Ò׽ؽØÍ¼Èí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

asp or ©¶´

 Â©¶´ÃèÊö:
ÔÚlogin.aspÖУ¬½ÓÊÕÓû§ÊäÈëµÄUseridºÍPasswordÊý¾Ý£¬²¢·Ö±ð¸³Öµ¸øuserºÍpwd£¬È»ºóÔÙÓÃsql="select * from admin where username="&user&" and password="&pwd&"" Õâ¾äÀ´¶ÔÓû§ÃûºÍÃÜÂë¼ÓÒÔÑéÖ¤¡£ 
ÒÔ³£ÀíÀ´¿¼Âǵϰ£¬ÕâÊǸöºÜÍêÕûµÄ³ÌÐòÁË¡£¶øÔÚʵ¼ÊµÄʹÓùý³ÌÖУ¬ÕûÌ׳ÌÐòÒ²µÄÈ·¿ÉÄÜÕý³£Ê¹Óᣠ
  
µ«ÊÇÈç¹ûUseridµÄÖµºÍpasswordµÄÖµ±»¸³ÓÚ£ºsafer’ or’1’=’1’ Õâʱ£¬sql="select * from admin where username="&user&" and password="&pwd&"" ¾Í³ÉÁË£º 
  
sql="select * from reg where user=safer’ or’1’=’1’ and pass=safer’ or’1’=’1’   
ÔõôÑù£¿£¡ÎÒ²»Ëµ´ó¼ÒÒ²Ã÷°×Á˰ɣ¡ 
  
¼ÈÈ»ÓÐÕâÑùµÄÎÊÌ⣬½ÓÏÂÀ´ÎÒÃǾÍÀ´¿´¿´ÈçºÎ½â¾öËü¡£´ÓÉÏÃæµÄ³ÌÐòÖи÷λҲ¿ÉÒÔ¿´³ö£¬Ö»Òª¶ÔÓû§ÊäÈëµÄÊý¾Ý½øÐÐÑϸñ¹ýÂ˾ͿÉÒÔÁË¡£¾ßÌå¿ÉÒÔ²ÎÏÂÃæµÄ³ÌÐò£º 
Quote
  ¡´% 
  user=request.from("UserID") 
  pass=request.from("password") 
  for i=1 to len(UserID) 
  cl=mid(UserID,i,1) 
  if cl="" or us="%" or us="¡´" or us="¡µ" then 
  response.redirect "54safer ..haha" 
  response.end 
  end if 
  next 
  %¡µ 
ͬÑùÊÇÏÈÈ¡µÃÓû§ÊäÈëÊý¾Ý£¬È»ºó·ÖÎöÓû§ÊäÈëµÄÿһ¸ö×Ö·û£¬Èç·¢ÏÖÒì³££¬Ôòתµ½´íÎóÒ³Ãæ¡£ 
if cl="" or us="%" or us="¡´" or us="¡µ" then ÕâÒ»¾äÖпÉÒÔ¼ÓÈëÈÎÒâµÄ¹ýÂË×Ö·û£¬¸ú¾Ý¾ßÌåÇé¿ö¶ø¶¨¡£ 
********************************************************************
©¶´ÐÞ²¹:
username=replace(trim(request("username")),"’","")
password=replace(trim(Request("password")),"’","")
°Ñ“’”¸ø¹ýÂËÁË
Èç¹ûÄãÏëÓÓ’”µ±×öÃÜÂë ¾ÍÓÃÏÂÃæµÄ·½·¨
1¡¢select * from user where user=’ " & User & "’ " 
2¡¢Èç¹û·µ»Ø²»Îª¼Ù£¬ÔòÈ¡ÃÜÂë 
pass=rs("passwd") 
3¡¢Åжϣºif pass=password 
4¡¢µÃ³ö½áÂÛ¡£ 
Àý×Ó:
Qu


Ïà¹ØÎĵµ£º

ת½ÌÄãѧASP.net£ºasp.netѧϰ·½·¨¡¢Á÷³Ì

Èç¹ûÄãÒѾ­Óн϶àµÄÃæÏò¶ÔÏ󿪷¢¾­Ñé£¬Ìø¹ýÒÔÏÂÕâÁ½²½£º
µÚÒ»²½¡¡ÕÆÎÕÒ»ÃÅ¡£NETÃæÏò¶ÔÏóÓïÑÔ£¬C#»òVB.NET ÎÒÇ¿ÁÒ·´¶ÔÔÚûϵͳѧ¹ýÒ»ÃÅÃæÏò¶ÔÏó£¨OO£©ÓïÑÔµÄǰÌáÏÂȥѧASP.NET¡£ ASP.NETÊÇÒ»¸öÈ«ÃæÏò¶ÔÏóµÄ¼¼Êõ£¬²»¶®OO£¬ÄǾø¶Ôѧ²»ÏÂÈ¥£¡
µÚ¶þ²½¡¡¶Ô¡£NET FrameworkÀà¿âÓÐÒ»¶¨µÄÁ˽⠿ÉÒÔͨ¹ý¿ª·¢Windows FormÓ¦ÓóÌÐòÀ´Ñ ......

asp Á¬½Ó mysql ´úÂë

 Á¬½Ó´úÂë1Ö±½ÓÊäÈë
<%
Dim my_conn, sql,rs
Set my_conn = createobject("ADODB.Connection")
my_conn.open = "DRIVER={MySQL ODBC 3.51 Driver};"_
& "SERVER=localhost;"_ '·þÎñÆ÷Ãû
& "DATABASE=mybase;"_ 'Êý¾Ý¿âÃû
& "UID=root;PWD=111; OPTION=35;" 'Óû§ÃûºÍÃÜÂë
Set rs = Server.Crea ......

as3 Óë ·þÎñ¶ËASP ͨÐÅ

 var loader:URLLoader = new URLLoader();
var url:URLRequest = new URLRequest("test.asp");
url.method = URLRequestMethod.POST;
var values:URLVariables = new URLVariables();
values.message="hello im flash!";
url.data = values;
loader.dataFormat = URLLoaderDataFormat.VARI ......

asp¶à·ç¸ñ·ÖÒ³Àà

 <%
'asp¶à·ç¸ñ·ÖÒ³Àà
'ʹÓ÷¶Àý
'==========================================================================
'Set test = New Page '´´½¨À²
'test.CurrentPage=1 '×Ô¼ºÈ¥¶ÁÈ¡À­,µ±Ç°µÄÒ³Êý
'test.temp="{N1}{N2}{N3} {N4}"'ÕâÀïÊÇÏÔʾµÄÄ£°æ,×Ô¼º¿ÉÒÔ¶¨Òå,ÖÁÓÚ±êÇ©,¿ÉÒÔ×Ô¼ºÈ¥ÄǸöÀàÀïÕÒ
'test.Exec "S ......

ASPº¯Êý´óÈ«

 ASPº¯ÊýÓëVBSCRIPTÀàËÆ£¬ÒÔϾÙһЩ³£Óõĺ¯Êý¡¡
¡¡
Array()¡¡
¡¡
º¯Êý·µ»ØÒ»¸öÊý×é¡¡
¡¡
±í´ïʽ Array(list)¡¡
¡¡
ÔÊÐíÊý¾ÝÀàÐÍ: ×Ö·û£¬Êý×Ö¾ù¿É¡¡
¡¡
ʵÀý£º <%¡¡
¡¡
Dim myArray()¡¡
¡¡
For i = 1 to 7¡¡
¡¡
Redim Preserve myArray(i)¡¡
¡¡
myArray(i) = WeekdayName(i)¡¡
¡¡
Next¡¡ ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØÍ¼ | ¸ÓICP±¸09004571ºÅ