asp²ÎÊý´«µÝÎÊÌâ
request.queryString("act")="del"
id=request.queryString("id")
ÉϱßÊÇÒ»²¿·Ö²ÎÊý´«µÝµÄ´úÂë µØÖ·À¸µÄ²ÎÊýÊÇact
ÔõôÀí½âact
actÔÚÕâÀïÊDZäÁ¿»¹ÊÇÆäËû£¿
Ó¦¸ÃÊÇÅжÏÓï¾ä£¬²»ÊǸ³ÖµÓï¾ä, ¸ù¾ÝactµÄ²»Í¬Ö´Ðв»Í¬µÄ²Ù×÷¡£
if request.queryString("act")="del" then
....
ÏÖÔÚÊÇÃÔºýactµ½µ×ÊǸöʲô ÊDzÎÊý »¹ÊÇÊôÐÔ ÊÇ×Ô´øµÄ»¹ÊÇ×Ô¶¨ÒåµÄ
actÊÇurl´«µÝµÄ²ÎÊýѽ£¬ http://xxxx/xxx.asp?act=del&id=xx
ACTÊÇÓ¦¸ÃËãÊÇ×Ô¶¨ÒåµÄ¡£
ͬÒâ¶þÂ¥£¬request.queryString("act")="del" ¿Ï¶¨²»ÊÇÒ»¸ö¶ÀÁ¢µÄÓï¾ä£¬Ó¦¸ÃÊÇÒ»¸öÌõ¼þÓï¾ä£¬ÕâÒ»¾äÖеÄactÊÇÖ¸µØÖ·À¸Öеĺó׺²ÎÊý£¬id=request.queryString("id") Õâ¾äÖУ¬µÚÒ»¸öidÊÇÒ»¸ö±äÁ¿£¬ºóÃæµÄidÒ»ÑùÊÇÖ¸µØÖ·À¸Öеĺó׺²ÎÊý£¬Õû¾äµÄÒâ˼¾ÍÊÇ»ñÈ¡µØÖ·À¸²ÎÊýidµÄÖµ£¬²¢°ÑËü¸³Öµ¸ø±äÁ¿id
requestÖ»ÓÐgetûÓÐset £¨¿ÉÒÔÀí½âΪֻ¶Á£©
ÏÂÃæÊÇrequestµÄ´úÂëÔÐΣº
C# code:
public sealed class HttpRequest
{
......
public NameValueCollection QueryString { get; }
......
}
public class NameValueCollection : NameObject
Ïà¹ØÎÊ´ð£º
ÎÒÓÐÒ»¸öaspÔ´Â룬µ«ÊdzöÏÖÒ»¸öÎļþ£¬ÎÒÓÃasp½âÃܶ¼ÊÇÂÒÂë
Çë½Ì
VBScript code:
??
%# , #&')*)-0-(0%()(?
(((((((((((((((((((((((((( ......
<%if request.QueryString("start") <>"" then%>
<%if cint(start)>0 then%>
<a href="search.asp?q= <%=q%>&start= <%if request.Query ......
ÎÒ°ïѧУ×öÁËÒ»¸öÕ¾£®
ÔÚÐ£Ô°ÍøµÄÇé¿öÏ£¬Äܹ»µÇ½³É¹¦£¬ºǫ́ÕʺŶ¼ÄÜͨ¹ý£¬½øÈëºǫ́
µ«ÊÇÔÚÍâÍø£Á£ÄµÄÇé¿öÏ£¬Äܹ»µÇ½ºǫ́µÄÒ³Ãæ£¬Ò³ÃæÊÇ£Á£Ó£ÐÎļþ£®
µ«ÊÇÊäÈëÕʺźÍÃÜÂëµÄʱºò£¬ÍøÒ³ÔËÐкܾö¼ ......
Ò»¶Îʱ¼äºó ¾Í²»ÄÜÓõÄÄÇÖÖ
¿ÉÒÔÓÃ×é¼þдÂð?
×é¼þ ÊDz»ÊDZØÐëÏÈÔÚ·þÎñÆ÷°²×° ²ÅÄÜʹÓÃ?
ÄÇÓÃÐéÄâÖ÷»úµÄ ²»¾ÍûϷÁË....
ewebeditor¾ÍÊÇҪע²á²ÅÄÜÓõÄ
Ã²ËÆÊÇûɶÓõ ......
ÏÂÃæµÄ´úÂëÊÇÓÃaspÀ´ÏÂÔØexeÎļþµÄ£¬ºÍÖ±½ÓÏÂÔØexeµÄÇø±ð¾ÍÊÇËû±£´æµÄÎļþÃûÊÇ»ñÈ¡ä¯ÀÀÆ÷IDÉú³ÉµÄ¡£´úÂëÕý³£Ê¹Ó㬵«ÊÇÎÒÏ£ÍûÄܰÑFileName¸Ä³ÉÎïÀí·¾¶£¬¸ñʽÊÇ£ºd:/web/down/a.exe СµÜ²Ë²Ë£¬¸ßÊÖ°ïæ¡£
(Áí:ÎÒ¾ ......