asp.netÕâÑùдÓÐʲôºÃ´¦ÄØ
HTML code:
<%@ Page Language="C#" %>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" >
<head runat="server">
<title></title>
<script type="text/C#" runat="server">
string str3 = string.Empty;
protected void Page_Load(object sender, EventArgs e)
{
string str = Request.QueryString["type"];
string str2 = Request.Form["wbtest"];
if (str != null && str.Equals("save"))
{
str3 = str2;
}
}
</script>
</head>
<body>
<form id="form1" method="post" action="?type=save">
<div>
<input type="text" name="wbtest" />
<input type="submit" value="Submit" />
<% =str3 %>
</div>
</form>
</body>
</html>
ÕâÑùд²»ºÃ ÕâºÍÒÔǰµÄaspºÜÀàËÆ
asp.net×îºÃµÄ¾ÍÊǰÑÒ³ÃæºÍ´úÂë·Ö¿ªÁË
ÕâÑùд²»¾ÍÓкÏÁË
ÎÒÒ²¿´²»³öÓÐʲôºÃ´¦~Èç¹ûÊÇΪÁËÄǸöstr3µÄ»°Ò²²»Ó¦¸ÃÕâÖÖ.¿ÉÒÔºǫ́д¸ö¹«Óб
Ïà¹ØÎÊ´ð£º
ÎÒÒѽ«Windows¿Ø¼þ³É¹¦Ó¦ÓÃÓÚAsp.netÖУ¬µ«Õâ¸ö¿Ø¼þ»¹Òª·ÃÎÊÊý¾Ý¿â¡¢½øÐб¾µØIO²Ù×÷¡¢´òÓ¡µÈ£¬Õâʱ¾Í»á³öÏÖ¡°Ó¦ÓóÌÐòÊÔͼִÐа²È«²ßÂÔ²»ÔÊÐíµÄ²Ù×÷¡±ÕâÑùµÄÌáʾ£¬Ó¦¸ÃÔõÑù¸øËüÊÚȨ£¿
ÔÚ¿Í»§¶ËÒªÅäÖÃ,ÔÊÐí¿Í»§¶ËÈ ......
RT¡£ºÜ¶àµØÖ·¶¼´ò²»¿ª»ò²»ÄÜÏÂÔØÁË
ÓÐ×ÊÔ´µÄÅóÓѸø¸öµØÖ·¡£¡£Ö»ÒªÏÂÔØºóÊÇÎÒÏëÒªµÄÄÚÈÝ 50·ÖÏ×ÉÏ!
лл!
ɳ·¢ÎÒÏÈ×ø!
°ï¶¥
°ï¶¥
ûÌý˵¹ýŶ
JF
ºÃÏñ19ûÓе쬲»È«¡£
ºÃ¶à¼¯¶¼²»ÄÜÏ¡£¡£
......
ÎÒÓг§¼Ò×öµÄASPµÄ¼à¿ØÂ¼Ïñ£¨DVR£©µÄ¾ÖÓòÍø²¥·ÅµÄÔ´³ÌÐòÓë¿Ø¼þ£¬ÏëÒªÓÃASP.net×öÒ»¸öÊÓÆµ»Ø·ÅµÄ³ÌÐò£¨ÀûÓÃËûµÄ¿Ø¼þ£©µ«²»ÖªÈçÏÂÈ¥×ö£¬Íû¸÷λָµã¡£
ÏȸãÇå³þËûÃǵĿؼþÊÇÔõôÓõÄ,
È»ºó¾ÍÖ±½ÓÓúÃÁË.
²»¹ý,Èç ......
ÓÃDWдµÄaspxºÍvs C#дµÄÍøÕ¾ÏµÍ³(Ö÷ÒªÒ³ÃæÎļþÒ²ÊÇaspxµÄÎļþ)ÓÐÊ²Ã´Çø±ð,VSдµÄÍøÕ¾·¢²¼ºó,ËùÓеĴúÂ벿·ÖºÏ³ÉÒ»¸öDLLÎļþ,¶øDW¾ÍûÓа취,ÕâÁ½¸ö¹¤¾ßд³öÀ´µÄÍøÕ¾Í¬ÑùÊÇaspxµÄÎļþ,µ«Çø±ðºÜ´ó°¡.
°ïÄã¶¥ÏÂ~£¬Çó ......
ÔÚµ¯³ö¿òÖеã»÷Ò»¸ö°´Å¥£¬Ôõôµ÷תµ½ÁíÒ»¸öä¯ÀÀÆ÷£¬²¢ÇÒÔÚ¸Ãä¯ÀÀÆ÷´ò¿ªÁ½¸öÒ³Ãæ
ÄãµÄÒâ˼Ӧ¸ÃÊÇ
response.write("<script>alert('È·ÈÏ'); window.location.href('xxxx.aspx'); </script>"); ......