Ò׽ؽØÍ¼Èí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

hzhost·Àasp¹¥»÷º¯Êý

 



hzhost·Àasp¹¥»÷º¯Êý
Function SafeRequest(ParaName)
Dim ParaValue
ParaValue=Request(ParaName)
if IsNumeric(ParaValue)  then
SafeRequest=ParaValue
exit Function
else
ParaValuetemp=lcase(ParaValue)
tempvalue="select
|insert |delete from|'|count(|drop table|update |truncate 
|asc(|mid(|char(|xp_cmdshell|exec master|net localgroup
administrators|net user| or | and |%20from"
temps=split(tempvalue,"|")
for mycount=0 to ubound(temps)
if  Instr(ParaValuetemp,temps(mycount)) > 0 then
        call errorpage(-2,"·Ç·¨ÇëÇ󣡣¡£¡")
        response.end
end if
next
SafeRequest=ParaValue
end if
End function
'=================


Ïà¹ØÎĵµ£º

ASP±à³Ì¼¼Êõ

ActiveConnection ÉèÖûò·µ»ØCommand¶ÔÏóµÄÁ¬½ÓÐÅÏ¢£¬¸ÃÊôÐÔ¿ÉÒÔÊÇÒ»¸öConnection¶ÔÏó»òÁ¬½Ó×Ö·û´®¡£
CommandText ÉèÖûò·µ»Ø¶ÔÊý¾ÝÔ´µÄÃüÁî´®£¬Õâ¸ö´®¿ÉÒÔÊÇSQLÓï¾ä¡¢±í¡¢´¢´æ¹ý³Ì»òÊý¾ÝÌṩÕßÖ§³ÖµÄÈÎ ºÎÌØÊâÓÐЧµÄÃüÁîÎı¾¡£
Prepared Ìá³öÔÚµ÷ÓÃCommand¶ÔÏóµÄExecute·½·¨Ê±£¬ÊÇ·ñ½«²éѯµÄ±àÒë½á¹û´¢´æÏÂÀ´¡£Èç¹û½«¸ ......

aspºÍfsoʵÏÖн¨Îļþ¼Ð

'-------------------------------------------------------------------------------------------------------1.asp
<!--#include file="function.asp" -->
<%if Request.Cookies("venshop")("user_name")<>"" then%>
<script>
   function checkAll(){
   for (i=0;i&l ......

ASPÖÐÈçºÎÓÃJS´Ó×Ó´°¿Ú´«µÝÖµ±äÁ¿µ½¸¸´°¿Ú±íµ¥ÖÐ?


ASPÖÐÈçºÎÓÃJS´Ó×Ó´°¿Ú´«µÝÖµ±äÁ¿µ½¸¸´°¿Ú±íµ¥ÖÐ?
 ÐüÉÍ·Ö£º15 - ½â¾öʱ¼ä£º2008-6-10 00:06
¸¸´°¿ÚÖÐÓÐÒ»±íµ¥,ÏÖÔÚÊǵã±íµ¥ºóµÄÉÏ´«´ò¿ª×Ó´°¿Ú,¾­¹ýÎÞ×é¼þÉÏ´«Îļþ³É¹¦ºó×Ó´°¿ÚÌáʾ³É¹¦,²¢ÓÃresponse.write(FileName) Êä³ö·¾¶³É¹¦.µ«ÈçºÎ´«µÝµ½¸¸´°¿ÚÎı¾ÓòÄÚÌá½»Êý¾Ý¿âÄØ?²é×ÊÁÏÊÇÓÃJS»Ø´«Ð´³É: resp ......

ÕßÕßÈí¼þ ASPÈçºÎ»ñÈ¡ÕæÊµIPµØÖ·


ÔÚ ASP ÖÐʹÓàRequest.ServerVariables("REMOTE_ADDR") À´È¡µÃ¿Í»§¶ËµÄ IP µØÖ·£¬µ«Èç¹û¿Í»§¶ËÊÇʹÓôúÀí·þÎñ 
Æ÷À´·ÃÎÊ£¬ÄÇÈ¡µ½µÄ¾ÍÊÇ´úÀí·þÎñÆ÷µÄ IP µØÖ·£¬¶ø²»ÊÇÕæÕýµÄ¿Í»§¶Ë IP µØÖ·¡£ÒªÏë͸¹ý´úÀí·þÎñÆ÷È¡µÃ¿Í»§¶ËµÄÕæÊµ 
IP µØÖ·£¬¾ÍҪʹÓÃ& ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØÍ¼ | ¸ÓICP±¸09004571ºÅ