⭐ 欢迎来到虫虫下载站! | 📦 资源下载 📁 资源专辑 ℹ️ 关于我们
⭐ 虫虫下载站

📄 check_login.test.asp

📁 花钱买的毕业设计。企业网络管理系统
💻 ASP
字号:
<%@LANGUAGE="VBSCRIPT" CODEPAGE="936"%>
<html>
<head>
<title>Untitled Document</title>
<meta http-equiv="Content-Type" content="text/html; charset=gb2312">
</head>
<%
'On Error Resume Next
Response.Write(Server.URLEncode("""") & "  " & Server.HTMLEncode("""") & "<br>")
dim str,login_name,password
login_name = "1' or 1 = 1 or '1' <> '"
password = "1' or 1 = 1 or '1' <> '"
str = "select top 1 * from member where login_name = '" & login_name & "'"
Response.Write(str & "<br>")
str = "select top 1 name from member where (login_name = '" & login_name & "') and (password = '" & password & "')"
Response.Write(str & "<br>")
login_name = "1"" or 1 = 1 or ""1"" <> "" "
password = "1"" or 1 = 1 or ""1"" <> "" "
str = "select top 1 * from member where login_name = """ & login_name & """ and password = """ & password & """"
Response.Write(str & "<br>")
str = "select top 1 * from member where (login_name = """ & login_name & """) and (password = """ & password & """)"
Response.Write(str & "<br>")
Session("rs").Open str,Session("conn")
if not Session("rs").EOF and Session("password") = password  then
	Session("login_name") = Session("rs")("login_name")
	Response.Write("login success!")
else
	Response.Write("Invalid login_name!")
end if

'Response.Write(str)
'Response.End()
Session("rs").Close

%>
<body>
<textarea name="textarea"><%= Server.HTMLEncode("'") %></textarea>
</body>
</html>

⌨️ 快捷键说明

复制代码 Ctrl + C
搜索代码 Ctrl + F
全屏模式 F11
切换主题 Ctrl + Shift + D
显示快捷键 ?
增大字号 Ctrl + =
减小字号 Ctrl + -