Asp.netÖÐʹÓÃajax·þÎñÆ÷¶Ë·µ»ØµÄÖµµÄÎÊÌâ
ǰ̨´úÂë:
HTML code:
<%@ Page Language="C#" AutoEventWireup="true" CodeFile="Default4.aspx.cs" Inherits="Default4" %>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head runat="server">
<title></title>
<script type="text/javascript">
var xmlHttp;
function createXMLHttpRequest() {
if (window.ActiveXObject) {//ÅжÏÊÇ·ñÊÇIEºËÐÄä¯ÀÀÆ÷
var activexName = ["MSXML2.XMLHTTP", "Microsoft.XMLHTTP"];
for (var i = 0; i < activexName.length; i++) {
try {
xmlHttp = new ActiveXObject(activexName[i]);
break;
} catch (e) {
}
}
} else if (window.XMLHttpRequest) {//ÅжÏÊÇ·ñÊDZê×¼DOMä¯ÀÀÆ÷(Èç»ðºü¾ÍÊDZê×¼DOMä¯ÀÀÆ÷)
xmlHttp = new window.XMLHttpRequest();
}
}
function startRequest() {
createXMLHttpRequest();
xmlHttp.open("get", "Default4.aspx", true);
xmlHttp.onreadystatech
Ïà¹ØÎÊ´ð£º
ÎÒÔÚÒ»¸öASPXÒ³ÃæÖÐÓà <!-- #include file="top.asp"-->ǶÌ×ÁËÒ»¸öaspÒ³Ã棬µ«ÔÚµã»÷°´Å¥Ìá½»±íµ¥µÄʱºòûÓÐÈκη´Ó¦£¬ÊDz»ÊÇÁ½¸öFORMµÄÔÒòÔì³ÉµÄ£¬top.aspÀïÃæÒ²ÓÐÒ»¸öform£¬°ÑǶÌ×È¥µôµÄ»°£¬ÔËÐÐ ......
ÎÒÒѽ«Windows¿Ø¼þ³É¹¦Ó¦ÓÃÓÚAsp.netÖУ¬µ«Õâ¸ö¿Ø¼þ»¹Òª·ÃÎÊÊý¾Ý¿â¡¢½øÐб¾µØIO²Ù×÷¡¢´òÓ¡µÈ£¬Õâʱ¾Í»á³öÏÖ¡°Ó¦ÓóÌÐòÊÔͼִÐа²È«²ßÂÔ²»ÔÊÐíµÄ²Ù×÷¡±ÕâÑùµÄÌáʾ£¬Ó¦¸ÃÔõÑù¸øËüÊÚȨ£¿
ÔÚ¿Í»§¶ËÒªÅäÖÃ,ÔÊÐí¿Í»§¶ËÈ ......
ASP.NET ´íÎó ÎÞ·¨Ê¶±ðµÄ±ê¼Çǰ׺»òÉ豸ɸѡÆ÷¡°asp¡±
´úÂëÈçÏ£º
<%@ Page Language="C#" ContentType="text/xml" AutoEventWireup="true" CodeFile=" ......
ÔÚµ¯³ö¿òÖеã»÷Ò»¸ö°´Å¥£¬Ôõôµ÷תµ½ÁíÒ»¸öä¯ÀÀÆ÷£¬²¢ÇÒÔÚ¸Ãä¯ÀÀÆ÷´ò¿ªÁ½¸öÒ³Ãæ
ÄãµÄÒâ˼Ӧ¸ÃÊÇ
response.write("<script>alert('È·ÈÏ'); window.location.href('xxxx.aspx'); </script>"); ......