[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fnC-HQGfjK3VLyL6fcjqShsUVZLgBYp1hMyj0njLuB84":3},{"answer":4,"createTime":5,"id":6,"options":7,"origin":12,"question":19,"related":20,"source":24,"type":25},[],"2025-03-06 15:32:17",178479611,[8,9,10,11],"远程文件访问","远程文件包含","远程文件执行","远程文件属性",{"count":13,"courseId":14,"courseImg":15,"courseName":16,"workId":17,"workName":18},5,"103d8527dfbc51c6688ae19081e419f9","https:\u002F\u002Ftihai-oss-cloud.itihey.com\u002Fimg\u002F9166cd7a18bd7b12e1cc6a687b62911c.png","Web渗透与防护","776aa2dc43354f5ca65059bac3607d06","小节测验-文件包含攻击的常用防护方法","低版本的PHP会自动开启( ),但是在PHP5.2之后,就关闭了该功能",[21,26,36,46,55],{"answer":22,"createTime":5,"id":6,"options":23,"question":19,"source":24,"type":25},[],[8,9,10,11],"v1",0,{"answer":27,"createTime":28,"id":29,"options":30,"question":35,"source":24,"type":25},[],"2025-03-06 15:32:18",178479612,[31,32,33,34],"输入过滤","黑名单","白名单","中间件","在impossible级的文件包含渗透测试环境中,使用了( )方式对文件包含攻击进行防护",{"answer":37,"createTime":28,"id":38,"options":39,"question":44,"source":24,"type":45},[],178479613,[40,41,42,43],"包含文件检验","路径限制","中间件配置","数据库配置","文件包含攻击的常用防护方法有( )",1,{"answer":47,"createTime":28,"id":48,"options":49,"question":54,"source":24,"type":45},[],178479614,[50,51,52,53],"设置数据库安全配置参数","设置黑名单或白名单","固定的文件后缀名","设置文件上传的路径","一般,我们可以通过( )等方式验证包含文件的合法性",{"answer":56,"createTime":28,"id":57,"options":58,"question":63,"source":24,"type":45},[],178479615,[59,60,61,62],"对输入的包含文件的目录进行合法性校验","限制用户可访问的目录","限制包含的文件只能在某一个目录下","禁止使用&quot;..\u002F&quot;等字符进行目录跳转","路径限制可以体现为( )"]