´ç½Å¿¡°Ô·Î ¶°³ª´Â ²Þ¼Ó¿©Çà - ²Þ¼Ó³ª¶ó(http://www.inyourdream.net)
ID¿Í Password¸¦ ÀÔ·ÂÇϼ¼¿ä.
ÀÔ±¹Çϱâ
|
¿µÁÖ±Ç ½Åû
¸öºÎ¸² °ñ¶ó°ñ¶ó
¼Ò±Ù¼Ò±Ù
µµ¶õµµ¶õ
³«¼¸¶´ç
Âø°¢ÇѾÆÀÌ
¼ýÀÚ¸ÂÃß±â
¼Ò¿øºô±â
ÈçÀû³²±â±â
²Þ¼Ó¿©Çà
Ä£±¸Áý ³î·¯°¡±â
¸ðµÎµå¸²´ÔÀÇ È¨
î¤éÞ´ÔÀÇ È¨
Çö¿ì´ÔÀÇ È¨
º°¾ÆÇØ´ÔÀÇ È¨
ÇÞ»ì´ÔÀÇ È¨
À̳ª´Ï´ÔÀÇ È¨
À¯¸®¾Ë´ÔÀÇ È¨
³È³ÈÀÌ´ÔÀÇ È¨
²ÀÁö´ÔÀÇ È¨
´ë¼º´ÔÀÇ È¨
¼öÁ¤ÇϽǶ§´Â ÇʼöÇ׸ñÀ» ¸ðµÎ ÀÔ·ÂÇÏ¼Å¾ß ÇÕ´Ï´Ù.
À̸§
*
°øÁö»çÇ×
ºñ°ø°³
HTML »ç¿ë
Á¦¸ñ
*
¼±ÅÃ
ÀÚÀÛ
»ç¶û
À¯¸Ó
ÀÚÀ¯
̵̧
¾Ë¸²
Áú¹®
±âŸ
³»¿ë
*
> °Ô½ÃÆÇ¿¡ Ç¥½ÃµÇ´Â ½Ã°£À» ¿ÀÀü,¿ÀÈÄ°¡ ¾Æ´ÑAM,PMÀ¸·Î > ¹Ù²Ù°í ½ÍÀºµ¥ .. > SQL = "INSERT INTO my (name,email,homepage,title,content,num," > SQL = SQL & " readnum,writeday,pwd) VALUES " > SQL = SQL & "('" & name & "'" > SQL = SQL & ",'" & email & "'" > SQL = SQL & ",'" & homepage & "'" > SQL = SQL & ",'" & title & "'" > SQL = SQL & ",'" & content & "'" > SQL = SQL & "," & number > SQL = SQL & ", 0 ,'" & now() & "'" > SQL = SQL & ",'" & pwd & "')" > writedayÀÇ ÇÔ¼ö¸¦ now°¡¾Æ´Ñ ´Ù¸¥°ÍÀ¸·Î ¹Ù²Ù¾î¾ßÇÏ´ÂÁö¿ä ¼Ò½º´Â ÀÌ°ÍÀÔ´Ï´Ù.<% > 'request°´Ã¼¸¦ ÅëÇØ ³Ñ¾î¿Â °ªµéÀ» º¯¼ö¿¡ ÀúÀåÇÑ´Ù. (ÃßõµÇ´Â ¹æ¹ýÀÌ´Ù) > name = request("name") > email = request("email") > homepage = request("homepage") > title = request("title") > pwd = request("pwd") > content = request("content") > > 'Äõ¸®¿¡ '°¡ µé¾î°¡¸é ¿¡·¯°¡ ³ª±â¿¡ ±×°ÍÀ» replace ó¸®ÇØÁØ´Ù. > title = replace(title,"'","''") > content = replace(content,"'","''") > content = replace(content,"|","chr(124)_pipe") > > 'HTML ű×(tag) È¿°ú¸¦ Á¦ÇÑÇÏ°í ½ÍÀ¸½Ã´Ù¸é > 'title = replace(title,"&","&") > 'title = replace(title,"<","<") > 'title = replace(title,">",">") > > 'content = replace(content,"&","&") > 'content = replace(content,"<","<") > 'content = replace(content,">",">") > > Set db = Server.CreateObject("ADODB.Connection") > db.Open("DSN=sql;UID=sa;PWD=;") > > SQL = "Select Max(num) from my" > > Set rs = Server.CreateObject("ADODB.Recordset") > rs.Open SQL, db > > If IsNULL(rs(0)) Then > number = 1 > else > number = rs(0) + 1 > End If > > SQL = "INSERT INTO my (name,email,homepage,title,content,num," > SQL = SQL & " readnum,writeday,pwd) VALUES " > SQL = SQL & "('" & name & "'" > SQL = SQL & ",'" & email & "'" > SQL = SQL & ",'" & homepage & "'" > SQL = SQL & ",'" & title & "'" > SQL = SQL & ",'" & content & "'" > SQL = SQL & "," & number > SQL = SQL & ", 0 ,'" & now() & "'" > SQL = SQL & ",'" & pwd & "')" > > ' Response.Write sql > > db.Execute SQL > > rs.Close > db.close > Set rs = Nothing > Set db = Nothing > > Response.redirect "list.asp" > %> > ----------------------------------------------------------- °£´ÜÇÑ ¹æ¹ýÀº ¿ÀÀüÀº AMÀ¸·Î ¿ÀÈÄ´Â PMÀ¸·Î ReplaceÇÑ ´ÙÀ½ INSERTÇÏ¸é µÇÁö ¾ÊÀ»±î¿ä? ±×·³...
Ãß°¡ÇÒ À̹ÌÁö¸¦ ÀÔ·ÂÇϼ¼¿ä.
À̹ÌÁö 1
À̹ÌÁö¼³¸í 1
Ãß°¡ÇÒ ÀڷḦ ÀÔ·ÂÇϼ¼¿ä.
ÀÚ·á 1
ÀÚ·á¼³¸í 1
Ãß°¡ÇÒ ½ÎÀÌÆ®¸¦ ÀÔ·ÂÇϼ¼¿ä.
°ü·Ã½ÎÀÌÆ® 1
½ÎÀÌÆ®¼³¸í 1
Password
*