📄 sqldebug.asp
字号:
<!--#include file="conn.asp"-->
<%
If Request("IsPost")<>"" Then
Dim objRS,strSQL
strSQL="SELECT * FROM [UserInfo] WHERE UI_CerRank_N>="&Request("CerRank")
Set objRS=Server.CreateObject("ADODB.RecordSet")
objRS.Open strSQL,objConn,1,3
Response.Write "<p align=center>"&strSQL&"</p>"
For i=1 To objRS.RecordCount
Response.Write "<p align=center>您所查找的用户是:"&objRS("UI_Name_S")&"</p>"
objRS.MoveNext
Next
objRS.Close
Set objRS=Nothing
CloseDatabase
Else
%>
<html>
<head>
<meta name=vs_targetSchema content="http://schemas.microsoft.com/intellisense/ie5">
<title>SQL注入演示</title>
</head>
<body>
<form action=SQLDebug.asp>
<p align=center>
请输入用户级别:
<input type=text name=CerRank> <input type=submit value=提交>
</p>
<input type=hidden name=IsPost value=yes>
</form>
</body>
</html>
<%
End If
%>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -