当前位置:Gxlcms > 数据库问题 > 过滤sql语句

过滤sql语句

时间:2021-07-01 10:21:17 帮助过:8人阅读

#Region "过滤sql语句"
Public Shared Function denny(ByVal id) As String
id = Replace(id, "‘", "")
id = Replace(id, " and ", "")
id = Replace(id, "select ", "")
id = Replace(id, "update ", "")
id = Replace(id, " chr ", "")
id = Replace(id, " delete ", "")
id = Replace(id, "%20from", "")
id = Replace(id, ";", "")
id = Replace(id, "insert ", "")
id = Replace(id, " mid ", "")
id = Replace(id, "set", "")
id = Replace(id, "chr(37)", "")
id = Replace(id, "=", "")
id = Replace(id, "(", "")
id = Replace(id, "exec%20master.dbo.xp_cmdshell", "")
id = Replace(id, "xp_cmdshell", "")
id = Replace(id, "net localgroup administrators", "")
Return id
End Function
#End Region

过滤sql语句

标签:shell   return   region   ini   exec   mini   upd   function   sele   

人气教程排行