 |
|
|  |
POST, GETÀ¸·Î º¯¼ö°ªÀÌ ³Ñ¾î°¡Áö ¾Ê´Â °æ¿ì - register globals |
|
|
 |
12³â Àü |
PHP 4.2 ¹öÁ¯ÀÌ ³ª¿Â ÀÌÈÄ¿¡´Â À¥ÇÁ·Î±×·¡¹Ö¿¡¼ ¼ÕÀ» ¶Ã½À´Ï´Ù.
À̹ø ÁÖ¿¡ ³»°¡ ¸¸µç À¥¼Ò½ºµéÀ» Á¤¸®ÇØ µÎ·Á°í È£½ºÆÃÀ» Çϳª ¹Þ°í ¼Ò½º Æ÷Æÿ¡ µé¾î°¬½À´Ï´Ù.
±×·±µ¥ POST ¹æ½ÄÀ¸·Î º¯¼ö°ªÀ» ³Ñ±â´Â ºÎºÐ¿¡¼ º¯¼ö°ªÀÌ ³Ñ¾î°¡Áú ¾Ê½À´Ï´Ù.
¾ð¾îÄڵ带 EUC-KR¿¡¼ UTF-8 À¯´ÏÄÚµå·Î ¹Ù²Ù¾î¼ ±×·±°¡ ÇÏ°í ÇÑÂü ¾¾¸§À» Ç߳׿ä.
<form name="LoginForm" method="post" action="login_check.php" onsubmit="return check_submit();">
<input type="text" name="user_id" size="10" maxlength="10">
<input type="password" name="password" size="10" maxlength="10">
<input type="image" src="image/login_confirm.jpg" alt="·Î±×ÀÎ" width="220" height="60" border="0">
</form>
°á·ÐÀº PHP ¼³Á¤¿¡¼ º¸¾È¸ðµâÀÎ "register_globals"°¡ "off"·Î µÇ¾î ÀÖ¾î¼ ±×·¸´Ù´Â °ÍÀ» ¾Ë¾Ò½À´Ï´Ù.
PHP 4.2 ÀÌÀü¿¡´Â ±âº» ¼³Á¤°ªÀÌ "register_globals = on"À¸·Î µÇ¾î ÀÖ´Ù°¡,
±× ÀÌÈÄ¿¡´Â º¸¾È°ÈÀÇ ¸ñÀûÀ¸·Î "off"·Î ¼³Á¤ÀÌ º¯°æµÇ¾ú½À´Ï´Ù.
ÀÌ ¼³Á¤³»¿ëÀº php.ini ÆÄÀÏ¿¡ ÀÖÀ¸¸ç, "phpinfo();" ¸í·ÉÀ¸·Î °£´ÜÇÏ°Ô º¼ ¼ö ÀÖ½À´Ï´Ù.
¡Ø ÇØ°á¹æ¹ý
¼³Á¤À» "register_globals = on"À¸·Î ¹Ù²Ù¸é °£´ÜÇÏ°Ô ÇØ°áµÇÁö¸¸ º¸¾ÈÀÌ Ãë¾àÇØÁö¹Ç·Î
"register_globals = off" »óÅ·ΠµÎ°í, ¹Þ¾Æ¿À´Â º¯¼öÀÇ ÀüüÄڵ带 ´Ù ½áÁÖ¸é µË´Ï´Ù.
$HTTP_GET_VARS[º¯¼ö] ¶Ç´Â $_GET[º¯¼ö]
$HTTP_POST_VARS[º¯¼ö] ¶Ç´Â $_POST[º¯¼ö] ==> ¿¹: $_POST['user_id']
$HTTP_COOKIE_VARS[º¯¼ö] ¶Ç´Â $_COOKIE[º¯¼ö]
$HTTP_SESSION_VARS[º¯¼ö] ¶Ç´Â $_SESSION[º¯¼ö]
$HTTP_POST_FILES[º¯¼ö] ¶Ç´Â $_FILES[º¯¼ö]
±×¸®°í PHP 4.2 ÀÌÀü¿¡ ÀÛ¾÷ÇÑ ÇÁ·Î±×·¥À» ÀÌ¿¡ ¸Â°Ô ¼öÁ¤À» ÇؾßÇÒ °æ¿ì´Â
PHP ¼Ò½º »ó´Ü¿¡ extract ÇÔ¼ö¸¦ ½á¼ Àû¿ëÇÏ¸é ¿¹Àü ¼Ò½º¸¦ ±×´ë·Î ¾µ ¼ö ÀÖ½À´Ï´Ù.
ÀÌ ³»¿ëÀ» º°µµÀÇ PHP ÆÄÀÏ·Î ¸¸µé¾î¼ include ½ÃÅ°´Â °Íµµ ÇÑ ¹æ¹ýÀÌ µÉ °ÍÀÔ´Ï´Ù.
<?
extract($_POST);
extract($_GET);
extract($_SERVER);
extract($_FILES);
extract($_ENV);
extract($_COOKIE);
extract($_SESSION);
?>
¾îÂ÷ÇÇ ³»°¡ ¸¸µç PHP ÇÁ·Î½º·¥ ¼Ò½º¸¦ Çѹø Á¤¸®ÇÒ ¸ñÀûÀ̾úÀ¸¹Ç·Î
³ª´Â ÇϳªÇϳª º¯¼ö°ü·Ã Äڵ带 ¼öÁ¤ÇÏ¸é¼ Àüü ¼Ò½º¸¦ Á¡°ËÇغ¼ »ý°¢ÀÔ´Ï´Ù.
È®½ÇÈ÷ ÀÌ ºÐ¾ß´Â Áö¼ÓÀûÀ¸·Î °øºÎÇÏ°í Æ®·£µå¸¦ µû¶ó°¡Áö ¾ÊÀ¸¸é ¾ÈµË´Ï´Ù.
¿À·§¸¸¿¡ °Çµå¸®´Ï ¿ª½Ã ´ëÇü»ðÁúÀ» ÇØ¾ß Çϳ׿ä.^^
$HTTP_SESSION_VARS['var']
$_SESSION['var']
if (count($HTTP_GET_VARS)) {extract($HTTP_GET_VARS);}
if (count($HTTP_POST_VARS)) {extract($HTTP_POST_VARS);}
$PHP_SELF = $HTTP_SERVER_VARS[PHP_SELF];
$HTTP_REFERER = $HTTP_SERVER_VARS[HTTP_REFERER];
$REMOTE_ADDR = $HTTP_SERVER_VARS[REMOTE_ADDR];
|
|
̵̧ : 546 |
̵̧
¸ñ·Ï
|
|
|  |
|