donglan9651 2018-07-19 06:54
浏览 49

JavaScript - PHP HttpRequest安全问题[重复]

I am creating an application using JavaScript and PHP.
I post my data to a PHP file and then the PHP file insert my data into the MySQL database. All good but I have some doubts about security because my dom can be easily manipulated using the browser.

For example my code like below

var req = {
            method: 'POST',
            url: 'phpfile/send_message.php',
            headers: {
                'Content-Type': undefined
            },
            data: {
                "UserId": UserId,
                "Message": Message,
                ...
                ..
            }
        };
        $http(req).then(function successCallback(response) {
                //Do Something
        }, function errorCallback(response) {
                //Do Something
        });

anyone can put a breakpoint in this code and easily can change the UserId, therefore, the message sends to another user.

Ok, I know I can minify my Script but I think this is not enough. If someone wants to change data, he can find the code easily.

Is there any way to prevent this? Any information you can provide me would be greatly appreciated.

</div>
  • 写回答

0条回答

    报告相同问题?

    悬赏问题

    • ¥15 关于#matlab#的问题:期望的系统闭环传递函数为G(s)=wn^2/s^2+2¢wn+wn^2阻尼系数¢=0.707,使系统具有较小的超调量
    • ¥15 FLUENT如何实现在堆积颗粒的上表面加载高斯热源
    • ¥30 截图中的mathematics程序转换成matlab
    • ¥15 动力学代码报错,维度不匹配
    • ¥15 Power query添加列问题
    • ¥50 Kubernetes&Fission&Eleasticsearch
    • ¥15 報錯:Person is not mapped,如何解決?
    • ¥15 c++头文件不能识别CDialog
    • ¥15 Excel发现不可读取的内容
    • ¥15 关于#stm32#的问题:CANOpen的PDO同步传输问题