asp½«Êý¾Ý¿âµÄÊý¾Ýת»»³Éexcelµ¼³ö
<% '--------------------------------------------------------------------------------------------------
Set rs9 = Server.CreateObject("ADODB.RecordSet")
sqlstr="select * from ¿Í»§×ÊÁÏ¿â order by id desc"
rs9.open sqlstr,conn,1,3
%>
<%Set fs = server.CreateObject("scripting.filesystemobject")
'--Éú³ÉµÄEXCELÎļþ×öÈçϵĴæ·Å
filename="¿Í»§×ÊÁÏ.xls"
temp=filename
filename=Request.ServerVariables("APPL_PHYSICAL_PATH")&"\"+filename
'--Èç¹ûÔÀ´µÄEXCELÎļþ´æÔڵϰɾ³ýËü
if fs.FileExists(filename) then
fs.DeleteFile(filename)
end if
'--´´½¨EXCELÎļþ
set myfile = fs.CreateTextFile(filename,true)
dim strLine,responsestr
strLine=""
For each x in rs9.fields
strLine= strLine & x.name & chr(9)
Next
'--½«±íµÄÁÐÃûÏÈдÈëEXCEL
myfile.writeline strLine
while not rs9.eof
strLine=""
for each x in rs9.Fields
strLine= strLine & x.value & chr(9)
next
'--½«±íµÄÊý¾ÝдÈëEXCEL
myfile.writeline strLine
rs9.movenext
wend
link="<A HREF="\" mce_HREF="\"" & temp & ">ÏÂÔØexcelÎļþ</a>"
if Request.Cookies("adminuser")="admin" then
Response.write link
end if
set myfile = nothing
Set fs=Nothing
rs9.close
%>
Ïà¹ØÎĵµ£º
Javascript »ù±¾½á¹¹ºÍÓï·¨
ÓëVBScriptÏàͬ£¬Ò²ÊÇдÔÚ <% %> Ö®¼ä¡£
Óà var ÉùÃ÷±äÁ¿£¬Óï¾äµÄĩβÓÓ;”¸ô¿ª¡£
ÒÔÏÂΪÒýÓÃÄÚÈÝ£º
<%@LANGUAGE="JSCRIPT" CODEPAGE="65001"%>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml ......
1£ºSQL ×¢È룺
½â¾ö·½°¸£º
a. Õâ¸öÎÊÌâÖ÷ÒªÊÇÓÉÓÚ´«ÈëÌØÊâ×Ö·ûÒýÆðµÄÎÒÃÇ¿ÉÒÔÔÚ¶ÔÊäÈëµÄÓû§ÃûÃÜÂë½øÈë¹ýÂËÌØÊâ×Ö·û´¦Àí¡£
b. ʹÓô洢¹ý³Ìͨ¹ý´«Èë²ÎÊýµÄ·½·¨¿É½â¾ö´ËÀàÎÊÌ⣨עÒ⣺ÔÚ´æ´¢¹ý³ÌÖв»¿ÉʹÓÃÆ´½ÓʵÏÖ£¬²»È»ºÍûÓô洢¹ýºÍÊÇÒ»ÑùµÄ£©¡£
2. XSS£¨¿çÕ¾½Å±¾¹¥»÷£©£º
½â¾ö·½°¸£º
¡¡¡¡a. ͨ¹ýÔÚ Page Ö¸Áî»ò Å ......
µ÷ÊÔ³ÌÐòºÍ×ö³ÌÐòµÄʱºò£¬ºÃ¶àÖØ¸´µÄ´úÂëÒ»Ö±ÊäÈëºÜÂé·³£¬Ò²ºÜûÓÐЧÂÊ£¬·â×°Ò»¸ö×Ô¼ºµÄAsp°ü°ü£¬Í¦ÓÐÓеÄ
ÏÂÔØ¸ö¾«¼ò°æµÄVB6.0£¬Ð½¨ ActiveX dll£¬ÒÔÏÂÊÇ·â×°µÄ´úÂë£¬ÖØÒª²¿·Ö¶¼ÓÐ×¢ÊÍ£¬²»¶®¿ÉÒÔ¸úÌû
Option Explicit
Public Resp As Response, Requ As Request, Appl As Application, Serv As Server, Sess As Sessio ......
Active Server Pages ÌṩÄÚ½¨¶ÔÏó£¬ÕâЩ¶ÔÏóʹÓû§¸üÈÝÒ×ÊÕ¼¯Í¨¹ýä¯ÀÀÆ÷ÇëÇó·¢Ë͵ÄÐÅÏ¢¡¢ÏìÓ¦ä¯ÀÀÆ÷ÒÔ¼°´æ´¢Óû§ÐÅÏ¢£¨ÈçÓû§Ê×Ñ¡Ï¡£±¾ÎļòҪ˵Ã÷ÿһ¸ö¶ÔÏó¡£
Application ¶ÔÏó
¿ÉÒÔʹÓà Application ¶ÔÏóʹ¸ø¶¨Ó¦ÓóÌÐòµÄËùÓÐÓû§¹²ÏíÐÅÏ¢¡£
Request ¶ÔÏó
¿ÉÒÔʹÓà Request ¶ÔÏó·ÃÎÊÈκÎÓà HTTP Çë ......
¹¦ÄÜ×÷ÓãºASP²úÉú²»Öظ´µÄËæ»úÊý£¨Ä£ÄâÓÎÏ·Ï´ÅÆ£©
<%
function GetRnd(lowerNum,upperNum)
Dim unit,RndNum,Fun_X
unit = upperNum - lowerNum
Redim MyArray(unit)
For Fun_I=0 To unit
myArray(Fun_I)= lowerNum + Fun_I
Next
For Fun_I=0 To round(unit)
RndNum ......