¿ìËÙÒµÎñͨµÀ

EwebeditorºÍfckeditork±à¼­Æ÷µ¥ÒýºÅ¹ýÂË

×÷Õß ØýÃû¼¼Êõ À´Ô´ ASP±à³Ì ä¯ÀÀ ·¢²¼Ê±¼ä 2012-03-13

WebjxComÌáʾ£ºEwebeditor¼°fckeditorkµ¥ÒýºÅµÄÎÊÌâ.

Ewebeditor¼°fckeditork£¬90%µÄÍøÕ¾¶¼ÊDzÉÓÃÕâÁ½Öֱ༭Æ÷×÷Ϊ²úÆ·»òÕßÄÚÈݵÄ˵Ã÷²¿·ÖµÄ±à¼­´°¿Ú£¬½üÈÕ£¬Ò»¿Í»§µÄÍâóվµã»ù±¾ÉÏ¿ìÍ깤ÁË£¬Òò¿Í»§²úÆ··ÖÀà¶à£¬¹Ê¶øÈÿͻ§×Ô¼ºÔÚºǫ́Ìí¼Ó²úÆ·£¬µ«ÊÇ¿Í»§·´Ó³£¬ÔÚºǫ́Ìí¼Ó²úƷʱ£¬Èç¹û²úƷ˵Ã÷ÄÚÈÝÌ«¹ý¸´ÔӵĻ°£¬²úÆ·ÔõôҲÌí¼Ó²»ÈëÊý¾Ý¿âÖС£

µ±Ê±£¬ÎÒÃÇÒ²ºÃÉúÓôÃÆ£¬Õâµ½µ×Ôõô»ØÊ£¬ÎÒÃÇÇ××Ô²âÊÔºǫ́Ìí¼ÓÈÎÒâµÄ²úÆ·»òÕßÎÄ×Ö¶¼Äܳɹ¦£¬Æ«Æ«Ëû¾Í²»ÐУ¬ÔÚÍøÕ¾ËÑË÷ÁËÏà¹ØµÄÈç“Ewebeditor ²»ÄÜÌí¼Óµ½Êý¾Ý¿â”£¬ËƺõÕÒµ½ÁËÒ»µã´ð°¸£¬ÒòEwebeditor×ÔÉíû¶Ôµ¥ÒýºÅ¹ýÂË£¬µ¼ÖÂÁËÌí¼Ó²»µ½Êý¾Ý¿âµÄÎÊÌâ¡£ÓÚÊǺõ£¬ÎÒÃǰѱ༭Æ÷»»³ÉÁËfckeditork£¬¿ÉÊÇ»¹ÊDz»ÐУ¬ÄÇÊÇEwebeditor¼°fckeditork×Ô´øµÄ²»ÍêÉƵ¼ÖµÄÂð£¿ÎªÊ²Ã´Ò»¸ö¼òµ¥µÄµ¥ÒýºÅ»áÒý·¢²»ÄÜÌí¼Óµ½Êý¾Ý¿âÄØ£¬Ïëµ½ÕâÀÎÒÃÇÏëµ½ÁË·ÖÎöÏ**ë¿â´úÂ룬ÎÒÃDzÉÓõÄÊÇSQL=insert into product(title,content) values('' " &request("title")& "'' ,'' "&request("content")& " '' )µÄд·¨£¬ÓÚÊÇÎÒÃÇÕÒµ½¿Í»§µ±Ê±COPY½ø±à¼­Æ÷ÀïµÄÄÚÈÝ£¬·¢ÏÖ£¬¹ûÈ»ÕâÄÚÈÝÖаüÀ¨Óе¥ÒýºÅ£¬Ô­À´£¬ÕýÊÇÓÉÓÚ¿Í»§Ìá½»µ½±à¼­Æ÷ÀïµÄÄÚÈÝÖк¬Óе¥ÒýºÅ£¬µ¼ÖÂÎÒÃǵÄSQLÓï¾ä±ä»¯ÁË£¬Ï൱ÓÚÔ­À´ÊÇSQL=insert into product(title,content) values(''ÄÚÈÝ'' ,''ÄÚÈÝ'' )±ä³ÉÁËSQL=insert into product(title,content) values('' ÄÚÈÝ'' ,'' ÄÚÈÝ'''' )£¬ÎÒÃÇϸ¿´¾ÍÖªµÀ£¬¾ÍÒòΪÕâcontentÀï¶àÁ˸öµ¥ÒýºÅ£¬SQLÓï¾ä·¢ÉúµÄÑÏÖصÄд·¨´íÎ󣬵«ÊÇ£¬ÎÒÃÇÒ²Ææ¹Ö£¬¼ÈÈ»Ëûд·¨´íÎó£¬ÎªÊ²Ã´SQLÓï¾ä²»¸ø³ö´íÎóÌáʾÄØ£¬¾¹È»Ò²»áÌáʾ²Ù×÷³É¹¦£¬Ïëµ½ÕâÀÎÒÃÇÏëµ½ÁË2003ÄêÄǼ¸Ä꣬ÆÕ±éµÄСºÚ¿Íϲ»¶ÓõÄ'' or'' ='' or'' µÄºǫ́ÈëÇÖ·¨£¬ÊǺõÕýÊÇÀûÓÃÁËSQLÖ´ÐÐʱ£¬Ã»¹ýÂ˵¥ÒýºÅµÄBUG£¬µ¼ÖÂSQLÔõôִÐУ¬½á¹û¶¼·µ»ØÕ棬ºÇºÇ£¬Ã»Ïëµ½£¬Ô­ÒÔΪд³ÌÐò¾¡Á¿Í¼¸ö¼òµ¥Ã÷ÁË£¬Ò²ÊǸö´í°¡¡£ºÃÁË£¬ÎÊÌâÕÒµ½ÁË£¬ÒԺ󣬷²ÊÇSQLÈë¿âÇ°£¬ÎÒÃǶ¼°Ñ×ֶιýÂ˺óÔÙ´«Öµ£¬¾Í²»»áÔÙ³öÕâÑùµÄÎÊÌâÁË£¬ÏÂÃæÊÇÒ»¸ö·Ç³£ÍêÉƵÄSQL°²È«¹ýÂ˺¯Êý£¬´ó¼ÒÖ±½ÓÄÃÈ¥¾Í¿ÉÒÔµ÷ÓÃÁË¡£

