asp.net ÍøÕ¾°²È«½â¾ö·½°¸
1¡¢sql×¢Èë©¶´¡£
½â¾ö°ì·¨£ºÊ¹Óô洢¹ý³Ì£¬²ÎÊý²»ÒªÓÃ×Ö·û´®Æ´½Ó¡£¼òµ¥¸Ä½ø°ì·¨£ºÊ¹ÓÃSqlHelperºÍOledbHelper
2¡¢¿çÕ¾½Å±¾Â©¶´
½â¾ö°ì·¨£º“ĬÈϽûÖ¹£¬ÏÔʽÔÊÐ픵IJßÂÔ¡£¾ßÌå²Î¿¼£º´Ó¿Í»§¶Ë¼ì²âµ½ÓÐDZÔÚΣÏÕµÄRequest.FormÖµ£¬½ûÖ¹Ìá½»html±ê¼Ç£¨<>µÈ±»×ªÒå³É<£©
3¡¢ÉÏ´«Â©¶´
½â¾ö°ì·¨£º½ûÖ¹ÉÏ´«Ä¿Â¼µÄÔËÐÐȨÏÞ¡£Ö»¸ø¶ÁȡȨÏÞ¡£ÁíÍâÒª½ûÖ¹ÉÏ´«·Ç·¨ÀàÐÍÎļþ¡£²»½ö½öÊÇaspxÀàÐÍ£¬°üÀ¨ºÜ¶à£¬ÉõÖÁhtm¡¢htmlÀàÐÍÎļþÒ²²»Ó¦¸ÃÖ±½ÓÉÏ´«±£´æ¡£
4¡¢Êý¾Ý¿âÁ¬½ÓÕʺţ¬¾¡Á¿Ê¹ÓÃ×îµÍȨÏÞµÄÕʺš£Ò»¶¨²»Òª¸ø¹ÜÀíԱȨÏÞ¡£
¼ÙÈç±»ºÚ¿ÍµÃÖªÁËÊý¾Ý¿âµÄÃÜÂë¡£
ÄÇÎÒÃǾͿÉÒÔÖ´ÐÐÈÎÒâϵͳÃüÁîÁË¡£
ÀýÈ磺xp_cmdshell 'dir c:\'
ÁíÍ⻹ÓÐ
tasklist
taskkill
pslist
pskill
net user
net user guest /active:yes
net user hack hack /add
net user hack /del
net localgruop administrators hack /add
query user
logoff 1
ÕâЩÃüÁîÊDz»ÊǺֲܿÀ£¿ºÇºÇ¡£ËùÒÔÒ»¶¨²»Òª¸øwebÊý¾Ý¿âÁ¬½ÓÕʺŹÜÀíȨÏÞ¡£
5¡¢Óû§µÇ¼¡£ÕâÀï²»Òª°ÑÓû§±êʶÃ÷ÎÄ´æ´¢ÔÚcookieÀÒÔÓÃÀ´±êʶÓû§ÊÇ·ñµÇ¼¡£ÒòΪcookieÊÇ¿ÉÒÔ±»Ð޸ĵġ£Çë¿´ÕâÀïµÄÐÞ¸Äcookie£¬Ã°³äÆäËûÓû§¡£nc httpwatchʹÓÃÊÓÆµ½Ì³Ì£¬ÓÃ΢ÈíµÄForms´°ÌåÉí·ÝÑéÖ¤ºÍ½Çɫһ°ãÇé¿ö¶¼¹»ÓÃÁË¡£
6¡¢Èç¹ûÍøÕ¾³ÌÐòÖÐÓõ½¶ÁдÎļþ£¬Ò»¶¨ÒªÉ÷ÖØ£¬ÒòΪ¶ÁÈ¡µÄ²Ù×÷ºÜ¿ÉÄܱ»ºÚ¿ÍÀûÓã¬ÀýÈçÓÃÒ»¸ö²é¿´Í¼Æ¬µÄaspxÎļþ¶ÁÈ¡web.config£¬ÓÃÒ»¸öÉú²úÄ£°åµÄ¹¦ÄÜÉú³ÉľÂí¡£
7¡¢³ä·ÖÀûÓÃÑéÖ¤Âë¡£Óû§µÇ¼¡¢ÆÀÂ۵ȵȿÉÄܻᱻÌá½»À¬»øÐÅÏ¢µÄµØ·½£¬¶¼ÒªÊ¹ÓÃÑéÖ¤Â룬¶øÇÒÒªÓÐÒ»¸ö°²È«µÄÑéÖ¤Âë¡£²ÅÄÜ·ÀÖ¹±»±©Á¦ÆÆ½â£¬·ÀÖ¹ÍøÕ¾³äÂúÀ¬»øÊý¾Ý¡£
8¡¢´úÂëÒªÑϽ÷£¬ÐÞ¸ÄÓû§×ÊÁÏ¡¢ÐÞ¸ÄÓû§Êý¾Ý¶¼Òª¸úÓû§¹ØÁªÆðÀ´£¬±ÈÈçupd
Ïà¹ØÎĵµ£º
·Ï»°²»Ëµ£¬Ö±½Ó´úÂ벿·Ö´úÂëÕª³×ÔÍøÉÏ£¬ÔÚ´ËÏëÔ×÷Õß±íʾ¸Ðл
1¡¢·þÎñ¶Ë uploadFile.ashx
<%@ WebHandler Language="VB" Class="UploadFile" %>
Imports System
Imports System.Web
Imports System.Web.HttpServerUtility
Imports System.IO
Imports System.Web.HttpRequest
Public Class UploadFile : Impl ......
