Ò׽ؽØÍ¼Èí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

ASP ÏÞÖÆ·¢Ìûʱ¼ä ºÍ µÇ½ÏÞÖÆ


н¨Á¢Ò»¸öASPÎļþ °Ñ ÒÔÏ´úÂë¸´ÖÆ½øÈ¥
<%
ip=request.ServerVariables("REMOTE_ADDR") '»ñÈ¡À´·ÃµÄIPµØÖ·
dim conn
set conn=server.CreateObject("ADODB.connection")
conn.open "Dbq="&server.MapPath("yb/dat/data.mdb")&";Driver={Microsoft Access Driver (*.mdb)}" '½¨Á¢Êý¾Ý¿âÁ¬½Ó ÕâÀïÄã¿ÉÒÔ×Ô¼º¸Ä
sql="select * from ip_user where ipµØÖ·='"&ip&"'"
set rs=server.CreateObject("ADODB.recordset")
rs.open sql,conn,3,3
if rs.eof then
call ip_fir("thenew")
else
vistime=rs("·ÃÎÊʱ¼ä")
if DateDiff("h",vistime,now)>=12 then
call ip_fir("theup")
else
call ip_notfir
end if
end if
%>
<%'--------------ΪÁË·½±ãд³ÉÁ˹ý³ÌÐÎʽ£º
Sub Ip_fir(action)'---------------------µÚÒ»´Î·ÃÎʵĹý³Ì
response.write "12СʱÄÚ£¬ÄãÊǵÚÒ»´Î·ÃÎʱ¾Õ¾£¬ÕâÀïÌùÉϼÓÁ÷Á¿´úÂë"
if action="theup" then
rs("·ÃÎÊʱ¼ä")=now()
rs.update
elseif action="thenew" then
sql1="insert into ip_user(ipµØÖ·) values ('"&request.ServerVariables("REMOTE_ADDR")&"')"
conn.execute(sql1)
end if
End Sub
Sub ip_notfir()''---------------------12СʱÄÚ·ÃÎʹýµÄ¹ý³Ì
'---------------------ÕâÀï¸Ä³ÉÄãÆÚ´ýµÄ´¦Àí·½Ê½
response.write "ÄãÔÚ×î½ü12СʱÄÚ·ÃÎʹý±¾Õ¾"
End Sub
%>
check_inTimeÊÇʱ¼äTime(±ÈÈç8:30:00)
tuihour=hour(rs("check_inTime"))
tuiMinute=Minute(rs("check_inTime"))
chaotime=TimeSerial(tuihour,tuiMinute+10,0)'ÓÃÕâ¸öʱ¼äº¯Êý·µ»ØÒ»¸öʱ¼ä£¡¾ÍÊÇÍùºó¼Ó10·ÖÖÓ¡£Èç¹ûÊÇcheck_inTimeÊÇ8:30:00£¬ÄÇô·µ»ØÊ±¼äΪ£º8:40:00 ¡£
if chaotime>time then
Response.Redirect("cuo.asp?id=3")'´íÎó´¦ÀíÒ³Ãæ£¡¿ÉÒÔÔÚÕⶨÒå˵ʮ·ÖÖÓºó²ÅÄܹ»×¢²á£¡
end if
µÇ½´íÎó5´ÎËø¶¨30·Ö
If LoginType = "Ò»°ã¹ÜÀíÔ±" Then
sql = " Select * from ÆóÒµÖ®ÐǹÜÀíÔ±×ÊÁϱí Where ¹ÜÀíÔ±µÇ¼ID = '" & User & "' "
DBRs.Open sql,DBConn,1,3
If DBRs.EOF Then
DBRs.Close
Set DBRs = Nothing
DBConn.Close
Set DBConn = Nothing
Response.Write "<script>alert('Óû§Ãû»òÕßÃÜÂë´íÎó£¬ÇëÖØÐÂÊäÈë');history.back();</script><br><p>"
Response.End
Else
'=======


Ïà¹ØÎĵµ£º

IIS for XP µ÷ÊÔASP ½â¾öÈ«·½°¸

°²×°¹ý³Ì˳³©£¬ASPÒ³ÃæÔÚÆäËü»·¾³ÏÂÄÜÕý³£µ÷ÊÔ£¬Îļþ·¾¶ÅäÖÃÕýÈ·Çé¿öÏ£¬²»Äܵ÷ÊÔASP Ò³Ãæ£¬²Î¿¼Ò»ÏÂÄÚÈÝ
µÚÒ»
Ð޸Ķ˿ÚÅäÖà һЩÓÅ»¯ºÍ·À»¤Èí¼þ¶Ô¶Ë¿ÚÓÐÌØÊâµÄ“Õչ˔
µÚ¶þ
³£¼ûµÄ“500ÄÚ²¿·þÎñÆ÷´íÎó”Íò½ðÓÍ£º
1¡¢Ð¶ÔØ“internetÐÅÏ¢·þÎñ(IIS)”£¬
2¡¢¿´¿´Ê¼þ²é¿´Æ÷ÀïÓÐû ......

asp¼°asp.netµÄurlencodeÎÊÌâ

ÎÒÏëÔÚaspÖмÓÒ»¸öÁ´½Ó£¬Ö¸Ïòasp.netÍøÒ³£¬µ«asp.netµÄÍøÖ·ÊǾ­¹ýHttpUtility.UrlEncode±äÐκÍHttpUtility.UrlDecode±ä»ØµÄ£¬¶øaspµÄserver.urlencodeÈ´²úÉú²»Á˺ÍHttpUtility.UrlEncodeÒ»ÑùµÄ±àÂ룬ÇëÎÊÓÐûÓнâ¾ö°ì·¨
²¹³ä£ºÔ­À´asp.netµÄÊÇ"web.aspx?str="+HttpUtility.UrlEncode(str)
ºÍHttpUtility.UrlDecode(Requ ......

ͨÓÃasp·À×¢Èë³ÌÐò

‘·À×¢Èë°ÑËü¼Óµ½connÀïÕâÑù¾ÍokÁË
dim sql_injdata
SQL_injdata = "’|and|exec|insert|select|delete|update|count|*|%|chr|mid|master|truncate|char|declare"
SQL_inj = split(SQL_Injdata,"|")
If Request.QueryString<>"" Then
For Each SQL_Get In Request.QueryString
For SQL_Data=0 To Ubo ......

aspÁ´½ÓsqlÊý¾Ý¿â ´úÂë

 dim conn,connstr
Set conn = Server.CreateObject("ADODB.Connection")'´´½¨Ò»¸öÊý¾Ý¿âÁ´½Ó¶ÔÏóconn£¬·½±ãºóÃæµ÷ÓÃ
connstr="Provider=SQLOLEDB;Data Source=(local);Initial Catalog=111;User ID=sa;Password=1234;" '´´½¨Ò»¸öÊý¾Ý¿âµÄrecordset¶ÔÏ󣬷½±ãÒÔºóµ÷ÓÃ
conn.Open connstr'´ò¿ªÊý¾Ý¿â ......

´î½¨¼òÒ×µÄasp·þÎñÆ÷ ÓÃÓÚÊÖ»ú°²×°²âÊÔ³ÌÐò

À¶ÑÀ»µµôÁË£¬ÕâÑùÒ»À´ ÊÖ»ú°²×°³ÌÐò±äµÃºÜ²»·½±ãÁË¡£Ò»¿ªÊ¼ÊÇÏȰÑÒª°²×°µÄ³ÌÐòÒÔ¸½¼þµÄÐÎʽ·¢µ½ÓÊÏä ÔÙÔÚÊÖ»úÉÏÅäÖÃÓÊÏä ÈúóÏÂÔØ¸½¼þ°²×°£¬ÕâÑùËäÈ»½â¾öÁËÎÊÌâ  µ«ÊÇ»¹ÊÇÓкܶ಻·½±ãµÄµØ·½¡£ ÓÚÊÇ  ×Ô¼ºÏë´î½¨Ò»¸ö·þÎñÆ÷ Ö±½ÓʵÏÖÔÚÏß°²×°¡£Ç°ÌáÊÇÊÖ»úÖ§³Öwifi£¬¾ÍÊÇ˵ÐèÒªÊÖ»ú·ÃÎÊÄÚÍøµØÖ·£¬·ñÔòµÃ»° ¾Í±È½Ï ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØÍ¼ | ¸ÓICP±¸09004571ºÅ