ASP.NETÒ³Ãæˢз½·¨×ܽá
µÚÒ»£º
private void Button1_Click( object sender, System.EventArgs e ) { Response.Redirect( Request.Url.ToString( ) ); }
µÚ¶þ£º
private void Button2_Click( object sender, System.EventArgs e ) { Response.Write( " < script language=javascript>window.location.href=document.URL; < /script>" ); }
µÚÈý£º
private void Button3_Click( object sender, System.EventArgs e ) { Response.AddHeader( "Refresh","0" ); }
µÚËÄ£º
private void Button6_Click( object sender, System.EventArgs e ) { //ºÃÏñÓÐЩ²»¶Ô£¿ //Response.Write( " < script language=javascript>window.location.reload( ); < /script>" ); }
µÚÎ壺
< script>< !-- var limit="3:00" if ( document.images ) { var parselimit=limit.split( ":" )parselimit=parselimit[0]*60+parselimit[1]*1 } function beginrefresh( ) { if ( !document.images )returnif ( parselimit==1 )window.location.reload( )else { parselimit-=1curmin=Math.floor( parselimit/60 )cursec=parselimit%60if ( curmin!=0 )curtime=curmin+"·Ö"+cursec+"ÃëºóÖØË¢±¾Ò³£¡"elsecurtime=cursec+"ÃëºóÖØË¢±¾Ò³£¡"window.status=curtimesetTimeout( "beginrefresh( )",1000 ) } } window.onload=beginrefresh//--> < /script>< DIV style="Z-INDEX: 102; LEFT: 408px; POSITION: absolute; TOP: 232px" ms_positioning="text2D"> < P>< FONT size="3">×Ô¶¯Ë¢ÐÂÒ³Ãæ< /FONT>< /P> < /DIV>
µÚÁù£º
< meta http-equiv="refresh" content="300; url=target.html"> ÓÃwindow.location.hrefʵÏÖË¢ÐÂÁí¸ö¿ò¼ÜÒ³Ãæ
ÔÚдasp.net³ÌÐòµÄʱºò£¬ÎÒÃǾ³£Óöµ½ÌøתҳÃæµÄÎÊÌ⣬ÎÒÃǾ³£Ê¹ÓÃResponse.Redirect £¬Èç¹û¿Í»§ÒªÔÚÌøתµÄʱºòʹÓÃÌáʾ£¬Õâ¸ö¾Í²»Áé¹âÁË£¬È磺
Response.Write("< script>alert('¹§Ï²Äú£¬×¢²á³É¹¦£¡'); < /script>"); Response.Redirect("main.html"); ÕâʱºòÎÒÃǵÄÌáʾÄÚÈÝûÓгöÀ´¾ÍÌøתÁË£¬ºÍResponse.Redirect("main.html"); ûÓÐÈκÎÇø±ð¡£
ÕâʱÎÒÃDzÉÓÃÏÂÃæ´úÂëÊÔÑéÒ»ÏÂASP.NETÒ³ÃæˢУº
Response.Write("< script language=javascript>alert('¹§Ï²Äú£¬×¢²á³É¹¦£¡')< /script>"); Response.Write("< script language=javascript
Ïà¹ØÎĵµ£º
using System;
using System.Web;
namespace pub.mo
{
public class js
{
private js() { }
private static string scr_j1 = "<mce:script type=\"text/javascript\"><!--
";
private static string scr_j2 = "
// --></mce:script>";
/// <summa ......
