×î½üÔÚ×öÒ»¸öPHPµÄÏîÄ¿(windowsϵͳ),·¢ÏÖphpͦ²»´íµÄ,ËùÒÔÏëÉîÈëÁ˽âphp¡£ÉÏÍø²éÁËÒ»ÏÂ,·¢Ïִ󲿷ֶ¼ÊÇÔÚlinuxϸãphp¿ª·¢µÄ,¿ÉÎÒ¶ÔlinuxÁ˽âºÜÉÙ¡£ÇëÎÊÔÚwindowsϸãphp¿ª·¢,ÒÔºóµÄ·¢Õ¹ÔõôÑù?
PHPÊÇWEB¿ª·¢ÓïÑÔ£¬¸úÓÃʲôϵͳûÓйØÏµ¡£
Ö»ÒªÓÐPHP»·¾³£¬¾Í¿ÉÒÔÔËÐУ¬Ö»ÒªÄã²»ÊÇÒª×Ô¼ºÅäÖ÷þÎñÆ÷£¬¶øÊÇÓÿռäÉ̵ģ¬ÄÇ ......
return t('Hello @name!', array('@name' => $name));
@ÊÇʲôÒâË¼ÄØ
Òþ²Ø´íÎóÐÅÏ¢¡£
Àý£º
$conn = mysqli_conncet("q","w","e","r");
ÕâÑù»áÊäÈë´íÎóÐÅÏ¢£¬¹ØÓÚÁ¬½ÓÊý¾Ý¿â·½ÃæµÄ¡£
Èç¹û$connÇ°Ãæ¼Ó@µÄ»°¾Í¿ÉÒÔ²»ÈÃËûÊä³ö´íÎóÐÅÏ¢ÁË
²¹ ......
class myclass
{
private $db;
function myclass()
{
$this->db= & new MyDB();
}
function get_nav()
{
$nav_ary=$this->db->db_nav();
return $nav_ary;
}
}
Õâ¶Î´úÂëÀïÃæ$nav_ary=$this->db->db_nav();Õâ¾ä»°³ö´í£¬ºÃÏñÊÇÈÏÎ ......
PHP code:
$test = "ive » MD.txt";
//"»" ÎªÌØÊâ×Ö·û
echo $test;
ÈçÉÏÊä³öÕý³££»£¨httpd.conf ÀïÃæÒ²ÅäÖóÉutf-8 £¬Ò³Ãæ¸ñʽҲÊÇutf-8¸ñʽ£©
¿ÉÊǵ±ÓÃURLÀ´´«µÝÖµµÄʱºò¾Í·¢ÉúÒì³£
Assembly code:
utf8.php?tmp=ive » MD.txt
PHP code:
$tmp = $_GET[& ......
php ÕýÔò´ÓÓÒÏò×óËÑË÷µÄÓï·¨ÈçºÎд°¡£¿
ÀýÈçÓÐÏÂÃæµÄÒ»¸ö×Ö·û´®£º
$str = "http://www.aaa.com/aa/aa/aa/aa.rar/.page";
ÒòΪaa.rarÖ®ºóµÄ×Ö·û´®Êǹ̶¨µÄ,֮ǰµÄ×Ö·û´®ÊDZ仯µÄûÓйæÂÉ¿ÉÑÔ£¬
ÆäʵÎÒ¾ÍÏëÆ¥ÅäµÃµ½aa.rar(.rarÊǹ̶¨µÄaa¼´ÎļþÃûÒ²²»Êǹ̶¨µÄ)
һʱÏë²»ÆðÀ´Ê²Ã´°ì·¨£¬ËùÒÔÏëÎÊһϴӺóÏòǰƥŠ......
ÎÒÔÚlinuxÏÂдphp´úÂ룬ͨ¹ýpidɱ½ø³Ì£¬Ö´ÐÐûÓдíÎóÌáʾ£¬µ«¾ÍÊDz»³É¹¦£¬Ö´ÐÐÍêºó½ø³Ìid»¹ÔÚ£¬ÓÐÈË˵ÊÇȨÏÞÎÊÌ⣬Çó½Ì£¬´úÂëÈçÏ£º
±ÈÈç˵½ø³ÌidΪ1208
PHP code:
<?php
shell_exec('kill 1208');
?>
¶àɱ¼¸´Î¡£ÓÐʱÓÃSHELL ¶¼²»ºÃɱ¡£¡£ºÎ¿öÓÃPHPµ÷
¸É´àÄã´òÃüÁîɱ¼¸´Î¿´¿´£¬ ÔÚwind ......