if
(!empty($_POST[
'submit'
])) {
$name
=
basename($_FILES[
'file'
][
'name'
]);
$ext
=
pathinfo($name)[
'extension'
];
$blacklist
=
array(
"php"
,
"php7"
,
"php5"
,
"php4"
,
"php3"
,
"phtml"
,
"pht"
,
"jsp"
,
"jspa"
,
"jspx"
,
"jsw"
,
"jsv"
,
"jspf"
,
"jtml"
,
"asp"
,
"aspx"
,
"asa"
,
"asax"
,
"ascx"
,
"ashx"
,
"asmx"
,
"cer"
,
"swf"
);
if
(!in_array($ext, $blacklist)) {
if
(move_uploaded_file($_FILES[
'file'
][
'tmp_name'
], UPLOAD_PATH . $name)) {
echo
"<script>alert('上传成功')</script>"
;
echo
"上传文件相对路径<br>"
. UPLOAD_URL_PATH . $name;
}
else
{
echo
"<script>alert('上传失败')</script>"
;
}
}
else
{
echo
"<script>alert('文件类型不匹配')</script>"
;
}
}