ASP ±à³ÌÖÐ 20 ¸ö·Ç³£ÓÐÓõÄÀý×Ó
1.ÈçºÎÓÃAspÅжÏÄãµÄÍøÕ¾µÄÐéÄâÎïÀí·¾¶
´ð£ºÊ¹ÓÃMappath·½·¨
< p align="center" >< font size="4" face="Arial" >< b >
The Physical path to this virtual website is:
< /b >< /font >
< font color="#FF0000" size="6" face="Arial" >
< %= Server.MapPath("\")% >
< /font >< /p >
2.ÎÒÈçºÎÖªµÀʹÓÃÕßËùÓõÄä¯ÀÀÆ÷?
´ð£ºÊ¹ÓÃthe Request object·½·¨
strBrowser=Request.ServerVariables("HTTP_USER_AGENT")
If Instr(strBrowser,"MSIE") < > 0 Then
Response.redirect("ForMSIEOnly.htm")
Else
Response.redirect("ForAll.htm")
End If
3.ÈçºÎ¼ÆËãÿÌìµÄƽ¾ù·´¸´·ÃÎÊÈËÊý
´ð£º½â¾ö·½·¨
< % startdate=DateDiff("d",Now,"01/01/1990")
if strdate< 0 then startdate=startdate*-1
avgvpd=Int((usercnt)/startdate) % >
ÏÔʾ½á¹û
< % response.write(avgvpd) % >
that is it.this page have been viewed since November 10,1998
4.ÈçºÎÏÔʾËæ»úͼÏó
< % dim p,ppic,dpic
ppic=12
randomize
p=Int((ppic*rnd)+1)
dpic="graphix/randompics/"&p&".gif"
% >
ÏÔʾ
< img src="< %=dpic% >" >
5.ÈçºÎ»Øµ½ÏÈÇ°µÄÒ³Ãæ
´ð£º< a href="< %=request.serverVariables("Http_REFERER")% >" >preivous page< /a >
»òÓÃͼƬÈ磺< img src="arrowback.gif" alt="< %=request.serverVariables("HTTP_REFERER")% >" >
6.ÈçºÎÈ·¶¨¶Ô·½µÄIPµØÖ·
´ð£º< %=Request.serverVariables("REMOTE_ADDR)% >
7.ÈçºÎÁ´½áµ½Ò»¸±Í¼Æ¬ÉÏ
´ð£º< % @Languages=vbscript % >
< % response.expires=0
strimagename="graphix/errors/erroriamge.gif"
response.redirect(strimagename)
% >
8.Ç¿ÆÈÊäÈëÃÜÂë¶Ô»°¿ò
´ð£º°ÑÕâ¾ä»°·ÅÔØÒ³ÃæµÄ¿ªÍ·
< % response.status="401 not Authorized"
response.end
% >
9.ÈçºÎ´«µÝ±äÁ¿´ÓÒ»Ò³µ½ÁíÒ»Ò³
´ð£ºÓà HIDDEN ÀàÐÍÀ´´«µÝ±äÁ¿
< % form method="post" action="mynextpage.asp" >
< % for each item in request.form % >
< input namee="< %=item% >" type="HIDDEN"
value="< %=server.HTMLEncode(Request.form(item)) % >" >
< % next % >
< /form >
10.ΪºÎÎÒÔÚ asp ³ÌÐòÄÚʹ
Ïà¹ØÎĵµ£º
´´½¨Ò»¸ö¼òµ¥µÄASPÒ³Ãæ
ÔÚ·þÎñÆ÷¶Ë±àдµÄÎļþ index.asp £º
ÒÔÏÂΪÒýÓÃÄÚÈÝ£º
<%@LANGUAGE="JSCRIPT" CODEPAGE="65001"%>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"&g ......
Javascript µÄ±äÁ¿ÉùÃ÷¹æÔò
1¡¢±äÁ¿ÃûÒÔÓ¢ÎÄ×Öĸ¿ªÍ·£»
2¡¢³¤¶È²»Äܳ¬¹ý255×Ö½Ú£»
3¡¢Ö®¼ä²»ÄÜÓпոñ£»
4¡¢²»ÄÜ°üº¬ Javascript µÄÔËËã·û£»
5¡¢²»ÄÜʹÓà Javascript µÄ±£Áô×Ö£»
6¡¢Çø·Ö´óСд¡£
Javascript µÄÁ÷³Ì¿ØÖÆÓï¾ä
ÓëVBSCRIPT Ïàͬ£¬ Javascript µÄÁ÷³Ì¿ØÖÆÓï¾äÓë·ÖΪÌõ¼þÓï¾äºÍÑ»·Óï¾ä¡£
ʵÀ ......
1£ºSQL ×¢È룺
½â¾ö·½°¸£º
a. Õâ¸öÎÊÌâÖ÷ÒªÊÇÓÉÓÚ´«ÈëÌØÊâ×Ö·ûÒýÆðµÄÎÒÃÇ¿ÉÒÔÔÚ¶ÔÊäÈëµÄÓû§ÃûÃÜÂë½øÈë¹ýÂËÌØÊâ×Ö·û´¦Àí¡£
b. ʹÓô洢¹ý³Ìͨ¹ý´«Èë²ÎÊýµÄ·½·¨¿É½â¾ö´ËÀàÎÊÌ⣨עÒ⣺ÔÚ´æ´¢¹ý³ÌÖв»¿ÉʹÓÃÆ´½ÓʵÏÖ£¬²»È»ºÍûÓô洢¹ýºÍÊÇÒ»ÑùµÄ£©¡£
2. XSS£¨¿çÕ¾½Å±¾¹¥»÷£©£º
½â¾ö·½°¸£º
¡¡¡¡a. ͨ¹ýÔÚ Page Ö¸Áî»ò Å ......
<html xmlns="http://www.w3.org/1999/xhtml" >
<HEAD>
<title>¶àÎļþÉÏ´« </title>
<script language="JavaScript">
function addFile()
{
var str = ' <br / ......
Active Server Pages ÌṩÄÚ½¨¶ÔÏó£¬ÕâЩ¶ÔÏóʹÓû§¸üÈÝÒ×ÊÕ¼¯Í¨¹ýä¯ÀÀÆ÷ÇëÇó·¢Ë͵ÄÐÅÏ¢¡¢ÏìÓ¦ä¯ÀÀÆ÷ÒÔ¼°´æ´¢Óû§ÐÅÏ¢£¨ÈçÓû§Ê×Ñ¡Ï¡£±¾ÎļòҪ˵Ã÷ÿһ¸ö¶ÔÏó¡£
Application ¶ÔÏó
¿ÉÒÔʹÓà Application ¶ÔÏóʹ¸ø¶¨Ó¦ÓóÌÐòµÄËùÓÐÓû§¹²ÏíÐÅÏ¢¡£
Request ¶ÔÏó
¿ÉÒÔʹÓà Request ¶ÔÏó·ÃÎÊÈκÎÓà HTTP Çë ......