{"id":46903,"date":"2024-12-02T13:34:14","date_gmt":"2024-12-02T05:34:14","guid":{"rendered":"https:\/\/fwq.ai\/blog\/46903\/"},"modified":"2024-12-02T13:34:14","modified_gmt":"2024-12-02T05:34:14","slug":"php%e5%87%bd%e6%95%b0%e5%9c%a8%e5%ae%89%e5%85%a8%e5%bc%80%e5%8f%91%e4%b8%ad%e7%9a%84%e9%87%8d%e8%a6%81%e6%80%a7","status":"publish","type":"post","link":"https:\/\/fwq.ai\/blog\/46903\/","title":{"rendered":"PHP\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027"},"content":{"rendered":"<p><b><\/b> <\/p>\n<h1>PHP\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027<\/h1>\n<p>\u76ee\u524d\u7c73\u4e91\u4e0a\u5df2\u7ecf\u6709\u5f88\u591a\u5173\u4e8e<span style=\"color: #FF6600;, Helvetica, Arial, sans-serif;font-size: 14px;background-color: #FFFFFF\">\u6587\u7ae0<\/span>\u7684\u6587\u7ae0\u4e86\uff0c\u81ea\u5df1\u5728\u521d\u6b21\u9605\u8bfb\u8fd9\u4e9b\u6587\u7ae0\u4e2d\uff0c\u4e5f\u89c1\u8bc6\u5230\u4e86\u5f88\u591a\u5b66\u4e60\u601d\u8def\uff1b\u90a3\u4e48\u672c\u6587<span style=\"color: #FF6600;, Helvetica, Arial, sans-serif;font-size: 14px;background-color: #FFFFFF\">\u300aPHP\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027\u300b<\/span>\uff0c\u4e5f\u5e0c\u671b\u80fd\u5e2e\u52a9\u5230\u5927\u5bb6\uff0c\u5982\u679c\u9605\u8bfb\u5b8c\u540e\u771f\u7684\u5bf9\u4f60\u5b66\u4e60<span style=\"color: #FF6600;, Helvetica, Arial, sans-serif;font-size: 14px;background-color: #FFFFFF\">\u6587\u7ae0<\/span>\u6709\u5e2e\u52a9\uff0c\u6b22\u8fce\u52a8\u52a8\u624b\u6307\uff0c\u8bc4\u8bba\u7559\u8a00\u5e76\u5206\u4eab~<\/p>\n<p>PHP\u5185\u7f6e\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027\uff1a\u9a8c\u8bc1\u7528\u6237\u8f93\u5165\uff1afilter_input()\u3001preg_match()\u3001ctype_*\u6e05\u7406\u6570\u636e\uff1ahtmlentities()\u3001strip_tags()\u3001nl2br()\u5904\u7406\u654f\u611f\u4fe1\u606f\uff1amd5\u3001sha1\u3001hashbase64_encode\u3001base64_decodeopenssl_encrypt\u3001openssl_decrypt<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.17golang.com\/uploads\/20241025\/1729853872671b79b03914a.jpg\" class=\"aligncenter\" title=\"PHP\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027\u63d2\u56fe\" alt=\"PHP\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027\u63d2\u56fe\" \/><\/p>\n<p><strong>PHP \u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027<\/strong><\/p>\n<p>\u5728 PHP Web \u5f00\u53d1\u4e2d\uff0c\u4f7f\u7528\u5185\u7f6e\u51fd\u6570\u786e\u4fdd\u5e94\u7528\u7a0b\u5e8f\u5b89\u5168\u81f3\u5173\u91cd\u8981\u3002\u8fd9\u4e9b\u51fd\u6570\u901a\u8fc7\u9a8c\u8bc1\u7528\u6237\u8f93\u5165\u3001\u6e05\u7406\u6570\u636e\u548c\u5904\u7406\u654f\u611f\u4fe1\u606f\u6765\u4fdd\u62a4\u5e94\u7528\u7a0b\u5e8f\u514d\u53d7\u653b\u51fb\u3002<\/p>\n<p><strong>\u9a8c\u8bc1\u7528\u6237\u8f93\u5165<\/strong><\/p>\n<ul>\n<li><code>filter_input()<\/code> \u51fd\u6570\u53ef\u4ece\u4e0d\u540c\u6e90\uff08\u5982 GET \u548c POST \u8bf7\u6c42\uff09\u9a8c\u8bc1\u548c\u8fc7\u6ee4\u7528\u6237\u8f93\u5165\u3002<\/li>\n<li><code>preg_match()<\/code> \u51fd\u6570\u53ef\u4f7f\u7528\u6b63\u5219\u8868\u8fbe\u5f0f\u9a8c\u8bc1\u7279\u5b9a\u6a21\u5f0f\u7684\u8f93\u5165\u3002<\/li>\n<li><code>ctype_*<\/code> \u51fd\u6570\u53ef\u68c0\u6d4b\u8f93\u5165\u5b57\u7b26\u4e32\u7684\u7c7b\u578b\uff08\u4f8b\u5982\uff0c\u6570\u5b57\u3001\u5b57\u6bcd\uff09\u3002<\/li>\n<\/ul>\n<p><strong>\u6e05\u7406\u6570\u636e<\/strong><\/p>\n<ul>\n<li><code>htmlentities()<\/code> \u51fd\u6570\u53ef\u5c06 HTML \u5b57\u7b26\u8f6c\u6362\u4e3a HTML \u5b9e\u4f53\uff0c\u9632\u6b62\u8de8\u7ad9\u70b9\u811a\u672c (XSS) \u653b\u51fb\u3002<\/li>\n<li><code>strip_tags()<\/code> \u51fd\u6570\u53ef\u79fb\u9664 HTML \u548c PHP \u6807\u7b7e\uff0c\u9632\u6b62\u6ce8\u5165\u653b\u51fb\u3002<\/li>\n<li><code>nl2br()<\/code> \u51fd\u6570\u53ef\u5c06\u6362\u884c\u7b26\u8f6c\u6362\u4e3a <code>&lt;br&gt;<\/code> \u6807\u7b7e\uff0c\u9632\u6b62\u4ee3\u7801\u6ce8\u5165\u3002<\/li>\n<\/ul>\n<p><strong>\u5904\u7406\u654f\u611f\u4fe1\u606f<\/strong><\/p>\n<ul>\n<li><code>md5()<\/code>\u3001<code>sha1()<\/code>\u3001<code>hash()<\/code> \u51fd\u6570\u53ef\u5bf9\u5bc6\u7801\u548c\u5176\u4ed6\u654f\u611f\u4fe1\u606f\u8fdb\u884c\u54c8\u5e0c\u5904\u7406\uff0c\u9632\u6b62\u5bc6\u7801\u660e\u6587\u5b58\u50a8\u3002<\/li>\n<li><code>base64_encode()<\/code>\u3001<code>base64_decode()<\/code> \u51fd\u6570\u53ef\u5bf9\u6570\u636e\u8fdb\u884c Base64 \u7f16\u7801\/\u89e3\u7801\uff0c\u9632\u6b62\u6570\u636e\u4f20\u8f93\u4e2d\u7684\u7a83\u53d6\u3002<\/li>\n<li><code>openssl_encrypt()<\/code>\u3001<code>openssl_decrypt()<\/code> \u51fd\u6570\u53ef\u4f7f\u7528 OpenSSL \u5e93\u5bf9\u6570\u636e\u8fdb\u884c\u52a0\u5bc6\/\u89e3\u5bc6\uff0c\u786e\u4fdd\u673a\u5bc6\u6027\u3002<\/li>\n<\/ul>\n<p><strong>\u5b9e\u6218\u6848\u4f8b<\/strong><\/p>\n<p>\u4ee5\u4e0b\u4ee3\u7801\u6f14\u793a\u4f7f\u7528 <code>filter_input()<\/code> \u9a8c\u8bc1\u7528\u6237\u8f93\u5165\u5e76\u4f7f\u7528 <code>htmlentities()<\/code> \u6e05\u7406\u6570\u636e\uff1a<\/p>\n<pre>&lt;?php\n\/\/ \u83b7\u53d6\u7528\u6237\u8f93\u5165\n$username = filter_input(INPUT_POST, 'username', FILTER_SANITIZE_STRING);\n\n\/\/ \u6e05\u7406\u8f93\u5165\n$username = htmlentities($username);\n\n\/\/ \u5904\u7406\u540e\u7684\u8f93\u5165\necho \"\u7528\u6237\u540d\uff1a{$username}\";\n?