phpÖÐset_include_pathº¯ÊýµÄÓ÷¨
phpÖÐset_include_pathº¯ÊýÓ÷¨£º
phpÖеÄset_include_pathº¯Êý¿ÉÓÃÓÚÉèÖÃÓ¦ÓóÌÐòĿ¼,¿ª·¢ÏîĿʱºÏÀíÓ¦ÓÃÕâЩº¯Êý,²»µ«¿ÉÒÔÈÃÎÒÃÇÔÚincludeʱ²»ÓÃÒ»²ãÒ»²ãµÄ¼ÆËãĿ¼,»¹¿ÉÒÔÌá¸ßÎÒÃÇ¿ª·¢µÄЧÂÊ,¼õÉÙÎļþ°üº¬´íÎóÂÊ.
ÀýÈ磺
¼òÀú2¸öphpÎļþ,Ò»¸öĿ¼
λÖýṹÈçÏÂ
/index.php
/include/config.php
index.php£º
<?php
set_include_path("include");
include("config.php");
?>
/include/config.php
ÒÔÏÂΪÒýÓõÄÄÚÈÝ£º
ÎÒÊÇincludeϵÄconfig.php
ÏÖÔÚÎÒÃÇÔËÐÐindex.php
ÔõôÑù,¿´µ½½á¹ûû
ÎÒÃÇincludeʱֻÓÃдconfig.php¾Í¿ÉÒÔ°Ñ/inlcude/config.php Îļþ°üº¬½øÀ´
É趨¶à¸öincludeĿ¼ʱÓà " ;" ºÅ·Ö¿ª
Èç: set_include_path("include;include2;include3;lib;c:\php\lib");
¿ÉÒÔÓÃÏà¶Ô·¾¶Ò²¿ÉÒÔÓþõ¶Ô·¾¶.
»òÐíÕâ¶ÎССµÄ´úÂëÄã¿ÉÄܸоõ²»³öset_include_pathµÄºÃ´¦,²»¹ý²»Òª½ô,ÄãÖ»Òª¼ÇסÕâô¸ö´úÂë¿ÉÒÔʵÏÖÕâÑùµÄ¹¦Äܼ´¿É,ÔÚÄãÒÔºó¼¼ÊõÌáÉÏÈ¥,¿ªÊ¼¿ª·¢´óÐÍÏîĿʱ²»ÒªÍüÁËÓÐÕâô¸öº¯Êý,Ëû¿ÉÒÔ¼õÉÙÄãµÄ¹¤×÷Á¿.
½ãÃú¯Êýget_include_path() ¿ÉÒÔ»ñÈ¡µ±Ê±µÄincludeĿ¼,
ʵÏÖset_include_pathͬÑù¹¦ÄܵϹÓÐÎÒÃÇÇ¿´óÓֿɰ®µÄini_set()
Ó÷¨:
ini_set('include_path', 'Ŀ¼Ãû');
Ïà¹ØÎĵµ£º
header("HTTP/1.0 400 Bad Request");¡¡·µ»Ø400´íÎó
header("HTTP/1.0 404 Not Found"); ·µ»Ø404´íÎó
header("Location:http://$host$uri/$extra"); Ìø×ª
//ÉèÖÃnocache¡¡£¬¹ýÆÚ
header
(
"Cache-Control: no-cache,
must-revalidate"
);
//
HTTP/1.1
header
(
&q ......
µ¥ÒýºÅ'ºÍË«ÒýºÅ"µÄÇø±ð£º
Ê×ÏÈÊǵ¥ÒýºÅÒª±ÈË«ÒýºÅÖ´ÐÐЧÂÊÒª¸ß£¬ÒòΪ˫ÒýºÅ»á¶ÔÄÚÈݽøÐÐÔ¤´¦Àí¡£
ÀýÈ磺'$value' Êä³ö×Ö·û $value ; "$value"Êä³ö±äÁ¿$valueµÄÖµ¡£
charºÍvarcharµÄÇø±ð£º
charÊǶ¨³¤¶øvarcharÊDZ䳤£¬charµÄÖ÷ÒªÌØµãÊÇ´æ´¢·½Ê½Ô¤·ÖÅ䣬varcharµ±ËüµÄÊý¾Ý³¤¶È·¢Éú±ä»¯Ê±»áÓ ......
×î½üÒ»Ö±ÔÚ×ö×Ô¼ºµÄͼÊéÕ¾£¬·Ö±ðʹÓùý½ÜÆæºÍ¶Á°ÉÁ½Ìײ»Í¬µÄϵͳ£¬¶ÔÓÚÕâÁ½Ì×ϵͳҲÊÇÓÖ°®ÓÖºÞ£¬°®µÄÊÇËûÃǵŦÄÜÇ¿´ó£¬ºÞËûÃǶ¼Í¬ÊôûÓпªÔ´¾«ÉñµÄ²úÎï¡£ºÇºÇ£¬×÷ΪһÃûÇî³ÌÐòÔ±£¬°³¿ÉÒÔÀí½â×÷ÕߵĿàÖÔ£¬ÕâÀï¾Í²»ÅúÅÐÁË¡£
Äê¼ÙÆÚ¼ä£¬ÎÞÊ¿É×ö£¬·¿´×Ô¼ºÒÔǰµÄ²É¼¯´úÂ룬·¢Ïֺܶà¿ÉÒÔÓÅ»¯ºÍÌáÉýµÄµØ·½£¬¾Í¼òµ¥×öÁËÏÂÓÅ» ......
ÊÜÓ°Ïìϵͳ£º
PHP PHP 5.2.x
²»ÊÜÓ°Ïìϵͳ£º
PHP PHP 5.2.11
ÃèÊö£º
BUGTRAQ ID: 36449
CVE ID: CVE-2009-3291,CVE-2009-3292,CVE-2009-3293,CVE-2009-3294
PHPÊǹ㷺ʹÓõÄͨÓÃÄ¿µÄ½Å±¾ÓïÑÔ£¬ÌرðÊʺÏÓÚWeb¿ª·¢£¬¿ÉǶÈëµ½HTMLÖС£
PHPµÄ5.2.11֮ǰ°æ±¾µÄ¶à¸öº¯ÊýÖдæÔÚ°²È«Â©¶´£¬¿ÉÄÜÔÊÐíÔ¶³Ì¹¥»÷Õßµ¼ ......