ASPÈëÃÅÓëʵÀý
1¡¢ÔËÐл·¾³ÓëÈí¼þÒªÇó
Windows 2000 ÒÔÉÏ £¨²»°üÀ¨Windows XP Home°æ£©
IIS 4.0 ÒÔÉÏ
Microsoft Access 2000
Dreamweaver MX
2¡¢IISµÄ°²×°ÓëÅäÖÃ
a.°²×°IIS
Èô²Ù×÷ϵͳÖл¹Î´°²×°IIS·þÎñÆ÷£¬¿É´ò¿ª“¿ØÖÆÃæ°å”£¬È»ºóµ¥»÷Æô¶¯ “Ìí¼Ó/ɾ³ý³ÌÐò”£¬ ÔÚµ¯³öµÄ¶Ô»°¿òÖÐÑ¡Ôñ “Ìí¼Ó/ɾ³ýWindows×é¼þ”£¬ÔÚWindows×é¼þÏòµ¼¶Ô»°¿òÖÐÑ¡ÖГInternetÐÅÏ¢·þÎñ£¨IIS£©”£¬È»ºóµ¥»÷“ÏÂÒ»²½”£¬°´Ïòµ¼Ö¸Ê¾£¬Íê³É¶ÔIISµÄ°²×°¡££¨Í¼ÀýÈçÏÂͼ1¡¢Í¼2 ÓÉÓڰײè123ʹÓõÄÊÇWindows Server 2003²Ù×÷ϵͳËùÒԺʹó¼ÒµÄ°²×°½çÃæÓÐËù³öÈ룬µ«´óÌåÏàͬ£©
´ËÖ÷ÌâÏà¹ØÍ¼Æ¬ÈçÏ£º
ͼ1—windows×é¼þÏòµ¼1
´ËÖ÷ÌâÏà¹ØÍ¼Æ¬ÈçÏ£º
ͼ2—windows×é¼þÏòµ¼2
b.Æô¶¯InternetÐÅÏ¢·þÎñ£¨IIS£©
InternetÐÅÏ¢·þÎñ¼ò³ÆÎªIIS£¬µ¥»÷Windows¿ªÊ¼²Ëµ¥---ËùÓгÌÐò---¹ÜÀí¹¤¾ß---InternetÐÅÏ¢·þÎñ£¨IIS£©¹ÜÀíÆ÷£¬¼´¿ÉÆô¶¯“InternetÐÅÏ¢·þÎñ”¹ÜÀí¹¤¾ß£¨Èçͼ3£©
´ËÖ÷ÌâÏà¹ØÍ¼Æ¬ÈçÏ£º
ͼ3—InternetÐÅÏ¢·þÎñ£¨IIS£©¹ÜÀíÆ÷
c.ÅäÖÃIIS
IIS°²×°ºó£¬ÏµÍ³×Ô¶¯´´½¨ÁËÒ»¸öĬÈϵÄWebÕ¾µã£¬¸ÃÕ¾µãµÄÖ÷Ŀ¼ĬÈÏΪC:\\Inetpub\\www.root¡£
ÓÃÊó±êÓÒ¼üµ¥»÷“ĬÈÏWebÕ¾µã”£¬ÔÚµ¯³öµÄ¿ì½Ý²Ëµ¥ÖÐÑ¡Ôñ“ÊôÐÔ”£¬´Ëʱ¾Í¿ÉÒÔ´ò¿ªÕ¾µãÊôÐÔÉèÖöԻ°¿ò£¬£¨Èçͼ4£©ÔڸöԻ°¿òÖУ¬¿ÉÍê³É¶ÔÕ¾µãµÄÈ«²¿ÅäÖá£
´ËÖ÷ÌâÏà¹ØÍ¼Æ¬ÈçÏ£º
ͼ4—ĬÈÏWebÕ¾µãÊôÐÔ
Ö÷Ŀ¼ÓëÆôÓø¸Â·¾¶
µ¥»÷“Ö÷Ŀ¼”±êÇ©£¬Çл»µ½Ö÷Ŀ¼ÉèÖÃÒ³Ãæ£¬£¨Èçͼ5£©¸ÃÒ³Ãæ¿ÉʵÏÖ¶ÔÖ÷Ŀ¼µÄ¸ü¸Ä»òÉèÖá£×¢Òâ¼ì²éÆôÓø¸Â·¾¶Ñ¡ÏîÊÇ·ñ¹´Ñ¡£¬Èçδ¹´Ñ¡½«¶ÔÒÔºóµÄ³ÌÐòÔËÐÐÓв¿·ÖÓ°Ïì¡££¨Èçͼ6£©£¬Ö÷Ŀ¼—ÅäÖÃ---Ñ¡Ïî¡£
´ËÖ÷ÌâÏà¹ØÍ¼Æ¬ÈçÏ£º
ͼ5—ĬÈÏWebÕ¾µãÖ÷Ŀ¼ÉèÖÃ
´ËÖ÷ÌâÏà¹ØÍ¼Æ¬ÈçÏ£º
ͼ6—ĬÈÏWebÕ¾µãÆôÓø¸Â·¾¶ÉèÖÃ
ÉèÖÃÖ÷Ò³Îĵµ