Function HTMLEncode(Str)
 If Isnull(Str) Then
     HTMLEncode = ""
     Exit Function
 End If
 Str = Replace(Str,Chr(0),"", 1, -1, 1)
 Str = Replace(Str, """", """, 1, -1, 1)
 Str = Replace(Str,"<","&lt;", 1, -1, 1)
 Str = Replace(Str,">","&gt;", 1, -1, 1)
 Str = Replace(Str, "script", "&#115;cript", 1, -1, 0)
 Str = Replace(Str, "SCRIPT", "&#083;CRIPT", 1, -1, 0)
 Str = Replace(Str, "Script", "&#083;cript", 1, -1, 0)
 Str = Replace(Str, "script", "&#083;cript", 1, -1, 1)
 Str = Replace(Str, "object", "&#111;bject", 1, -1, 0)
 Str = Replace(Str, "OBJECT", "&#079;BJECT", 1, -1, 0)
 Str = Replace(Str, "Object", "&#079;bject", 1, -1, 0)
 Str = Replace(Str, "object", "&#079;bject", 1, -1, 1)
 Str = Replace(Str, "applet", "&#097;pplet", 1, -1, 0)
 Str = Replace(Str, "APPLET", "&#065;PPLET", 1, -1, 0)
 Str = Replace(Str, "Applet", "&#065;pplet", 1, -1, 0)
 Str = Replace(Str, "applet", "&#065;pplet", 1, -1, 1)
 Str = Replace(Str, "[", "&#091;")
 Str = Replace(Str, "]", "&#093;")
 Str = Replace(Str, """", "", 1, -1, 1)
 Str = Replace(Str, "=", "&#061;", 1, -1, 1)
 Str = Replace(Str, "''", "''''", 1, -1, 1)
 Str = Replace(Str, "select", "sel&#101;ct", 1, -1, 1)
 Str = Replace(Str, "execute", "&#101xecute", 1, -1, 1)
 Str = Replace(Str, "exec", "&#101xec", 1, -1, 1)
 Str = Replace(Str, "join", "jo&#105;n", 1, -1, 1)
 Str = Replace(Str, "union", "un&#105;on", 1, -1, 1)
 Str = Replace(Str, "where", "wh&#101;re", 1, -1, 1)
 Str = Replace(Str, "insert", "ins&#101;rt", 1, -1, 1)
 Str = Replace(Str, "delete", "del&#101;te", 1, -1, 1)
 Str = Replace(Str, "update", "up&#100;ate", 1, -1, 1)
 Str = Replace(Str, "like", "lik&#101;", 1, -1, 1)
 Str = Replace(Str, "drop", "dro&#112;", 1, -1, 1)
 Str = Replace(Str, "create", "cr&#101;ate", 1, -1, 1)
 Str = Replace(Str, "rename", "ren&#097;me", 1, -1, 1)
 Str = Replace(Str, "count", "co&#117;nt", 1, -1, 1)
 Str = Replace(Str, "chr", "c&#104;r", 1, -1, 1)
 Str = Replace(Str, "mid", "m&#105;d", 1, -1, 1)
 Str = Replace(Str, "truncate", "trunc&#097;te", 1, -1, 1)
 Str = Replace(Str, "nchar", "nch&#097;r", 1, -1, 1)
 Str = Replace(Str, "char", "ch&#097;r", 1, -1, 1)
 Str = Replace(Str, "alter", "alt&#101;r", 1, -1, 1)
 Str = Replace(Str, "cast", "ca&#115;t", 1, -1, 1)
 Str = Replace(Str, "exists", "e&#120;ists", 1, -1, 1)
 Str = Replace(Str,Chr(13),"<br>", 1, -1, 1)
 HTMLEncode = Replace(Str,"''","''''", 1, -1, 1)
End Function