&gt;<\/pre>\n<p>\u901a\u8fc7\u4f7f\u7528\u8fd9\u4e9b\u5185\u7f6e\u51fd\u6570\uff0cPHP \u5f00\u53d1\u4eba\u5458\u53ef\u4ee5\u663e\u8457\u63d0\u9ad8\u5e94\u7528\u7a0b\u5e8f\u7684\u5b89\u5168\u6027\uff0c\u9632\u6b62\u6570\u636e\u6cc4\u9732\u3001\u6ce8\u5165\u653b\u51fb\u548c XSS \u653b\u51fb\u3002<\/p>\n<p>\u597d\u4e86\uff0c\u672c\u6587\u5230\u6b64\u7ed3\u675f\uff0c\u5e26\u5927\u5bb6\u4e86\u89e3\u4e86\u300aPHP\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027\u300b\uff0c\u5e0c\u671b\u672c\u6587\u5bf9\u4f60\u6709\u6240\u5e2e\u52a9\uff01\u5173\u6ce8\u7c73\u4e91\u516c\u4f17\u53f7\uff0c\u7ed9\u5927\u5bb6\u5206\u4eab\u66f4\u591a\u6587\u7ae0\u77e5\u8bc6\uff01<\/p>\n","protected":false},"excerpt":{"rendered":"<p>PHP\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027 \u76ee\u524d\u7c73\u4e91\u4e0a\u5df2\u7ecf\u6709\u5f88\u591a\u5173\u4e8e\u6587\u7ae0\u7684\u6587\u7ae0\u4e86\uff0c\u81ea\u5df1\u5728\u521d\u6b21\u9605\u8bfb\u8fd9\u4e9b\u6587\u7ae0\u4e2d\uff0c\u4e5f\u89c1\u8bc6\u5230\u4e86\u5f88\u591a\u5b66\u4e60\u601d\u8def\uff1b\u90a3\u4e48\u672c\u6587\u300aPHP\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027\u300b\uff0c\u4e5f\u5e0c\u671b\u80fd\u5e2e\u52a9\u5230\u5927\u5bb6\uff0c\u5982\u679c\u9605\u8bfb\u5b8c\u540e\u771f\u7684\u5bf9\u4f60\u5b66\u4e60\u6587\u7ae0\u6709\u5e2e\u52a9\uff0c\u6b22\u8fce\u52a8\u52a8\u624b\u6307\uff0c\u8bc4\u8bba\u7559\u8a00\u5e76\u5206\u4eab~ PHP\u5185\u7f6e\u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027\uff1a\u9a8c\u8bc1\u7528\u6237\u8f93\u5165\uff1afilter_input()\u3001preg_match()\u3001ctype_*\u6e05\u7406\u6570\u636e\uff1ahtmlentities()\u3001strip_tags()\u3001nl2br()\u5904\u7406\u654f\u611f\u4fe1\u606f\uff1amd5\u3001sha1\u3001hashbase64_encode\u3001base64_decodeopenssl_encrypt\u3001openssl_decrypt PHP \u51fd\u6570\u5728\u5b89\u5168\u5f00\u53d1\u4e2d\u7684\u91cd\u8981\u6027 \u5728 PHP Web \u5f00\u53d1\u4e2d\uff0c\u4f7f\u7528\u5185\u7f6e\u51fd\u6570\u786e\u4fdd\u5e94\u7528\u7a0b\u5e8f\u5b89\u5168\u81f3\u5173\u91cd\u8981\u3002\u8fd9\u4e9b\u51fd\u6570\u901a\u8fc7\u9a8c\u8bc1\u7528\u6237\u8f93\u5165\u3001\u6e05\u7406\u6570\u636e\u548c\u5904\u7406\u654f\u611f\u4fe1\u606f\u6765\u4fdd\u62a4\u5e94\u7528\u7a0b\u5e8f\u514d\u53d7\u653b\u51fb\u3002 \u9a8c\u8bc1\u7528\u6237\u8f93\u5165 filter_input() \u51fd\u6570\u53ef\u4ece\u4e0d\u540c\u6e90\uff08\u5982 GET \u548c POST \u8bf7\u6c42\uff09\u9a8c\u8bc1\u548c\u8fc7\u6ee4\u7528\u6237\u8f93\u5165\u3002 preg_match() \u51fd\u6570\u53ef\u4f7f\u7528\u6b63\u5219\u8868\u8fbe\u5f0f\u9a8c\u8bc1\u7279\u5b9a\u6a21\u5f0f\u7684\u8f93\u5165\u3002 ctype_* \u51fd\u6570\u53ef\u68c0\u6d4b\u8f93\u5165\u5b57\u7b26\u4e32\u7684\u7c7b\u578b\uff08\u4f8b\u5982\uff0c\u6570\u5b57\u3001\u5b57\u6bcd\uff09\u3002 \u6e05\u7406\u6570\u636e htmlentities() \u51fd\u6570\u53ef\u5c06 HTML \u5b57\u7b26\u8f6c\u6362\u4e3a HTML \u5b9e\u4f53\uff0c\u9632\u6b62\u8de8\u7ad9\u70b9\u811a\u672c (XSS) \u653b\u51fb\u3002 strip_tags() \u51fd\u6570\u53ef\u79fb\u9664 HTML \u548c PHP \u6807\u7b7e\uff0c\u9632\u6b62\u6ce8\u5165\u653b\u51fb\u3002 nl2br() \u51fd\u6570\u53ef\u5c06\u6362\u884c\u7b26\u8f6c\u6362\u4e3a &lt;br&gt; \u6807\u7b7e\uff0c\u9632\u6b62\u4ee3\u7801\u6ce8\u5165\u3002 \u5904\u7406\u654f\u611f\u4fe1\u606f md5()\u3001sha1()\u3001hash() \u51fd\u6570\u53ef\u5bf9\u5bc6\u7801\u548c\u5176\u4ed6\u654f\u611f\u4fe1\u606f\u8fdb\u884c\u54c8\u5e0c\u5904\u7406\uff0c\u9632\u6b62\u5bc6\u7801\u660e\u6587\u5b58\u50a8\u3002 base64_encode()\u3001base64_decode() \u51fd\u6570\u53ef\u5bf9\u6570\u636e\u8fdb\u884c Base64 \u7f16\u7801\/\u89e3\u7801\uff0c\u9632\u6b62\u6570\u636e\u4f20\u8f93\u4e2d\u7684\u7a83\u53d6\u3002 openssl_encrypt()\u3001openssl_decrypt() \u51fd\u6570\u53ef\u4f7f\u7528 OpenSSL \u5e93\u5bf9\u6570\u636e\u8fdb\u884c\u52a0\u5bc6\/\u89e3\u5bc6\uff0c\u786e\u4fdd\u673a\u5bc6\u6027\u3002 \u5b9e\u6218\u6848\u4f8b \u4ee5\u4e0b\u4ee3\u7801\u6f14\u793a\u4f7f\u7528 filter_input() \u9a8c\u8bc1\u7528\u6237\u8f93\u5165\u5e76\u4f7f\u7528 htmlentities() [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[16],"tags":[],"class_list":["post-46903","post","type-post","status-publish","format-standard","hentry","category-16"],"_links":{"self":[{"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/posts\/46903","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/comments?post=46903"}],"version-history":[{"count":0,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/posts\/46903\/revisions"}],"wp:attachment":[{"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/media?parent=46903"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/categories?post=46903"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/tags?post=46903"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}