aspÖеÄÒ»¸öÎÊÌâ
ÎÒÊÇÏëÈÃÓû§ÊäÈëÕÅÈý¡¢ÀîËÄ¡¢ÍõÎåÖеÄÒ»¸ö£¬È»ºó½«ÊäÈëµÄÃû×ÖÓëÊý×ÖkiÁ¬½ÓÆðÀ´¡£
¿É²»¹ÜÎÒÊäÈëʲô£¬¶¼ÊÇÖ´ÐÐresponse.Write(" <script>alert('ÇëÊäÈëÕýÈ·µÄºòÑ¡ÈËÐÕÃû'); </script>")Õâ¾ä´úÂ룬ÇëÎÊΪʲô£¿£¿ ´úÂëÈçÏ£º
dim vi,ki,mi,xi,hxi,ei,gi,z1,z2
if len(request.Form("Submit"))>0 then
vi=request.Form("candidate")
ki=request.Form("ki")
mi=request.Form("mi")
if vi="" then
response.Write(" <script>alert('ÇëÊäÈëÕýÈ·µÄºòÑ¡ÈËÐÕÃû'); </script>")
else if vi <>"ÕÅÈý" or vi <>"ÀîËÄ" or vi <>"ÍõÎå" then
response.Write(" <script>alert('ÇëÊäÈëÕýÈ·µÄºòÑ¡ÈËÐÕÃû'); </script>")
else xi=vi&ki
response.Write(" <script>alert('"&xi&"'); </script>")
end if
end if
end if
¿ÉÊǵ±ÎÒ°Ñ8Ðл»³ÉÖ»ÅжÏÒ»¸ö£ºelse if vi <>"ÕÅÈý" then
½á¹ûÊä³öÁËÕÅÈý&ki
ÇëÎÊÕâÊÇΪʲô£¿
ÁíÍâ vi=trim(request.Form("candidate"))
response.write vi ²éÒ»ÏÂÖµ
Õâ·Ö¡¡°¥£¬Ô
Ïà¹ØÎÊ´ð£º
Îļþ£ºfolder.inc
HTML code:
<%
Dim folderini,pos,pageName
fPath = Request.ServerVariables("PATH_TRANSLATED")
pos = instrRev(fPath,"\")
folderini = Left(fPath,pos)+&qu ......
½¨ÁËÒ»¸öÕ¾µã£¬ÀïÃæÓÐ login.aspx. events.aspx µÈµÈ ÆäËûµÄÒ³Ãæ¡£
µ«ÊÇÎÒµ÷ÊÔ ÆäËûÒ³ÃæµÄʱºò£¬±Ä³öÀ´µÄ×ÜÊÇ login.aspx Ò³Ãæ¡£
¸Õѧasp ÇëÖ¸½Ì
ÄãÉèÖÃÆðʼҳÁ˰ɡ£¡£
¶÷ÔõôȡÏûÄØ£¿
Òªµ ......
Ò»¶Îʱ¼äºó ¾Í²»ÄÜÓõÄÄÇÖÖ
¿ÉÒÔÓÃ×é¼þдÂð?
×é¼þ ÊDz»ÊDZØÐëÏÈÔÚ·þÎñÆ÷°²×° ²ÅÄÜʹÓÃ?
ÄÇÓÃÐéÄâÖ÷»úµÄ ²»¾ÍûϷÁË....
ewebeditor¾ÍÊÇҪע²á²ÅÄÜÓõÄ
Ã²ËÆÊÇûɶÓõ ......
×Ö¶ÎPowerListÀïÃæµÄÖµ£ºKSO10000,KSO10021,KSO10004,KSO10022,KSO10020,KSO10008
ÏÖÔÚÒªÅжϣ¬µ±PowerListÀïÃæ´æÔÚKSO10004Õâ¸öÖµµÄʱºò£¬Êä³ö£ººÃ
VBScript code:
<%
set rs=server.Creat ......