞÖÆΪÌض¨ÊýÁ¿µÄ×Ö·û£¬»òÕßÒªÇóËùÓÐ×Öĸ¶¼ÊÇСдµÄ£¬Õâ¿ÉÄÜÒ²ÊǸöºÃÖ÷Òâ¡£
Çåµ¥ 3. ʹÓû§ÊäÈë±äµÃ°²È« www~phperz~com
ÒÔÏÂΪÒýÓõÄÄÚÈÝ£º
<?php
$myUsername = cleanInput($_POST['username']);
//clean!
$arrayUsers = array($myUsername, ‘tom’, ‘tommy’);
//clean!
define(”GREETING”, ‘hello there’ .


Ïà¹ØÎĵµ£º

phpͨÓüì²âº¯Êý¼¯

ÍøÉÏÕÒµ½µÄ£º¹²ÏíÒ»ÏÂ
<?
//¡¾¾¯¸æ¡¿:δ¾­Ðí¿ÉÇëÎðËæ±ãÐÞ¸Ä
//-----------------------------------------------------------------------------------
-------
//-----------------------------------------------------------------------------------
-------
//
// ¡¾ÎļþÃû¡¿: c_check.inc
// ¡¾× ......

phpÊý¾Ýµ¼Èëµ¼³öÖ®excel(csvÎļþ)

ÒýÓõØÖ·£º
http://blog.csdn.net/conan_s/archive/2008/01/04/2025495.aspx
ÓÐʱд³ÌÐòʱºǫ́ҪÇó°Ñ´óÁ¿Êý¾Ýµ¼ÈëÊý¾Ý¿âÖУ¬±ÈÈ翼ÊԳɼ¨¡¢µç»°²¾µÈÒ»°ã¶¼ÊÇ´æ·ÅÔÚexcelÖеÄÊý¾Ý£¬ÕâʱÎÒÃÇ¿É°Ñexcelµ¼³ö³ÉcsvÎļþ£¬È»ºóͨ¹ýÒÔϳÌÐò¼´¿ÉÅúÁ¿µ¼ÈëÊý¾Ýµ½Êý¾Ý¿âÖÐ
ÉÏ´«cvs²¢µ¼Èëµ½Êý¾Ý¿âÖУ¬²âÊԳɹ¦£¨²¿·Ö´úÂë²»¹æ·¶£¬ÈçPH ......

¹ØÓÚPHPµÄ¼¸µãÎÊÌâ¼°½â¾ö·½·¨

1.ÅäÖÃIISϵÄPHP»·¾³
ÎÒÓõÄÊÇWindows server 2003+IIS 6.0+PHP,µ«¸Õ¿ªÊ¼ÓõÄPHP5.3£¬°´ÕÕÍøÉϵķ½·¨http://www.gzu521.com/campus/article/network/200902/182924.htmÒ»²½²½ÅäÖ㬵«Êǽá¹ûÔËÐгöÏÖÁËÒ»¸öÎÊÌ⣬¾ÍÊÇThe FastCGI Handler was unable to process the request.ÕÒÁ˺ܶà½â¾ö·½·¨µ«ÊÇ»¹ÊÇûÓнâ¾ö£¬×îºóÎÒ»»³É ......

ÓйØphp·ûºÅµÄ³õ²½×ܽá

PhpµÄ½Å±¾¿éÓйصķûºÅ£º
1,XML·ç¸ñ£ºÅ£È˼«¶ÈÍƼöµÄÓ÷¨<?php …?>¡£
2,¼ò¶Ì·ç¸ñ:<?...?>×î¼òµ¥£¬×ñÑ­SGML(±ê׼ͨÓñê¼ÇÓïÑÔ)´¦Àí˵Ã÷µÄ·ç¸ñ¡£ÒªÏëÓÃËü£¬Ò»¶¨Òª¿ªÆôshort_open_tagÑ¡Ï»òÕßÆôÓö̱ê¼ÇµÄÑ¡Ïî±àÒëphp¡£(³õѧÕß¿´ÕÅÀÏʦÊÓƵʱ£¬¾ÍÈÝÒ×·¸Ã»ÓпªÆô¶Ì±ê¼ÇµÄ´íÎó¡£¹úÍâÅ£È˲»ÍƼö£¬µ«ÏÖÔÚ¹ú ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØͼ | ¸ÓICP±¸09004571ºÅ