php×ܽᣨ5£©
showmessage()¡¢cpmsg()¡¢showsettings()
ÓÐÁ½¸öglobal.func.php·Ö±ðÔÚincludeÓëadminÀïÃæ¡£
forumdata´æ·Å»º´æ¡¢Ä£°å»º´æ¡¢ÉÏ´«¸½¼þµÈ£¬Òò´ËÊôÐÔ±ØÐëÊÇ777¡£
archiverÓëwap´æ·ÅÁËÁ½¸ö×Óϵͳ£¬·Ö±ðΪËÑË÷ÒýÇæºÍÊÖ»úÓû§×¼±¸µÄ
ÖØмÆËã»ý·ÖµÄÌõ¼þ£¬Óû§¿ÉÒÔ¶¨Òå×Ü»ý·Ö¼ÆË㹫ʽ£¬µ«Ä¬ÈÏÇé¿öÏ£¬×Ü»ý·ÖµÈÓÚ»ý·Ö1£¬updatecredits()£¬updatepostcredits()º¯ÊýÖØмÆËã»ý·Ö¡£
¶Ô$_GET¡¢$_POST¡¢$_COOKIEÊͷųÉÈ«¾Ö±äÁ¿£¬¶ÔÓÚÊý×éÖÐÒÔ_¿ªÍ·µÄKEY»á±»ºöÂÔ¡£
ÓÉÓÚËÑË÷ÒýÇæץȡµÄºÜƵ·±£¬Òò´Ë¿ÉÒÔ´Ó¼¼ÊõÉϽûÖ¹Ö©ÖëµÄ·ÃÎÊ£¬Discuz!»áÊä³öHTTP/1.1 403 Forbidden¡£
unset()º¯ÊýÓÃÀ´ÊÍ·ÅһЩ±äÁ¿£¬±£ÕÏ°²È«
preg_match("/[\d\.]{7,15}/", $onlineip, $onlineipmatches)ÓÃÀ´¶ÔIPµØÖ·×öһЩÑϸñ¹ýÂË¡£
onlineipÐèÒªÑϸñµÄУÑ飬ÒòΪHTTP_X_FORWARDED_FORÊDz»ÄÜÏàÐŵġ£
theads±íÓëposts±í¶¼ÓÐfid×ֶΣ¬ËäÈ»Êý¾Ý¿â½á¹¹ÓÐЩÈßÓ࣬µ«ÕâÑùµÄÉè¼ÆºÜ³£¼û£¬±ÜÃâ¹ý¶àµÄÁ¬±í²Ù×÷¡£
random() formhash() quescrypt() $_DSESSION['sid'] = random(6) $_DSESSION['seccode'] = random(6, 1) º¯Êý»áËæ»ú
filemtime()º¯ÊýÓÃÀ´È¡µÃÎļþµÄ×îºóÐÞ¸Äʱ¼ä£¬Ò²»á²úÉúIO²Ù×÷£¬½¨Òé·âװһϡ£
touch()º¯Êý¿ÉÒÔ²úÉúÒ»¸ö¿ÕÎļþ£¬Ò²¿ÉÒԸıäÎļþµÄ×îºó·ÃÎÊʱ¼ä£¬²»Ó°ÏìÄÚÈÝ¡£
sidÊÇcdb_sessions±íµÄÖ÷¼ü£¬cdb_sessions±íÊÇÒ»ÖÖÄÚ´æ±í£¬ÄÚ´æ±íÖв»ÄÜÉèÖÃtextÀàÐÍ×ֶΡ£
require¡¢includeµÄÇø±ð¡£
$_DCOOKIE¡¢$_DSESSION¡¢$_DCACHE
°æ±¾ÅжÏʹÓà PHP_VERSION > '5.1' --------------------------------------------------------------------------------------------
$a = file_get_contents() $b = ob_get_contents() readfile() $arr = file() Èç¹ûÄ£°åÌṩ´ò°üÉÏ´«¹¦ÄÜ£¬·þÎñÆ÷Ŀ¼ÐèÒªÉèÖóÉ777ÊôÐÔ¡£ forumdata cache log attachments discuz smtay
phpbb
Ä£°å´óÖ¿ÉÒԷֳɽâÊÍÐÍ¡¢±àÒëÐÍ¡¢±àÒ뻺´æÐÍ¡£ ¶ÔÓÚ¶à·ç¸ñ³ÌÐò£¬µ±Óû§Çл»·ç¸ñʱ£¬²»ÐèҪÿ´ÎÖØбàÒëÄ£°å¡
Ïà¹ØÎĵµ£º
¹«Ë¾MMʱ³£¸øÎÒһЩºÅÂë,È»ÎÒ²éѯÊÇÄļҵÄ,¶¼ÊÇtxtÎı¾¸ñʽµÄ,»¹ºÃºÅÂëÊÇÒ»ÐÐÒ»¸ö,ÓÚÊÇÓÃfile()º¯ÊýÈ¡¸öÊý×é,¿ªÊ¼µÄʱºòÎÒµÄwin7 32λµÄ¿ÉÒÔÓÃapacheºóÀ´×°64λwin7ÓÉÓÚûÕÒµ½ÔÉúµÄ64λapacheÓÚÊǾʹ«µ½·þÎñÆ÷ÉÏÿ´Î,ÓÐÉÏ´«ÓиÃÎļþºÜÂé·³,ÓÚÊÇ×ö³ÉÒ»¸öÒ³ÃæÈ¥ÈÃMM×Ô¼ºÍê³É.·Ï»°²»¶à˵ ÒªÔÚform±íµ¥ÀïÉÏ´«Îļþ¾ÍµÃÐèÒªÔÚ±í ......
