aspÖеÄÒ»¸öÎÊÌâ
ÎÒÊÇÏëÈÃÓû§ÊäÈëÕÅÈý¡¢ÀîËÄ¡¢ÍõÎåÖеÄÒ»¸ö£¬È»ºó½«ÊäÈëµÄÃû×ÖÓëÊý×ÖkiÁ¬½ÓÆðÀ´¡£
¿É²»¹ÜÎÒÊäÈëʲô£¬¶¼ÊÇÖ´ÐÐresponse.Write(" <script>alert('ÇëÊäÈëÕýÈ·µÄºòÑ¡ÈËÐÕÃû'); </script>")Õâ¾ä´úÂ룬ÇëÎÊΪʲô£¿£¿ ´úÂëÈçÏ£º
dim vi,ki,mi,xi,hxi,ei,gi,z1,z2
if len(request.Form("Submit"))>0 then
vi=request.Form("candidate")
ki=request.Form("ki")
mi=request.Form("mi")
if vi="" then
response.Write(" <script>alert('ÇëÊäÈëÕýÈ·µÄºòÑ¡ÈËÐÕÃû'); </script>")
else if vi <>"ÕÅÈý" or vi <>"ÀîËÄ" or vi <>"ÍõÎå" then
response.Write(" <script>alert('ÇëÊäÈëÕýÈ·µÄºòÑ¡ÈËÐÕÃû'); </script>")
else xi=vi&ki
response.Write(" <script>alert('"&xi&"'); </script>")
end if
end if
end if
¿ÉÊǵ±ÎÒ°Ñ8Ðл»³ÉÖ»ÅжÏÒ»¸ö£ºelse if vi <>"ÕÅÈý" then
½á¹ûÊä³öÁËÕÅÈý&ki
ÇëÎÊÕâÊÇΪʲô£¿
ÁíÍâ vi=trim(request.Form("candidate"))
response.write vi ²éÒ»ÏÂÖµ
Õâ·Ö¡¡°¥£¬Ô
Ïà¹ØÎÊ´ð£º
<%On Error Resume Next
Set conn=Server.CreateObject("ADODB.Connection")
conn.begintrans
conn.Open ("Driver={SQL Server};server=(local);uid=sa;database=student;pwd=")
......
×î½üÎÒͨ¹ýѧϰ£¬¸Ð¾õ×Ô¼ºÑ§µÄ»¹¿ÉÒÔÁË£¬Ïë×öÒ»ÍøÕ¾£¬µ«ÊÇÒ»Ö±¶¼ÕÒ²»µ½Ìâ²Ä£¬²»ÖªµÀ×öʲô£¬Ï£Íû¸÷λ¸øÎÒµãÒâ¼û£¬Èç¹ûÓÐÐèÇóÎĵµ¾Í¸üºÃÁË£¡Ï£Íû´ó¼Ò¸øÎÒµãÒâ¼û£¬Ð»Ð»£¡
ÏÈ×ö¸öÆóÒµÍøÕ¾°É£¬ÎҸоõÒ»¸öÈË×öÍøÕ¾²»ÊÊÒË ......
½¨ÁËÒ»¸öÕ¾µã£¬ÀïÃæÓÐ login.aspx. events.aspx µÈµÈ ÆäËûµÄÒ³Ãæ¡£
µ«ÊÇÎÒµ÷ÊÔ ÆäËûÒ³ÃæµÄʱºò£¬±Ä³öÀ´µÄ×ÜÊÇ login.aspx Ò³Ãæ¡£
¸Õѧasp ÇëÖ¸½Ì
ÄãÉèÖÃÆðʼҳÁ˰ɡ£¡£
¶÷ÔõôȡÏûÄØ£¿
Òªµ ......
<%
Sql="select top 8 * from NewsData where d_classid in (select classid from NewsClass where ParentID=16)"
Rs.Open Sql, conn, 1,1
Do Until Rs.Eof
......