asp ÈçºÎ×öÄÜÌá¸ßÁ´½Ó´«µÝ²ÎÊýµÄ°²È«ÐÔ
Âé·³´ó¼Ò¸øÌáÌáÒâ¼ûÈçºÎ×ö²ÅÄÜ×öµ½Á´½Ó²ÎÊýµÄ°²È«ÐÔ
ûÓз־ÍûÈËÀí£¿
ÊÔÊÔÕâÖÖ¡£¡£
VBScript code:
Dim Query_Badword,Form_Badword,i,Err_Message,Err_Web,name
'------¶¨Ò岿·Ý Í·----------------------------------------------------------------------
Err_Message = 1 '´¦Àí·½Ê½£º1=ÌáʾÐÅÏ¢,2=תÏòÒ³Ãæ,3=ÏÈÌáʾÔÙתÏò
Err_Web = "Err.Asp" '³ö´íʱתÏòµÄÒ³Ãæ
Query_Badword="'¡Îand¡Îselect¡Îupdate¡Îchr¡Îdelete¡Î%20from¡Î;¡Îinsert¡Îmid¡Îmaster.¡Îset¡Îchr(37)¡Î="
'ÔÚÕⲿ·Ý¶¨Òåget·Ç·¨²ÎÊý,ʹÓÃ"¡Î"ºÅ¼ä¸ô
Form_Badword="'¡Î%¡Î&¡Î*¡Î#¡Î(¡Î)¡Î=" 'ÔÚÕⲿ·Ý¶¨Òåpost·Ç·¨²ÎÊý,ʹÓÃ"¡Î"ºÅ¼ä¸ô
'------¶¨Ò岿·Ý β-----------------------------------------------------------------------
'
On Error Resume Next
'----- ¶Ô get query Öµ µÄ¹ýÂË.
if request.QueryString<>"" then
Chk_badword=split(Query_Badword,"¡Î")
FOR EACH Query_Name IN Request.QueryString
for i=0 to ubound(Chk_badword)
If Instr(LCase(request.QueryString(Query_Name)),Chk_badword(i))<>0 Then
Select Case Err_Message
Case "1"
Response.Write "<Script Language=JavaScript>alert('´«²Î´íÎ󣡲ÎÊý "&name&" µÄÖµÖаüº¬·Ç·¨×Ö·û´®£¡\n\nÇë²»ÒªÔÚ²ÎÊýÖгöÏÖ£ºand update delete ; insert mid master µÈ·Ç·¨×Ö·û£¡');window.close();</Script
Ïà¹ØÎÊ´ð£º
ÎÒÃÇÓÐÒ»¸öÍøÕ¾Ä£°å£¬www.c111.com.cn,Ï£ÍûÐÞ¸ÄһЩµØ·½£º
1£©µã»÷×ó²à¡°·þÎñÆ·ÅÆ¡±µÄÆäÖÐÒ»¸öС·ÖÀ࣬Èç¡°×ãÇò¡±£¬½çÃæµÄÓÒ²à¾Í³öÏÖÈçwww.c111.com.cn/1.jpg£¬µã»÷1.jpgÉÏ·½µÄÆäÖÐÒ»¸öÆ·ÅÆlogo£¬ÏÂÃæ¾Í³öÏÖÏà¹ØµÄÍ ......
ÎÒÓÐÒ»¸öaspÔ´Â룬µ«ÊdzöÏÖÒ»¸öÎļþ£¬ÎÒÓÃasp½âÃܶ¼ÊÇÂÒÂë
Çë½Ì
VBScript code:
??
%# , #&')*)-0-(0%()(?
(((((((((((((((((((((((((( ......
ÎÒµÄ網頁´ú碼為ASP語ÑÔ,驗證·½Ê½為ϵ統×Ô帶µÄWINDOW驗證ģʽ.
現ÔÚÎÒÈç¹ûÒªÔÚASP´ú碼ÖÐ獲È¡當ǰµÄµÇÈëÈË ......
×Ö¶ÎPowerListÀïÃæµÄÖµ£ºKSO10000,KSO10021,KSO10004,KSO10022,KSO10020,KSO10008
ÏÖÔÚÒªÅжϣ¬µ±PowerListÀïÃæ´æÔÚKSO10004Õâ¸öÖµµÄʱºò£¬Êä³ö£ººÃ
VBScript code:
<%
set rs=server.Creat ......
±¾ÈËÓÐÈýÄ꿪·¢¾Ñé,ÏÖÔÚÕÒ¹¤×÷(ÏÃÃÅ),,,ÓÐÒâÕßÇëÁªÏµQQ:523054271
1.5Ä깤×÷¾ÑéÕÒ¹¤×÷ ËûÒª¶àÉÙ ÎÒÒªÒ»°ë~~
±ð˵ÈýÄêµÄÁË...¾ÍÊÇ5ÄêµÄÒ²Ò»×¥Ò»´ó°Ñ.....
°³ÐèÒªÓÃasp+access×öÒ»¸ö½øÏú´æÈí¼þ£¬ÄúÄÜ×ö ......