Home > Backend Development > PHP Tutorial > ,关于xss跨站脚本

,关于xss跨站脚本

WBOY
Release: 2016-06-13 10:24:41
Original
965 people have browsed it

紧急求助,关于xss跨站脚本
我用360的安全检测扫描网站的时候扫描出来一个高危漏洞。
list.php?pid=6";alert(42873);"
当我用ie进入该url的时候会提示

虽然没有被执行,但是这样应该仍然会有潜在危险吧?

应该怎么避免?

------解决方案--------------------
htmlspecialchars()
------解决方案--------------------
你对 $_GET 操作有何用?
如果是威胁,依然通过 $_GET 进来了

你要检查的是源

Related labels:
source:php.cn
Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn
Popular Tutorials
More>
Latest Downloads
More>
Web Effects
Website Source Code
Website Materials
Front End Template