·Àsql×¢ÈëÀà
using System;
using System.Text.RegularExpressions;
using System.Web;
namespace FSqlKeyWord
{
/**//**//**//// <summary>
/// SqlKey µÄժҪ˵Ã÷¡£
/// </summary>
public class SqlKey
{
private HttpRequest request;
//private const string StrKeyWord = @"select|insert|delete|from|count(|drop table|update|truncate|asc(|mid(|char(|xp_cmdshell|exec master|netlocalgroup administrators|:|net user|""|or|and";
//string StrKeyWord1 = @"(like|and|exec|insert|select|delete|update|chr|mid|master|or|truncate|char|declare|join)".Replace("|",")|(");
private const string StrKeyWord = @"( like | and | exec |insert|select|delete|update|chr|mid|master| or |truncate|char|declare|join|exec master|xp_cmdshell|net user|systypes|sysobjects)";
//private const string StrRegex = @"([-|;|,|/|(|)|[|]|}|{|%|@|*|!|'])";
private const string StrRegex = @"--|'|@|!";
public SqlKey(System.Web.HttpRequest _request)
{
//
// TODO: ÔÚ´Ë´¦Ìí¼Ó¹¹Ô캯ÊýÂß¼
//
this.request = _request;
}
public SqlKey()
{
//
// TODO: ÔÚ´Ë´¦Ìí¼Ó¹¹Ô캯ÊýÂß¼
//
//this.request = _request;
}
/**//**//**//// <summary>
/// Ö»¶ÁÊôÐÔ SQL¹Ø¼ü×Ö
/// </summary>
public static string KeyWord
{
get
{
return StrKeyWord;
}
}
/**//**//**//// <summary>
/// Ö»¶ÁÊôÐÔ¹ýÂËÌØÊâ×Ö·û
/// </summary>
public static string RegexString
{
get
{
return StrRegex;
}
}
/**//**//**//// <summary>
/// ¼ì²éURL²ÎÊýÖÐÊÇ·ñ´øÓÐSQL×¢Èë¿ÉÄܹؼü×Ö¡£
/// </summary>
/// <param na
Ïà¹ØÎĵµ£º
ʲôÊÇÊý¾Ý¿â·ÖÇø£¿
Êý¾Ý¿â·ÖÇøÊÇÒ»ÖÖ¶Ô±íµÄºáÏò·Ö¸î£¬Sql server 2005ÆóÒµ°æºÍÖ®ºóµÄSql server°æ±¾²ÅÌṩÕâÖÖ¼¼Êõ£¬ÕâÖÖ¶Ô±íµÄºáÏò·Ö¸î²»Í¬ÓÚ2000Öеıí·Ö¸î£¬Ëü¶Ô·ÃÎÊÓû§ÊÇ͸Ã÷µÄ£¬Óû§²¢²»»á¸Ð¾õµÄ±í±»ºáÏò·Ö¸îÁË¡££¨2000ÖеıíºáÏò·Ö¸îÊǽ¨n¸ö±íÀýÈ簴ʱ¼ä½¨±íÿÔÂÒ»¸ö±í£¬±íÃû²»Í¬£¬×îºóÐèÒª×öÒ»¸ö´óÊÓͼ£©
Ϊʲ ......
¡¾ÎÄÕ±êÌâ¡¿±àд
SQL
²éѯµÄ¹Ø¼ü—
SQL
Óï¾äµÄÖ´ÐÐ˳Ðò
¡¾ÎÄÕÂ×÷Õß¡¿Ôø½¡Éú
¡¾×÷ÕßÓÊÏä¡¿
zengjiansheng1@126.com
¡¾×÷Õß
QQ
¡¿
190678908
¡¾×÷Õß
MSN
¡¿
zengjiansheng1@hotmail.com
¡¾×÷Õß²©¿Í¡¿
blog.csdn.net/newjueqi
*********************************************************** ......
ÔÚÐ¶ÔØVisual Studio 2008 ʱ£¬Ìí¼Ó/ɾ³ý³ÌÐò ÀïÃæÓÐÐí¶àµÄ°²×°Îļþ£¬´ËʱÈç¹ûûÓÐÏÈÐ¶ÔØSQL Server 2005 £¬
¶øÏÈÐ¶ÔØ.Net Framework£¨Ìáʾ£ºÐ¶ÔØ.net FrameworkµÄµÃ°²°æ±¾´Ó¸ßµ½µÍµÄ˳Ðò£©£¬
ÕâʱSQL Server 2005¾ÍÎÞ·¨Ð¶ÔØ,ɾ³ýProgram files ÏÂÃæµÄ Microsoft SQL Server Îļþ¼ÐҲûÓÐ×÷Óá£
ÖØÐ°²×°ÌáʾÊý¾Ý¿ ......
¡¾Ñ§Ï°µãµãµÎµÎ¡¿ ÔںܶàÇé¿öÓë»·¾³ÖУ¬ÎÒÃǶ¼Òª¶ÔÒÑÓеÄÊý¾Ý¿â½øÐб¸·Ý£¬ÕâÑùÒÔ·ÀÖ¹µ±ÎÒÃÇÒòÈËΪ»òÕß·þÎñÆ÷µÈÖî¶àÔÒò¶øµ¼ÖµÄÊý¾Ý¶ªÊ§£¬
´Ó¶ø¸øÎÒÃÇ´øÀ´ºÜ´óµÄÂé·³£¬ÎÒÒ²ÊǽӴ¥SQLû¶à³¤Ê±¼ä£¬¶ÔÓëËüÇ¿´óµÄÊý¾Ý¿É»Ö¸´¹¦ÄÜ Ò²Ö»ÊÇÂÔÖªÒ»¶þ£¬µ±È»ÔÚÕâÀïÒ²Ö»ÊÇ×ö¶ÔËü×öÂÔÂԵļǼ£¬
´¿´âÊÇ ......
1¡¢ sql²éѯ×îºóÒ»ÌõÊý¾Ýselect * from table order by id DESC limit 1
2¡¢select top1 * from tablename where order by id desc
ͨ¹ýÔÚmysqlÖвâÊÔ£¬Ö»ÓеÚÒ»ÖÖ¿ÉÒÔʹÓ㬲»ÖªµÀÆäËûÊý¾Ý¿âÊÇ·ñÖ§³ÖµÚ¶þÖÖ·½·¨£¬ÍøÉϺܶàÈË˵ÓõڶþÖÖ·½·¨ ......