%@ Language=VBScript %>
<% Option Explicit %>
<%
dim str,val ' ÇØÇÇÁ¤´åÄÄ Ãß°¡ 2008-05-27
function sqlCheck(str)
val=UCASE(str)
if instr(val, ";") <> 0 Or _
instr(val, "'") <> 0 Or _
instr(val, "--") <> 0 Or _
instr(val, "/*") <> 0 Or _
instr(val, "*/") <> 0 Or _
instr(val, "XP_") <> 0 Or _
instr(val, "DECLARE") <> 0 Or _
instr(val, "SELECT") <> 0 Or _
instr(val, "UPDATE") <> 0 Or _
instr(val, "DELETE") <> 0 Or _
instr(val, "INSERT") <> 0 Or _
instr(val, "SHUTDOWN") <> 0 Or _
instr(val, "DROP") <> 0 then
' response.write "¿À·ù¹ß»ý"
response.Write("")
response.End
Else
sqlCheck=str
end if
end function
'Dim idx : idx=sqlCheck(request("idx"))
Dim NewGetTable : NewGetTable = "noticesofBoard1"
Dim GetPage : GetPage = sqlCheck(request("page"))
Dim GetSearchPart : GetSearchPart = sqlCheck(request("SearchPart"))
Dim GetSearchStr : GetSearchStr = sqlCheck(request("SearchStr"))
%>
PLM Best Practice Conference 2008 > PLM Community > °øÁö»çÇ×
 |
 |
 |
ÇöÀçÀ§Ä¡ : HOME >PLM Community > °øÁö»çÇ× |
|
|
|
|