ASP¿Ø¼þ´óÈ«½²½â
4.1 ³£ÓõÄHTML¿Ø¼þ
4.1.1 ±íµ¥¿Ø¼þ
ÓÃÓÚ½ÓÊÕ¿Í»§¶ËµÄÊäÈ룬²¢½«ÊäÈëµÄ½á¹ûÌá½»¸ø·þÎñÆ÷´¦Àí
1.HtmlForm¿Ø¼þ
ËùÓеÄWeb Form¿Ø¼þ±ØÐë°üº¬ÔÚÒ»¶ÔHtmlForm¿Ø¼þ±êÇ©ÖÐ
<Form
Id = "¿Ø¼þ±êʶ"
Runat = "Server"
Method = "Post | Get"
Action = "ÒªÖ´ÐгÌÐòµÄµØÖ·"
>
ÆäËû¿Ø¼þ
</Form>
2. HtmlInputBotton¿Ø¼þ
<Input
Id = "±»³ÌÐò´úÂëËù¿ØÖƵÄÃû³Æ"
Runat = "Server"
Type = "Bottom | Submit | Reset"
OnServerClick = "ʼþ´¦Àí³ÌÐò"
>
µ±ÎªSubmitʱ£¬ÊÇ´«ËÍÊý¾Ý£»µÈÓÚButtonʱ£¬¿ÉÒÔÓÃÀ´´¥·¢Ê¼þ³ÌÐò£»
ResetÊÇÓÃÀ´ÖØÖô°Ìå³ÉΪ³õʼ״̬
3. HtmlInputText¿Ø¼þ
<Input
Id="±»³ÌÐò´úÂëËù¿ØÖƵÄÃû³Æ"
Runat= "Server"
Type="Text | Password"
MaxLength = "¿É½ÓÊÕµÄ×Ö·û´®³¤¶È"
Size="Îı¾ÊäÈë¿òµÄ¿í¶È"
Value = "ÏÔʾÔÚÊäÈë¿òµÄĬÈÏÖµ"
>
4.HtmlInputRadioButton¿Ø¼þ
<Input
Id = "¿Ø¼þ±êʶ"
Runat = "Server"
Type = "Radio"
Checked = "true | false"
Name = "°´Å¥ËùÊôµÄ×é"
>
5.HtmlInputCheckBox¿Ø¼þ
<Input
Id = "¿Ø¼þ±êʶ"
Runat = "Server"
Type = "CheckBox"
Checked = "true | false"
>
6. HtmlInputFile¿Ø¼þ
<Input
Id = "¿Ø¼þ±êʶ"
Runat = "Server"
Type = File
Accept = "ÉÏ´«ÎļþËù²ÉÓõÄMIME±àÂë"
Size = "ÏÔʾ·¾¶µÄÊäÈë¿òµÄ¿í¶È"
MaxLength= "ÉÏ´«ÎļþµÄ×î´ó·¾¶³¤¶È"
PostedFile = "ÒªÉÏ´«µÄÎļþ"
>
7.HtmlInputImage¿Ø¼þ
<Input
Id="¿Ø¼þ±êʶ"
Runat="Server"
Type=Image
Src="ͼÏñµÄµØÖ·"
Align="ͼÏñµÄ¶ÔÆë·½Ê½"
Alt="ͼÏñÎÞ·¨ÏÔÊ¾Ê±Ìæ´úµÄÎÄ×ÖµÄÄÚÈÝ"
Width="ͼÏñ±ß½çµÄ¿í¶È"
>
8. HtmlInputHiddenÒþ²ØÊäÈë¿Ø¼þ
µ±Ê¹ÓÃÕß´«ËÍÊäÈëµÄÊý¾Ý£¬Í¬Ê±Ò²´«ËͲ»ÐèҪʹÓÃÕßÊäÈëµÄÊý¾Ýʱ£¬
¿ÉÒÔʹÓÃÒ
Ïà¹ØÎĵµ£º
¸Õ¸Õ ¿´µ½Õâôһ¸öÎÊÌ⣬ÕâÀïÒ²×ö¸ö±ê¼Ç£ºhttp://topic.csdn.net/u/20080411/14/7b0f9da5-0413-4149-91e9-72c3df3018a3.html?seed=327251592
µÚÒ»ÖÖ·½Ê½£º
//ÔÚVisual Studio 2008Öе÷ÊÔͨ¹ý
testPop_Page.aspx:Ö÷Ò³ÃæASPX´úÂë
<html xmlns="http://www.w3.org/1999/xhtml">
<head runat="server">
  ......