ÁèÖڿƼ¼×¨ÒµÌṩ·þÎñÆ÷×âÓᢷþÎñÆ÷Íйܡ¢ÆóÒµÓʾ֡¢ÐéÄâÖ÷»úµÈ·þÎñ£¬¹«Ë¾ÍøÕ¾£ºhttp://www.lingzhong.cn ΪÁ˸ø¹ã´ó¿Í»§Á˽â¸ü¶àµÄ¼¼ÊõÐÅÏ¢£¬±¾¼¼ÊõÎÄÕÂÊÕ¼¯À´Ô´ÓÚÍøÂç,ÁèÖڿƼ¼×ðÖØÎÄÕÂ×÷ÕߵİæȨ£¬Èç¹ûÓÐÉæ¼°ÄãµÄ°æȨÓбØҪɾ³ýÄãµÄÎÄÕ£¬ÇëºÍÎÒÃÇÁªÏµ¡£ÒÔÉÏÐÅÏ¢ÓëÎÄÕÂÕýÎÄÊDz»¿É·Ö¸îµÄÒ»²¿·Ö,Èç¹ûÄúҪתÔر¾ÎÄÕÂ,Çë±£ÁôÒÔÉÏÐÅÏ¢£¬Ð»Ð»!

·ÖÏíµ½£º ¸ü¶à

Copyright ©1999-2011 ÏÃÃÅÁèÖڿƼ¼ÓÐÏÞ¹«Ë¾ ÏÃÃÅÓÅͨ»¥Áª¿Æ¼¼¿ª·¢ÓÐÏÞ¹«Ë¾ All rights reserved

µØÖ·(ADD)£ºÏÃÃÅÈí¼þÔ°¶þÆÚÍûº£Â·63ºÅ701E£¨¶«ÄÏÈÚͨÅÔ£© Óʱà(ZIP)£º361008

µç»°£º0592-5908028 ´«Õ棺0592-5908039 ×ÉѯÐÅÏ䣺web@lingzhong.cn ×ÉѯOICQ£º173723134

¡¶ÖлªÈËÃñ¹²ºÍ¹úÔöÖµµçÐÅÒµÎñ¾­ÓªÐí¿ÉÖ¤¡·ÃöB2-20100024  ICP±¸°¸:ÃöICP±¸05037997ºÅ