| µ±Ç°Î»ÖãºÊ×Ò³>>WEB°²È«>>asp°²È«>>ÕýÎÄ |
|
·ÀÖ¹±ðÈËÔÚQueryStringÖмÓÈëdelete»òÆäËû×Ö·ûɾ³ýÄãµÄÊý¾Ý¿âÄÚÈÝ |
| ÎÄÕ³ö´¦£º·ÀÖ¹±ðÈËÔÚQueryStringÖмÓÈëdelete»òÆäËû×Ö·ûɾ³ýÄãµ ·¢²¼Ê±¼ä£º2004-09-12 µã»÷:0 |
| |
Ä¿Ç°ÍøÂçÉÏÓÐЩÈ˵ÃÓñà³ÌÈËÔ±µÄsql±à³ÌµÄ©¶´£¨¹ÀÇÒ½Ð×ö©¶´£ºP£©
ÔÚQueryStringºó¼ÓÉÏÖîÈ磺;delete forum_forum;--ÕâÀàµÄÓï¾ä£¬À´¶ÔÄãµÄÊý¾Ý¿â½øÐÐdelete²Ù×÷¡£
Ôì³ÉÕâÑùµÄÔÒòÊDZà³Ì²»ÑÏÃÜ¡£ÎÒ¸ø´ó¼ÒÌṩһÖÖС·½·¨£¬Ò²ÐíÕâÖÖ·½·¨Ì«²ËÁ˵«Çë²»Òª¼ûЦ¡££º£©
examle£º
<a href="add.asp?action=add">
<a href="add.asp?action=delete">
Ôò´¦Àíº¯ÊýÈçÏ£º
action1=trim(Request.QueryString())
if left(action1,7)<>"action=" then 'ÏÞ¶¨querystring±ØÐëΪ
action=
error(err01)'´íÎó´¦Àí
else
action=Request.querystring("action")'È¡µÃquerystringµÄÖµ
end if
select case action'¶Ôquerystring½øÐд¦Àí
case "add"
.....
case "delete"
......
case else 'Èç¹ûquerystringûÓÐÕâ¸öÖµÔò½øÐдíÎó´¦Àí
error(err02)
end select
¡¡
|
| ×÷Õߣº |
| [·µ»Ø¶¥²¿¡ü]
[ÍÆ¼öºÃÓÑ]
[²é¿´ÆÀÂÛ] |
|
|
|
|