ÎÒÏëÔÚaspÖмÓÒ»¸öÁ´½Ó£¬Ö¸Ïòasp.netÍøÒ³£¬µ«asp.netµÄÍøÖ·ÊǾ¹ýHttpUtility.UrlEncode±äÐκÍHttpUtility.UrlDecode±ä»ØµÄ£¬¶øaspµÄserver.urlencodeÈ´²úÉú²»Á˺ÍHttpUtility.UrlEncodeÒ»ÑùµÄ±àÂ룬ÇëÎÊÓÐûÓнâ¾ö°ì·¨
²¹³ä£ºÔÀ´asp.netµÄÊÇ"web.aspx?str="+HttpUtility.UrlEncode(str)
ºÍHttpUtility.UrlDecode(Requ ......
‘·À×¢Èë°ÑËü¼Óµ½connÀïÕâÑù¾ÍokÁË
dim sql_injdata
SQL_injdata = "’|and|exec|insert|select|delete|update|count|*|%|chr|mid|master|truncate|char|declare"
SQL_inj = split(SQL_Injdata,"|")
If Request.QueryString<>"" Then
For Each SQL_Get In Request.QueryString
For SQL_Data=0 To Ubo ......
º¯Êý Óï·¨ ¹¦ÄÜ
Len Len(string|varname) ·µ»Ø×Ö·û´®ÄÚ×Ö·ûµÄÊýÄ¿£¬»òÊÇ´æ´¢Ò»±äÁ¿ËùÐèµÄ×Ö½ÚÊý¡£
Trim Trim(string) ½«×Ö·û´®Ç°ºóµÄ¿Õ¸ñÈ¥µô
Ltrim Ltrim(string) ½«×Ö·û´®Ç°ÃæµÄ¿Õ¸ñÈ¥µô
Rtrim Rtrim(string) ½«×Ö·û´®ºóÃæµÄ¿Õ¸ñÈ¥µô
Mid Mid(string,start,length) ´Óstring×Ö·û´®µÄstart×Ö·û¿ªÊ¼È¡µÃlength³¤¶ ......
À¶ÑÀ»µµôÁË£¬ÕâÑùÒ»À´ ÊÖ»ú°²×°³ÌÐò±äµÃºÜ²»·½±ãÁË¡£Ò»¿ªÊ¼ÊÇÏȰÑÒª°²×°µÄ³ÌÐòÒÔ¸½¼þµÄÐÎʽ·¢µ½ÓÊÏä ÔÙÔÚÊÖ»úÉÏÅäÖÃÓÊÏä ÈúóÏÂÔØ¸½¼þ°²×°£¬ÕâÑùËäÈ»½â¾öÁËÎÊÌâ µ«ÊÇ»¹ÊÇÓкܶ಻·½±ãµÄµØ·½¡£ ÓÚÊÇ ×Ô¼ºÏë´î½¨Ò»¸ö·þÎñÆ÷ Ö±½ÓʵÏÖÔÚÏß°²×°¡£Ç°ÌáÊÇÊÖ»úÖ§³Öwifi£¬¾ÍÊÇ˵ÐèÒªÊÖ»ú·ÃÎÊÄÚÍøµØÖ·£¬·ñÔòµÃ»° ¾Í±È½Ï ......