phpºÍoracleµÄÒ³ÃæµÇ¼ÎÊÌâ
Conn.phpÒ³Ãæ£º
[code=php]
<?php
$con = oci_connect("finaltest","finaltestpw","(DESCRIPTION =
(ADDRESS_LIST =
(ADDRESS = (PROTOCOL = TCP)(HOST = 172.19.101.72)(PORT = 1521))
)
(CONNECT_DATA =
(SERVICE_NAME = ENGDB01)
))
");
if (!$con)
{
die('Could not connect: ' . oci_error());
}
//echo "This is a test!";
?>
[/code]
¾²âÊÔ£¬´ËÒ³ÃæÃ»ÓÐÎÊÌâ¡£
µÇÂ¼Ò³ÃæÎÊÌⲿ·Ö£º
[code=php]
include('conn.php');
$sql = "SELECT * from \"BadDut.user\" WHERE \"Account\"='".strtolower($_POST["username"])."'" ;
//echo $sql;
$result = oci_parse($con,$sql);
oci_execute($result);
//echo $result;
oci_commit($con);
echo oci_num_rows($result);
if (oci_num_rows($result) == 0)
{
echo " <Script language='JavaScript'> alert('Username error!'); </Script>";
echo " <script>location.href='index.php' </script>";
oci_
Ïà¹ØÎÊ´ð£º
ÎÒÓÃPHPÀ©Õ¹Cʱ£¬ÓõÄÊÇÔ´ÂëextĿ¼ÏµÄ./ext_skel
×îºó±àÒë×ÜÊDz»ÄÜÉú³ÉÀ©Õ¹Ä£¿éµÄ.so¶¯Ì¬¿â£¬ÎÒÓõİ汾ÊÇ5.3.0£¬
ÕâÊÇÔõô»ØÊ£¬¸ßÊÖ½â´ðÏÂ
²»ÄÜÉú³ÉʱÓÐɶÌáʾÐÅÏ¢£¿
ÔËÐÐÁË/ext_skel --extname=Ä ......
<?php
if($_SERVER['HTTP_REFERER']!=''){
@header("Content-type:image/jpeg");
echo file_get_contents("xlight.jpg");
}
else{
@header("location:ht ......
ʹÓÃPHPµÄexecº¯Êýµ÷ÓÃlinuxµÄshellÃüÁÈçdateÈ¥ÐÞ¸Äʱ¼ä»òshutdownȥʵÏֹػú/ÖØÆô£¬µ«ÊÇ·µ»ØÖµ¶¼ÊÇʧ°ÜµÄ¡£¾¹ý¶à´ÎÊÔÑ飬È϶¨ÊÇûÓÐȨÏÞµÄÎÊÌâ¡£
ËùÒÔ£¬Ð¡µÜÔÚ´ËÇë½Ì¸÷룬ÈçºÎ²ÅÄÜÉèÖÃȨÏÞ£¬µ÷ÓÃlinux shellà ......
ÎÒÃÇÁ¥ÊôÖпÆÔº¼ÆËãËùÍøÂçÖØµãʵÑéÊÒ(http://www.ict.ac.cn/survey/channel/detail443.asp)»ù´¡ÉèÊ©¿ÎÌâ×é.
ÏÖÒòÏîÄ¿ºÍÒµÎñÍØÕ¹µÄÐèÒª,ÌØÐèÒªÕÐÆ¸ÓëÏîÄ¿Ïà¹ØµÄÍøÂçÓ¦Óù¤³Ìʦ1-2Ãû¡£
¾ßÌåÒªÇóÈçÏ¡£ÓÐÒâÕß ......
ÇëÎÊһϸ÷λ´óϺ£¬ÎÒÓÃphp×ö¸öÍøÒ³ÓÎÏ·£¬µ±È»ÊÇ×îÀ¬»øµÄÄÇÖÖhtmlµÄ£¬
ÏÖÔÚÎÒÏë°ÑËùÓÐÍæ¼ÒºÍ¹ÖÎnpcµÄÊý¾Ý´¢´æ£¬
µ±È»£¬Êý¾Ý¿âÖе±È»ÓУ¬µ«ÊÇÎÒÓÖ²»Ïë¹ý¶àµÄÈ¥²éѯÊý¾Ý¿â£¬
±ÈÈçÕ½¶·ÏµÍ³£¬¿Ï¶¨ÒªÏȳõʼ»¯Ë«·½Êý ......