📄 sever.asp
字号:
<%
function kgubb(str)
if IsNull(str) then exit function
str=trim(str)
str=replace(str," ","")
str=replace(str," ","")
set re=Nothing
kgubb=str
end function
'''''''''''''''''''''''''''''''
'''''''''''''''''''''''''''''''
if tsfstsfs="1" then jjkkll="出现提示"
if tsfstsfs="2" then jjkkll="出现提示并加黑该会员"
if tsfstsfs="3" then jjkkll="系统直接加黑该会员"
if tsfstsfs="4" then jjkkll="记录后通过提交"
Dim GetFlag Rem(提交方式)
Dim ErrorSql Rem(非法字符)
Dim RequestKey Rem(提交数据)
Dim ForI Rem(循环标记)
ErrorSql = ""&jzwjjzwj&"|A|B|C|E|T|O|M|H|k|I" Rem(每个敏感字符或者词语请使用半角 "|" 格开)
ErrorSql = split(ErrorSql,"|")'分割字符
If Request.ServerVariables("REQUEST_METHOD")="GET" Then'判断提交方式
GetFlag=True
Else
GetFlag=False
End If
If GetFlag Then
For Each RequestKey In Request.QueryString
For ForI=0 To Ubound(ErrorSql)
If Instr(kgubb(LCase(Request.QueryString(RequestKey))),ErrorSql(ForI))<>0 Then
%>
<%if tsfstsfs="1" then
'提示不加黑%>
<wml><card title="出错了"><p><%=jjhhh%><br/><anchor>回到来源页<prev/></anchor></p></card></wml>
<%elseif tsfstsfs="2" then
'加黑并提示
%>
<wml><card title="出错了"><p><%=jjhhh%><br/><anchor>回到来源页<prev/></anchor><br/>您已经被加黑
<%sql="update Users set grzt=2 Where id='" & myid & "'"
conn.Execute(sql)%>
</p></card></wml>
<%elseif tsfstsfs="3" then%>
<%
'直接加黑不提示
sql="update Users set grzt=2 Where id='" & myid & "'"
conn.Execute(sql)
response.redirect"index.asp?hk="&hk
%>
<%end if%>
<%if zrjlzrjl="1" then%>
<%set rsll=Server.CreateObject("ADODB.Recordset")
rsplll="select * from czff"
rsll.open rsplll,conn,1,2
rsll.addnew
rsll("fnr")="ID"&myid&"非法提交内容["&Request(RequestKey)&"][br]处理方式:"&jjkkll&""
rsll("fid")=myid
rsll.update
rsll.close
set rsll=nothing%>
<%end if%>
<%if tsfstsfs<>"4" then Response.End
End If
Next
Next
Else
For Each RequestKey In Request.Form
For ForI=0 To Ubound(ErrorSql)
If Instr(kgubb(LCase(Request.Form(RequestKey))),ErrorSql(ForI))<>0 Then
%>
<%if tsfstsfs="1" then
'提示不加黑%>
<wml><card title="出错了"><p><%=jjhhh%><br/><anchor>回到来源页<prev/></anchor></p></card></wml>
<%elseif tsfstsfs="2" then
'加黑并提示
%>
<wml><card title="出错了"><p><%=jjhhh%><br/><anchor>回到来源页<prev/></anchor><br/>您已经被加黑
<%sql="update Users set grzt=2 Where id='" & myid & "'"
conn.Execute(sql)%>
</p></card></wml>
<%elseif tsfstsfs="3" then%>
<%
'直接加黑不提示
sql="update Users set grzt=2 Where id='" & myid & "'"
conn.Execute(sql)
response.redirect"index.asp?hk="&hk
%>
<%end if%>
<%if zrjlzrjl="1" then%>
<%
set rsll=Server.CreateObject("ADODB.Recordset")
rsplll="select * from czff"
rsll.open rsplll,conn,1,2
rsll.addnew
rsll("fnr")="ID"&myid&"非法提交内容["&Request(RequestKey)&"][br]处理方式:"&jjkkll&""
rsll("fid")=myid
rsll.update
rsll.close
set rsll=nothing%>
<%end if%>
<%
if tsfstsfs<>"4" then Response.End
End If
Next
Next
End If
%>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -