Asp.net ºǫ́µ÷ÓÃjs·½·¨
Asp.net ºǫ́µ÷ÓÃjs·½·¨(ת)
1. ÓÃResponse.Write·½·¨
¡¡¡¡´úÂëÈçÏ£º
Response.Write("<script type='text/javascript'>alert("XXX");</script>");
´Ë·½·¨È±ÏݾÍÊDz»Äܵ÷Óýű¾ÎļþÖеÄ×Ô¶¨ÒåµÄº¯Êý£¬Ö»Äܵ÷ÓÃÄÚ²¿º¯Êý£¬¾ßÌåµ÷ÓÃ×Ô¶¨ÒåµÄº¯ÊýÖ»ÄÜÔÚResponse.WriteдÉϺ¯Êý¶¨ Ò壬±ÈÈç
Response.Write("<script type='text/javascript'>function myfun(){}</script>");
2.ÓÃClientScriptÀà
¡¡¡¡´úÂëÈçÏ£ºÔÚÏëµ÷ÓÃij¸öjavascript½Å±¾º¯ÊýµÄµØ·½Ìí¼Ó´úÂ룬עÒâÒª±£Ö¤MyFunÒѾÔڽű¾ÎļþÖж¨Òå¹ýÁË¡£
ClientScript.RegisterStartupScript(ClientScript.GetType(), "myscript", "<script>MyFun();</script>");
¡¡¡¡Õâ¸ö·½·¨±ÈResponse.Write¸ü·½±ãһЩ£¬¿ÉÒÔÖ±½Óµ÷Óýű¾ÎļþÖеÄ×Ô¶¨Ò庯Êý¡£
3.ÆÕͨµÄÌí¼Ó¿Ø¼þµÄAttributesÊôÐÔ
¡¡¡¡¶ÔÓÚÆÕͨ°´Å¥¾ÍÊÇ£ºButton1.Attributes.Add("onclick","MyFun();");
¡¡¡¡Ö»ÄÜÔÚOnloadÖлòÀàËÆÓÚonloadµÄ³õʼ»¯¹ý³ÌÖÐÌí¼Ó²ÅÓÐЧ¡£¶øÇÒÊÇÏÈÖ´Ðнű¾º¯Êý£¬ÎÞ·¨¸Ä±äÖ´ÐÐ˳Ðò¡£
×¢Ò⣬ÒÔÉÏËùÓз½·¨ÖУ¬ºǫ́´úÂ붼²»ÄÜÓÐת»¯µ±Ç°Ò³µÄ´úÂ룬±ÈÈçRedirectµÈ£¬Òª°Ñתҳ´úÂë·ÅÔڽű¾ÀïÃæ
±¾ÎÄÀ´×ÔCSDN²©¿Í£¬×ªÔØÇë±êÃ÷³ö´¦£ºhttp://blog.csdn.net/lingtw/archive/2009/11/28/4888621.aspx
Ïà¹ØÎĵµ£º
HttpHandlerʵÏÖÁËÀàËÆÓÚISAPI ExtentionµÄ¹¦ÄÜ£¬Ëû´¦ÀíÇëÇó(Request)µÄÐÅÏ¢ºÍ·¢ËÍÏìÓ¦(Response)¡£HttpHandler¹¦ÄܵÄʵÏÖͨ¹ýʵÏÖIHttpHandler½Ó¿ÚÀ´´ïµ½¡£¶øHttpModuleʵÏÖÁËÀàËÆÓÚISAPI FilterµÄ¹¦ÄÜ¡£
HttpModuleµÄʵÏÖ
HttpModulesʵÏÖÁËÀàËÆÓÚISAPI FilterµÄ¹¦ÄÜ£¬ÔÚ¿ª·¢ÉÏ£¬Í¨³£ÐèÒª¾¹ýÒÔϲ½Ö裺
±àдһ¸öÀà£¬Ê ......
¸Õ±ÏÒµ£¬×î½üÔÚ¸ã±ÏÒµÂÛÎÄ¡£
˵Æð±ÏÒµÂÛÎÄÎÒ¾ÍÍ·ÌÛ£¬ÎÒÃÇÈýÈËÒ»×飬±¾À´ÎÒÖ÷ÕÅÓÃC#д£¬Ì×ÓÃÒ»¸öÍâ¹úµÄÄ£ÐÍBalloonShopÔÚÏß¹ºÎïÍøÕ¾£¬C#ÊÇ×ÔѧµÄ¡£µ«ÊÇͬ×éµÄÒ»¸öͬѧVBѧµÃ²»´í£¬ÒªÓÃVB¡£ÎÒÏëÄãÒªÓÃVBдµÄ»°ÎÒÊDz»Ì«¶®£¬ÄÇÖ»ÄÜÄã×Ô¼ºÐ´ºÃÁË£¬ÎÒ×î¶àÒ²¾Í´î°ÑÊÖ¶øÒÑ£¬Ê¡ÐÄÁË£¬ºÎÀÖ¶ø²»ÎªÄØ£¡
×îºó×÷Æ·×ö³öÀ´»¹Ëã²»´í£¬¾Í ......
ÎҵĻú×ÓÔ±¾¾ÍÓÐInternetÐÅÏ¢·þÎñ£¨IIS£©µÄ°²×°Ñ¡ÏÏÂÁ˺ܶà°æ±¾µÄIIS»òi386Îļþ¿É¾ÍÊÇȱÕâȱÄǵģ¬Èç:iisapp.vbs
°´ÍøÉÏ˵µÄÐÞ¸´Êý¾ÝÒ²ºÁÎÞÆðÉ«£¬×îºó
½â¾ö·½°¸£º
Ê×ÏÈÔÚ“¿ªÊ¼”²Ëµ¥µÄ“ÔËÐДÖÐÊäÈë“c:\Windows\inf\sysoc.inf”£¬ÏµÍ³»á×Ô¶¯Ê¹ÓüÇʱ¾´ò¿ªsy ......
<a>±êÇ©
1. <a href=”test.aspx”></a>
2. ÕâÊÇ×î³£¼ûµÄÒ»ÖÖתÏò·½·¨;
HyperLink¿Ø¼þ
1. Asp.net ·þÎñÆ÷¶Ë¿Ø¼þ ÊôÐÔNaviga ......
Js´úÂë
var url=Service.aspx?Value=' + escape(va);
obj=CreateAJAX();
if(obj)
& ......