1 Star 0 Fork 7

ctccaozhe / BlueLotus_XSSReceiver

forked from evlon / BlueLotus_XSSReceiver 
加入 Gitee
与超过 1200万 开发者一起发现、参与优秀开源项目,私有仓库也完全免费 :)
免费加入
克隆/下载
auth.php 1020 Bytes
一键复制 编辑 原始数据 按行查看 历史
Firesun 提交于 2017-02-18 17:07 . Version 3.5.1
<?php
if (!defined('IN_XSS_PLATFORM')) {
exit('Access Denied');
}
require_once("functions.php");
//设置httponly
ini_set("session.cookie_httponly", 1);
session_start();
//判断登陆情况,ip和useragent是否改变,改变则强制退出
if ( !(isset($_SESSION['isLogin']) && $_SESSION['isLogin'] === true && isset($_SESSION['user_agent']) && $_SESSION['user_agent'] != "" && $_SESSION['user_agent'] === $_SERVER['HTTP_USER_AGENT']) ) {
$_SESSION['isLogin'] = false;
$_SESSION['user_IP'] = "";
$_SESSION['user_agent'] = "";
session_unset();
session_destroy();
header("Location: login.php");
exit();
}
if ( ADMIN_IP_CHECK_ENABLE && !(isset($_SESSION['user_IP']) && $_SESSION['user_IP'] != "" && $_SESSION['user_IP'] === getRealIP()) ) {
$_SESSION['isLogin'] = false;
$_SESSION['user_IP'] = "";
$_SESSION['user_agent'] = "";
session_unset();
session_destroy();
header("Location: login.php");
exit();
}
//开启CSP
require_once("waf.php");
JavaScript
1
https://gitee.com/ctccaozhe/BlueLotus_XSSReceiver.git
git@gitee.com:ctccaozhe/BlueLotus_XSSReceiver.git
ctccaozhe
BlueLotus_XSSReceiver
BlueLotus_XSSReceiver
master

搜索帮助