µ¥»÷“Îĵµ”±êÇ©£¬¿ÉÇл»µ½¶ÔÖ÷Ò³ÎĵµµÄÉèÖÃÒ³Ãæ£¬£¨Èçͼ7£©Ö÷Ò³ÎĵµÊÇÔÚä¯ÀÀÆ÷ÖмüÈëÍøÕ¾ÓòÃû£¬¶øÎ´Öƶ¨ËùÒª·ÃÎʵÄÍøÒ³Îļþʱ£¬ÏµÍ³Ä¬ÈÏ·ÃÎʵÄÒ³ÃæÎļþ¡£³£¼ûµÄÖ÷Ò³ÎļþÃûÓÐindex.htm¡¢index.html¡¢index.asp¡¢index.php¡¢index.jap¡¢default.htm¡¢default.html¡¢default.aspµÈ
IISĬÈϵÄÖ÷Ò³ÎĵµÖ»ÓÐdefault.htmºÍdefault.asp£¬¸ù¾ÝÐèÒª£¬ÀûÓÓÌí¼Ó”ºÍ“ɾ³ý”°´Å¥£¬¿É
Ïà¹ØÎĵµ£º
ÎÒÏëÓÃC#ʵÏÖÏóASPÖеÄ
rs.addnew
rs( "a ") = "aaa "
rs( "b ") = 123
rs.update
ÕâÑù·½·¨Ìí¼ÓÊý¾Ý£¬ÎÊһϣ¬ÒªÔõô×ö°¡£¿
¾ßÌå·½·¨ÈçÏÂ
string dbPath = "../App_data/We ......
ÏÖÔڱȽÏÁ÷ÐеÄSQL×¢È빤¾ßµÄ¹¤×÷·½Ê½ÊÇͨ¹ýGETºÍPOSTÀ´Íê³É¾ßÌåµÄ×¢Èë¡£ÎÒÃÇ¿ÉÒÔ½«×¢ÈëʱËùÓõ½µÄÒ»ÇзûºÅ¹ýÂ˵ô¡£ÄÇôÎÒÃÇ¿ÉÒÔͨ¹ý¼òµ¥µÄÅжÏÓï¾äÀ´´ïµ½Ä¿µÄ¡£ÎÒÃÇÏÈÀ´¹ýÂËGET°É¡£
´úÂëÈçÏ£º
dim sql_injdata SQL_inj SQL_Get
SQL_injdata = "’|and|exec|insert|select|delete|update|count|*|%|chr|mid|mast ......
protected void Button1_Click(object sender, EventArgs e)
{
GridViewRow gvr = (sender as Button).NamingContainer as GridViewRow; //»ñµÃÈÝÆ÷
if(gvr != null)
{
int index = gvr.RowIndex;//index¾ ......
Ëæ ×ÅÍøÕ¾·ÃÎÊÁ¿µÄ¼Ó´ó£¬Ã¿´Î´ÓÊý¾Ý¿â¶ÁÈ¡¶¼ÊÇÒÔЧÂÊ×÷Ϊ´ú¼ÛµÄ£¬ºÜ¶àÓÃACCESS×÷Êý¾Ý¿âµÄ¸ü»áÉîÓÐÌå»á£¬¾²Ì¬Ò³¼ÓÔÚËÑË÷ʱ£¬Ò²»á±»ÓÅÏÈ¿¼ÂÇ¡£»¥ÁªÍøÉÏÁ÷ ÐеÄ×ö·¨Êǽ«Êý¾ÝÔ´´úÂëдÈëÊý¾Ý¿âÔÙ´ÓÊý¾Ý¿â¶ÁÈ¡Éú³É¾²Ì¬Ã棬ÕâÑùÎÞÐμä¾Í¼Ó´óÁËÊý¾Ý¿â¡£½«ÏÖÓеÄASPÒ³Ö±½ÓÉú³É¾²Ì¬Ò³£¬½«»á½ÚÊ¡ºÜ¶à¡£
ÏÂÃæµÄÀý×ÓÊǽ«¡¢index.asp?i ......
<!--#include file="conn.asp"-->
<!--#include file="inc/head.asp"-->
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="zh-cn" lang="zh-cn" xmlns:q ......