donglan9651 2018-07-19 06:54
浏览 49

JavaScript - PHP HttpRequest安全问题[重复]

I am creating an application using JavaScript and PHP.
I post my data to a PHP file and then the PHP file insert my data into the MySQL database. All good but I have some doubts about security because my dom can be easily manipulated using the browser.

For example my code like below

var req = {
            method: 'POST',
            url: 'phpfile/send_message.php',
            headers: {
                'Content-Type': undefined
            },
            data: {
                "UserId": UserId,
                "Message": Message,
                ...
                ..
            }
        };
        $http(req).then(function successCallback(response) {
                //Do Something
        }, function errorCallback(response) {
                //Do Something
        });

anyone can put a breakpoint in this code and easily can change the UserId, therefore, the message sends to another user.

Ok, I know I can minify my Script but I think this is not enough. If someone wants to change data, he can find the code easily.

Is there any way to prevent this? Any information you can provide me would be greatly appreciated.

</div>
  • 写回答

0条回答 默认 最新

    报告相同问题?

    悬赏问题

    • ¥15 运筹学排序问题中的在线排序
    • ¥15 关于docker部署flink集成hadoop的yarn,请教个问题 flink启动yarn-session.sh连不上hadoop,这个整了好几天一直不行,求帮忙看一下怎么解决
    • ¥30 求一段fortran代码用IVF编译运行的结果
    • ¥15 深度学习根据CNN网络模型,搭建BP模型并训练MNIST数据集
    • ¥15 lammps拉伸应力应变曲线分析
    • ¥15 C++ 头文件/宏冲突问题解决
    • ¥15 用comsol模拟大气湍流通过底部加热(温度不同)的腔体
    • ¥50 安卓adb backup备份子用户应用数据失败
    • ¥20 有人能用聚类分析帮我分析一下文本内容嘛
    • ¥15 请问Lammps做复合材料拉伸模拟,应力应变曲线问题