(PHP 4 >= 4.0.3, PHP 5, PHP 7)
is_uploaded_file — 锟叫讹拷锟侥硷拷锟角凤拷锟斤拷通锟斤拷 HTTP POST 锟较达拷锟斤拷
$filename
) : bool
锟斤拷锟� filename
锟斤拷锟斤拷锟斤拷锟斤拷锟侥硷拷锟斤拷通锟斤拷
HTTP POST 锟较达拷锟斤拷锟津返伙拷 TRUE
锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷锟饺凤拷锟斤拷锟斤拷锟斤拷锟矫伙拷锟睫凤拷锟斤拷骗锟脚憋拷去锟斤拷锟绞憋拷锟斤拷锟杰凤拷锟绞碉拷锟侥硷拷锟斤拷锟斤拷锟斤拷
/etc/passwd锟斤拷
锟斤拷锟街硷拷锟斤拷缘酶锟斤拷锟斤拷锟揭拷锟斤拷锟斤拷锟较达拷锟斤拷锟侥硷拷锟叫匡拷锟杰伙拷锟斤拷啥锟斤拷没锟斤拷锟较低筹拷锟斤拷锟斤拷锟斤拷没锟斤拷锟绞撅拷锟斤拷锟斤拷莸幕锟斤拷锟�
为锟斤拷锟斤拷使 is_uploaded_file() 锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷锟截讹拷指锟斤拷锟斤拷锟斤拷锟斤拷 $_FILES['userfile']['tmp_name'] 锟侥憋拷锟斤拷锟斤拷锟斤拷锟节从客伙拷锟斤拷锟较达拷锟斤拷锟侥硷拷锟斤拷 $_FILES['userfile']['name'] 锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷
filename
要锟斤拷锟斤拷锟侥硷拷锟斤拷锟斤拷
锟缴癸拷时锟斤拷锟斤拷 TRUE
锟斤拷 锟斤拷锟斤拷锟斤拷失锟斤拷时锟斤拷锟斤拷 FALSE
锟斤拷
Example #1 is_uploaded_file() 锟斤拷锟斤拷
<?php
if (is_uploaded_file($_FILES['userfile']['tmp_name'])) {
echo "File ". $_FILES['userfile']['name'] ." uploaded successfully.\n";
echo "Displaying contents\n";
readfile($_FILES['userfile']['tmp_name']);
} else {
echo "Possible file upload attack: ";
echo "filename '". $_FILES['userfile']['tmp_name'] . "'.";
}
?>