????6. ???????????? HTTP ????
??????????????web?????л????????web.xml????????????????????ò????HTTP????
????<!--???????????????ò????HTTP???? -->
????<security-constraint>
????<web-resource-collection>
????<url-pattern>/*</url-pattern>
????<http-method>PUT</http-method>
????<http-method>DELETE</http-method>
????<http-method>HEAD</http-method>
????<http-method>OPTIONS</http-method>
????<http-method>TRACE</http-method>
????</web-resource-collection>
????<auth-constraint></auth-constraint>
????</security-constraint>
????<login-config>
????<auth-method>BASIC</auth-method>
????</login-config>
????7. ?? cookie ?????HttpOnly????
???????????????????????????????????????趨
????//????????cookie???????????????????????????
????resp.setHeader("Set-Cookie"?? "name="+newSimpleDateFormat("yyyy-MM-ddHH:mm:ss").format(new Date())+"; Secure; HttpOnly");
????8. ???? Web ??ó????????й???
?????????????????????г????????????????????
????9. ?????дδ????????ν???? HTML ????
????????????????????????????autocomplete="off" ????
????10. ??????? IP й???
??????????????????г????IP????????????
????11. ?????ó????????
??????????????????г????????????????????????????????????test.php??test.asp??test.cgi??test.html ????????Щ????????????????????????????????????????test??old???
????12. Unix ??????????
?????????????????????????????????????????????????????????“..”?????????????????????????????????ο????1.SQL??????д???????????
????13. Windows ??????????
?????????????????????????????????????????????????????????“..”?????????????????????????????????ο????1.SQL??????д???????????
????14. ?????????????????α??
?????????????????????????????????????????????????????ж??????????????????????????????????????????????????????????Σ????????????? ???????????????ó?????м????????????磺??????? SQL ????????????????е?Javascript???????и??????????????????????ο????1.SQL??????д?? ??3.?????????α?? ??????????
????15. ?????????
?????????????????????????????????????????????????????ж??????????????????????????????????????????????????????????Σ????????????? ???????????????ó?????м????????????磺??????? SQL ????????????????е?Javascript???????и??????????????????????ο????1.SQL??????д?? ??3.?????????α?? ??????????
????16. ????????????
??????????????????????????????????????????????????????????????
????17. ??????????汾
?????????????????????п???“Copy of”??“_”??“.”??“~”??“Old”??????????????
????18. ???????????????
??????????????????г??????????????????????
????19. HTML ?????????й?
?????????????????????г?????????????????????????????????????????????????IP??????