¸Õ¸ÕÕÒ³öÀ´µÄÏà¶Ô׼ȷµÄ²éÕÒHTMLµÄÕýÔò±í´ïʽ
Dim objReg,objMatches,objMatch
Set objReg=new RegExp
objReg.Global=True
objReg.IgnoreCase=True
objReg.Pattern="<('[^']*'|""[^""]*""|[^'"">])*?>"
Set objMatches=objReg.Execute(×Ö·û´®)
For Each objMatch In objMatches
ÕÒµ½µÄHTML £ºobjMatch.value
Next
Set objMatches=Nothing
Set objReg=Nothing
ÓÉÓÚ½ñÌì²éÕÒ
<img onclick='if(this.width>100) tihs.width=100' src="/xxx.jpg" />
ʱ·¢ÏÖ<[^>]+>µÄÑÏÖØ²»×ã
µ«ÊÇÍøÉÏÕÒ²»µ½ÈκÎ׼ȷµãµÄ£¬ÌØÐ´Ò»¸ö£¬ÒÔ±¸ÒÔºó¿ÉÄÜÐèÒª¡£
²éÕÒimgÕýÔò
<([^\s]+)\s('[^']*'|""[^""]*""|[^'"">])*?>
Ïà¹ØÎĵµ£º
.winstonDivClass{ overflow:hidden; zoom:1; }
Èç¹û¸¸divÐèÒª¸ù¾Ý×ÓdivµÄ´óСµÄ±ä»¯¶ø±ä»¯£¬ÄÇôÕâ¸ö¸¸div
ÐèÒª¼ÓÉÏclass="winstonDivClass"
,ÇҸø¸div²»ÄÜÖ¸¶¨heightÊôÐÔ£¬ÆäÖеÄ×ÓdivµÄpositionÊôÐÔ×îºÃΪrelative;
ÓÃzoom:1;´¥·¢ieµÄhaslayout,ÓÃÀ´Ç帡¶¯
¶øoverflow¿ÉÒÔ´¥·¢ie7µÄhaslayout£¬²¢ÔÚFF ......
ÏÂÃæÕâ¸öÍøÕ¾ÂÞÁÐÁË£¬¼¸ºõËùÓеĹØÓÚHTML 5 ÔÚ¸÷ÖÖÖ÷Á÷ä¯ÀÀÆ÷ÉϵݲȫÎÊÌ⣬ÕâЩ°²È«ÎÊÌâºÜÓпÉÄܽ«»áÊǺڿ͹¥»÷ÄãµÄÍøÉϵÄÇÃÃÅש£¬ËûÃǼ¸ºõ¶¼ºÍJavascript¶¼ÓйØÏµ£¬Äã¾ÍÒªºÃºÃ×¢ÒâÁË¡£
http://heideri.ch/jso/
ÏÂÃæÂÞÁм¸¸ö£º
1£©<table background=”javascript:alert(1)”>
IE6£¬7£¬8£¬9£¬ºÍOpera ......
function unhtml($content){
$content=htmlspecialchars($content);
$content=str_replace(chr(13),"<br>",$content);
$content=str_replace(chr(32)," ",$content);
return trim($content);
}
......
ǰ¼¸Ìì×öÏîÄ¿¡£ÐèÒªÓõ½Ò»¸öWinFormµÄHTMLµÄ±à¼ºÍÏÔʾ¿Ø¼þ¡£.NET×Ô¼º²¢Ã»ÓÐÌṩÕâ·½ÃæµÄ¿Ø¼þ¡£È¥Googel°Ù¶ÈÁËһϡ£Ã»ÓÐÕÒµ½ºÏÊʵÄ.NET¿Ø¼þ¡£ÎÞÄÎÈ¥Ó¢ÎÄGoogelÁËһϡ£¹ûÈ»·¢ÏÖÁËÒ»¿îÃûΪ£º.NET Win HTML Editor Control 3.2µÄ¿Ø¼þ¡£ÏÂÔØÅäÖû·¾³ÊÔÓ᣷¢ÏÖÃâ·Ñ°æÌṩȫ¹¦ÄÜÊÔÓá£Î¨Ò»²»ºÃµÄµØ·½¾ÍÊÇÔÚ±à¼ÇøÓÐÒ»¸ö×¢²áµÄÁ ......