Õª³Ç°±²ÃǵÄ
ÆäʵҪʵÏÖÕâ¸ö¹¦ÄÜÖ÷Òª»¹ÊÇÒªÓõ½javascript
·½·¨Ò»£º
ÔÚasp.netµÄaspxÀïÃæµÄÔ´´úÂëÖÐ
<input type="button onclick="javascript:window.history.go(-1);"value="·µ»ØÉÏÒ»Ò³">
dzÎö£ºÕâ¸öÊÇÓÃÁËHTML¿Ø¼þ£¬Í¨¹ýÒ»¸öonclickµÄʼþ£¬µ÷ÓÃÁËjavascriptÖеÄÒ»¸ö·½·¨¾Í¿ÉÒÔÁË¡£Õâ¸öÊÇ×î¼òµ¥µÄÁË£¬Ò²Í¬Ñù ......
²½Öè1£º
ÐÞ¸Äwin2003ÉÏ´«ÏÞÖÆ£¬ÕÒµ½windows\system32\inserv\metabase.xmlÎļþ
½«ÆäÖеġ¡aspmaxrequestentityallowed= µÄÖµ¸ÄΪ1073741824¡¡£¨1G£©
×¢ÒâÐÞ¸ÄǰҪֹͣIISµÈ·þÎñ¡£
²½Öè2£º
Èç¹ûÄã×°µÄÊÇnet1.1£¬ÇëÕÒµ½windows\...\v1.1.4322\config\machina.configÎļþ£¬½«execution timeout¸ÄΪ36000
½ ......
ÉèÖÃ×é¼þ
<configSections>
<section name="rewriter" requirePermission="false" type="Intelligencia.UrlRewriter.Configuration.RewriterConfigurationSectionHandler, Intelligencia.UrlRewriter"/>
</configSections>
ÉèÖÃÄ£¿é
<httpModules>
&n ......
1¡¢ response.redirect Õâ¸öÌø×ªÒ³ÃæµÄ·½·¨Ìø×ªµÄËٶȲ»¿ì£¬ÒòΪËüÒª×ß2¸öÀ´»Ø(2´Îpostback)£¬µ«Ëû¿ÉÒÔÌø×ªµ½ÈκÎÒ³Ãæ£¬Ã»ÓÐÕ¾µãÒ³ÃæÏÞÖÆ(¼´¿ÉÒÔÓÉÑÅ»¢Ìøµ½ÐÂÀË)£¬Í¬Ê±²»ÄÜÌø¹ýµÇ¼±£»¤¡£µ«ËÙ¶ÈÂýÊÇÆä×î´óȱÏÝ!redirectÌø×ª»úÖÆ£ºÊ×ÏÈÊÇ·¢ËÍÒ»¸öhttpÇëÇ󵽿ͻ§¶Ë£¬Í¨ÖªÐèÒªÌø×ªµ½ÐÂÒ³Ãæ£¬È»ºó¿Í»§¶ËÔÚ·¢ËÍÌø×ªÇëÇóµ½·þÎñÆ÷¶ ......