doulei6330 2017-08-16 20:54
浏览 31
已采纳

php如果包含_get else则显示错误

I am somewhat a newby at PHP ... so what im trying to do is to get the the page using the following code

<?php include $_GET['topic']; ?> 

to get the url like this http://ulixtxteditor.org/entities/helpCentre?topic=credits that much works great for me however if no page is found i would like to use the else statement to display an error instead of a blank page. What should I do? ex: http://ulixtxteditor.org/entities/helpCentre?topic= so this part would display an error?

<?php if(isset){include $_GET['topic'];} else {echo "error"} ?>

I tried this but it wont work.

  • 写回答

3条回答 默认 最新

  • dqrsceg6279196 2017-08-16 21:14
    关注

    Use something like this:

    <?php
    // In case topic parameter wasn't provided you will have fallback.
    $topic = isset($_GET['topic']) ? $_GET['topic'] : '';
    // Now you can check topic and have valid file name.
    switch ($topic) {
        case 'credits':
            $fileName = 'credits.php';
            break;
        default:
            $fileName = 'index.php';
            break;
    }
    // Now it is possible safely include file.
    include __DIR__ . DIRECTORY_SEPARATOR . $fileName;
    

    Using $_GET['topic'] directly in include or require construction is unsafe because you vulnerable to "Directory traversal attack". Moreover you always must validate input parameters with purpose avoid include in php script css files etc...

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论
查看更多回答(2条)

报告相同问题?

悬赏问题

  • ¥15 关于#MATLAB#的问题,如何解决?(相关搜索:信噪比,系统容量)
  • ¥500 52810做蓝牙接受端
  • ¥15 基于PLC的三轴机械手程序
  • ¥15 多址通信方式的抗噪声性能和系统容量对比
  • ¥15 winform的chart曲线生成时有凸起
  • ¥15 msix packaging tool打包问题
  • ¥15 finalshell节点的搭建代码和那个端口代码教程
  • ¥15 Centos / PETSc / PETGEM
  • ¥15 centos7.9 IPv6端口telnet和端口监控问题
  • ¥20 完全没有学习过GAN,看了CSDN的一篇文章,里面有代码但是完全不知道如何操作