asp²ÎÊý´«µÝÎÊÌâ
request.queryString("act")="del"
id=request.queryString("id")
ÉϱßÊÇÒ»²¿·Ö²ÎÊý´«µÝµÄ´úÂë µØÖ·À¸µÄ²ÎÊýÊÇact
ÔõôÀí½âact
actÔÚÕâÀïÊDZäÁ¿»¹ÊÇÆäËû£¿
Ó¦¸ÃÊÇÅжÏÓï¾ä£¬²»ÊǸ³ÖµÓï¾ä, ¸ù¾ÝactµÄ²»Í¬Ö´Ðв»Í¬µÄ²Ù×÷¡£
if request.queryString("act")="del" then
....
ÏÖÔÚÊÇÃÔºýactµ½µ×ÊǸöʲô ÊDzÎÊý »¹ÊÇÊôÐÔ ÊÇ×Ô´øµÄ»¹ÊÇ×Ô¶¨ÒåµÄ
actÊÇurl´«µÝµÄ²ÎÊýѽ£¬ http://xxxx/xxx.asp?act=del&id=xx
ACTÊÇÓ¦¸ÃËãÊÇ×Ô¶¨ÒåµÄ¡£
ͬÒâ¶þÂ¥£¬request.queryString("act")="del" ¿Ï¶¨²»ÊÇÒ»¸ö¶ÀÁ¢µÄÓï¾ä£¬Ó¦¸ÃÊÇÒ»¸öÌõ¼þÓï¾ä£¬ÕâÒ»¾äÖеÄactÊÇÖ¸µØÖ·À¸Öеĺó׺²ÎÊý£¬id=request.queryString("id") Õâ¾äÖУ¬µÚÒ»¸öidÊÇÒ»¸ö±äÁ¿£¬ºóÃæµÄidÒ»ÑùÊÇÖ¸µØÖ·À¸Öеĺó׺²ÎÊý£¬Õû¾äµÄÒâ˼¾ÍÊÇ»ñÈ¡µØÖ·À¸²ÎÊýidµÄÖµ£¬²¢°ÑËü¸³Öµ¸ø±äÁ¿id
requestÖ»ÓÐgetûÓÐset £¨¿ÉÒÔÀí½âΪֻ¶Á£©
ÏÂÃæÊÇrequestµÄ´úÂëÔÐΣº
C# code:
public sealed class HttpRequest
{
......
public NameValueCollection QueryString { get; }
......
}
public class NameValueCollection : NameObject
Ïà¹ØÎÊ´ð£º
<%@language="vbscript"%>
<%option explicit%>
<html>
<head> <title>xxx </title> </head>
<script language=vbs>
'×¢Òâ±äÁ¿ ......
µ±½áÊøÊ±¼ä´óÓÚ¿ªÊ¼Ê±¼äÔòÏÔʾδÍê³É
µ±½áÊøÊ±¼äСÓÚ¿ªÊ¼Ê±¼äÔòÏÔʾδ´ïµ½ÈÎÎñ
ûÓÐʱ¼äÔòÏÔʾÕýÔÚ½øÐÐÖÐ
asp´úÂëÓ¦¸ÃÔõôд
Èç:¿ªÊ¼Ê±¼ä ½áÊøÊ±¼ä & ......
ÓÉÓÚ¶ÔÒ³ÃæÊ¹ÓÃÁËα¾²Ì¬
²¢ÇÒ¶ÔID½øÐÐÁ˼ÓÃÜ¡£
Ö÷Òª´úÂëÈçÏ£º
httpd.ini
RewriteRule /List-([0-9,a-z]*).html /List.asp\?ComId=$1 [N,I]
³ÌÐò´úÂë
AΪ¼ÓÃÜ£¬BΪ½âÃܺ¯Êý
<a href=&q ......
½¨ÁËÒ»¸öÕ¾µã£¬ÀïÃæÓÐ login.aspx. events.aspx µÈµÈ ÆäËûµÄÒ³Ãæ¡£
µ«ÊÇÎÒµ÷ÊÔ ÆäËûÒ³ÃæµÄʱºò£¬±Ä³öÀ´µÄ×ÜÊÇ login.aspx Ò³Ãæ¡£
¸Õѧasp ÇëÖ¸½Ì
ÄãÉèÖÃÆðʼҳÁ˰ɡ£¡£
¶÷ÔõôȡÏûÄØ£¿
Òªµ ......
ÏÂÃæµÄ´úÂëÊÇÓÃaspÀ´ÏÂÔØexeÎļþµÄ£¬ºÍÖ±½ÓÏÂÔØexeµÄÇø±ð¾ÍÊÇËû±£´æµÄÎļþÃûÊÇ»ñÈ¡ä¯ÀÀÆ÷IDÉú³ÉµÄ¡£´úÂëÕý³£Ê¹Ó㬵«ÊÇÎÒÏ£ÍûÄܰÑFileName¸Ä³ÉÎïÀí·¾¶£¬¸ñʽÊÇ£ºd:/web/down/a.exe СµÜ²Ë²Ë£¬¸ßÊÖ°ïæ¡£
(Áí:ÎÒ¾ ......