×öÏîÄ¿Ò²ÓÐÒ»¶Îʱ¼äÁË£¬ÔÚ³ÌÐòÖÐÒ²Óöµ½ºÜ¶à°²È«·½ÃæµÄÎÊÌâ¡£Ò²¸Ã×ܽáÒ»ÏÂÁË¡£Õâ¸öÏîÄ¿ÊÇÒ»¸ö CMS ϵͳ¡£ÏµÍ³ÊÇÓà ASP.NET ×öµÄ¡£¿ª·¢µÄʱºò·¢ÏÖ΢Èí×öÁ˺ܶలȫ´ëÊ©£¬Ö»ÊÇÓÐЩÐÂÊÖ³ÌÐòÔ±²»ÖªµÀÔõô¿ªÆô¡£ÏÂÃæÎÒͨ¹ý¼¸¸ö·½Ãæ¼òµ¥½éÉÜ£º
¡¡¡¡1£ºSQL ×¢Èë
¡¡¡¡2£ºXSS
¡¡¡¡3£ºCSRF
¡¡¡¡4£ºÎļþÉÏ´«
SQL ×¢Èë
¡¡¡¡ÒýÆðÔÒ ......
asp.netÖеÄÓû§¿Ø¼þÎÞÒÉÊÇ´úÂëÖØÓõÄÁ¼ºÃ;¾¶£¬²»µ«µ÷Ó÷½±ã£¬Éè¼ÆÆðÀ´Ò²·Ç³£Ö±¹Û£¬±¾Éí¾Í¼¸ºõ¿ÉÒÔ×öΪÆÕͨҳÀ´¶Ô´ý¡£
ÔÚµ÷ÓÃÒ³ÖУ¬ÈçºÎ¿ØÖÆÓû§¿ØÖÆÖеĿؼþÄØ£¿ÎÒÏëasp.netµÄÉè¼ÆÕߣ¬ÔÚÉè¼ÆÖ®³õ£¬Ôç¾ÍÒѾ¿¼Âǵ½ÁËÕâÒ»µãÁË°É£¡¼ÈÈ»Óû§¿ØÖÆÔÚµ÷ÓÃÒ³ÃæÖÐÓÐΨһµÄID±êʶ£¬ÄÇôÆäÏà¹ØµÄ²Ù×÷£¬¿Ï¶¨Ò²ÊÇͨ¹ýÕâ¸öid±êʶÀ´ÊµÏÖ ......
1£¬ÔÚweb·þÎñÆ÷ÉÏ°²×°OracleÊý¾Ý¿â¿Í»§¶Ë£¬ÕâÊÇÁ¬½ÓOracleÊý¾Ý¿âµÄ»ù´¡£¨µ«£¬²»Ò»¶¨ÊDZØÐëµÄ£©¡£
2£¬ÔÚ¿Í»§¶ËµÄNet Manager ÖнøÐÐÅäÖ÷þÎñµÄÃû³Æ£¬ÅäÖÃÈçͼ£¨ÕâÒ»µã·Ç³£µÄÖØÒªÒÔºóµÄÁ´½ÓÈ«¶¼ÔÚÕâ¸ö·þÎñÃû³ÆµÄ»ù´¡ÉϽøÐеģ©
3£¬ASPÁ´½Ó·þÎñµÄÁ´½Ó×Ö·û´®ºÍ·½·¨ÈçÏ£º
<%
connstr= "Provider=MSDAORA.1;Password=***; ......
ASP.NetʵÏÖ½«Wordת»»PDF¸ñʽ
×÷ÕߣºØýÃû À´Ô´£º¶¯Ì¬ÍøÕ¾ÖÆ×÷Ö¸ÄÏ Ê±¼ä£º2006-3-28
¡¡Ç°ÑÔ:ÓÉÓÚÒ»¸ö¿Í»§µÄÏîÄ¿ÖÐÐèÒª½«WORDÎĵµ×ª»»³ÉPDF¸ñʽ,¹ÊдÁ˱¾ÆªÊµÕ¾½Ì³Ì
¡¡¡¡ÐèÇó·ÖÎö:¿Í»§µÄÏîÄ¿ÒÔB/S½á¹¹ÎªÖ÷,Ìṩһ¸öWORDÎļþÔÚºǫ́×Ô¶¯×ª»»³ÉPDF,¾¹ýʵ¼Ê²âÊÔ,Èç¹û¸ÃƪWORDÎĵµÓÐ100¶àÒ³µÄ»°,ת» ......