»ù±¾ÔÀíÊÇ£ºÊ×ÏÈʹmcryptÈí¼þÄܹ»ÔËÐУ¬È»ºó°²×°phpÀ©Õ¹Ä£¿é£¬²¢ÔÚphp.iniÅäÖá£
ÕâÀï×¢ÒâµÄÊÇmcryptÈí¼þÒÀÀµlibmcryptºÍmhashÁ½¸ö¿â£¬ËùÒÔ°²×°ÅäÖÃ˳Ðò´ÓÓÒÖÁ×ó
Ò»,ÏÂÔØ°²×°mcrypt
1.ÏÈÈ¥http://www.sourceforge.netÏÂÔØLibmcrypt,mhash,mcrypt°²×°°ü ,ÏÂÃæÊÇÎÒÕÒµ½µÄÁ´½Ó
Libmcrypt(libmcrypt-2.5.8.t ......
֮ǰµÄ³ÌÐòÖУ¬ÔÚ·þÎñÆ÷ error_log ÖÐÒ»Ö±ÓÐÕâôһ¸ö´íÎóÌáʾ£º
[19-Nov-2009 22:44:50] PHP Fatal error: Cannot break/continue 1 level in /home/filename.php on line 160
µ«³ÌÐò»¹ÊÇ¿ÉÒÔ¼ÌÐøÖ´ÐÐÏÂÈ¥¡£
¾²éÔÄ×ÊÁÏ£¬ÓÐÕâôһ˵·¨£º
µ±²»ÔÚ LOOP »ò SELECT Âß¼Ìõ¼þÖÐʱ£¬Çë²»ÒªÓà break/continue À´ÖÐ ......
²»ÊǺÜÔÞͬʹÓÃsession ÿһ¸öphpµÄÒ³ÃæÔÚµ÷ÓÃsessionµÄʱºò¶¼±ØÐëÏÈÉùÃ÷session¡£
ÀýÈ磺ÔÚphpÎļþµÄ×îÇ°ÃæÉùÃ÷session;
<?php
session_start();//ÉùÃ÷session
$_SESSION['id']=$_POST['id'];//¸³Öµ
?>
Èç¹û²»ÕâÑùÉùÃ÷µÄ»°£¬Ò²Ãâ¾ÍÎÞ·¨»ñµÃÒѾ¶¨ÒåºÃµÄsessio ......
ÆÕͨË÷Òý ¹Ø×¢Õâ¸öÁРΨһË÷Òý Ö÷¼ü ¶àÁÐË÷Òý ¹Ø×¢¶à¸öÁÐ Àý£º¶àÁÐË÷Òý F1 F2 F3 µ¥²éF2»òF3Ë÷ÒýÎÞЧ Ë÷ÒýÊÇΪÁ˼ӿì¼ìË÷ Êý¾Ý¿â µÚÒ»·¶Ê½£º Ò»¸ö±íÖеÄÁÐÓ¦¸ÃÊDz»¿ÉÔٷֵģ¬È·±£ÁеÄÔ×ÓÐÔ µÚ¶þ·¶Ê½£º Ö»ÓÐÖ÷¼ü²ÅÄܱíÏÖÊý¾ÝÌØÕ÷£¬¶ø·ÇÖ÷¼üÁл¥²»¸ÉÉ棬ȷ±£Ê ......