|
|
|
|
¹®Èñö / 2000-07-07 / ¿ÀÈÄ 4:34:04 / 211.51.20.144
Á¶È¸¼ö : 123
|
[Áú¹®] ¾÷·Îµå Æû¿¡¼ ¼öÁ¤ÀÌ ¾ÈµÇ°í »õ·Î¿î °ªÀ¸·Î ÀԷµǴµ¥ |
¾È³Ä¼¼¿ä...
ÀÚÁÖ Áú¹®µå¸®ÁÒ...Á˼Û.
´Ù¸§ÀÌ ¾Æ´Ï¿À¶ó Á¦°¡ ¾÷·Îµå¸¦ ÇÏ°í Àְŵç¿ä.¾÷·Îµå¿¡¼ ¼º°øÀ» Çß°í,¼öÁ¤ ¸ðµå¸¦ ¸¸µé¾ú´Âµ¥,¼öÁ¤ÀÌ ¾ÈµÇ°í »õ·Î¿î °ªÀ¸·Î ÀÔ·ÂÀÌ µÇ°í Àְŵç¿ä.
ÀÌ°÷ÀÇ ¿¡·¯ Á» ºÁÁÖ¼¼¿ä.
µµ¹«Áö ÆľÇÀÌ ¾ÈµÇ³×¿ä...
¼Ò½º´Â ¾Æ·¡¿Í °¬½À´Ï´Ù.
================================
< script language="VBscript" RUNAT="server" >
Function CheckWord(CheckValue)
CheckValue = replace(CheckValue, "<","<")
CheckValue = replace(CheckValue, ">",">")
CheckValue = replace(CheckValue, ""","'")
CheckValue = replace(CheckValue, "&","&")
CheckWord = CheckValue
End Function
< /script >
<%
Set db = Server.CreateObject("ADODB.Connection")
db.Open("sell1")
'ÇöÀçÀÇ ±ÛÀÇ ºñ¹Ð¹øÈ£¸¦ °¡Á®¿À´Â Äõ¸®¹®À» ÀÛ¼º
SQL = "SELECT pwd sell From data WHERE board_idx = "& request("idx")
set result = db.execute(SQL)
if request("pwd") = result(0) then
'board_idx = UploadForm("board_idx")
brandname = CheckWord(Request.Form("brandname") )
product = CheckWord(Request.Form("product"))
t_short = CheckWord(Request.Form("t_short"))
mcode = CheckWord(Request.Form("mcode"))
country = CheckWord(Request.Form("country"))
specification = CheckWord(Request.Form("specification"))
company = CheckWord(Request.Form("company"))
contactperson = CheckWord(Request.Form("contactperson"))
addre = CheckWordWord(Request.Form("addre"))
tel = CheckWord(Request.Form("tel"))
fax = CheckWord(Request.Form("fax"))
url = CheckWord(Request.Form("url"))
email = CheckWord(Request.Form("email"))
payment = CheckWord(Request.Form("payment"))
packing = CheckWord(Request.Form("packing"))
fob = CheckWord(Request.Form("fob"))
markets = CheckWord(Request.Form("markets"))
'Set db = Nothing
'ÀԷ¹ÞÀº ºñ¹Ð¹øÈ£¿Í ½ÇÁ¦ ºñ¹Ð¹øÈ£¸¦ ºñ±³ÇÏ¿© ÀÏÄ¡ÇÑ´Ù¸é
'if request("pwd") = pwd then
Set db = Server.CreateObject("ADODB.Connection")
db.Open("sell1")
SQL = "UPDATE SELL set name = '" & name &"'"
SQL = SQL & ",email = '" & email & "'"
SQL = SQL & ",url= '" & url & "'"
SQL = SQL & ",payment='" & payment & "'"
SQL = SQL & ",company='" & company & "'"
SQL = SQL & ",country='" & country & "'"
SQL = SQL & ",t_short='" & t_short & "'"
SQL = SQL & ",mcode='" & mcode & "'"
SQL = SQL & ",productt='" & product & "'"
SQL = SQL & ",brandname='" & brandname & "'"
SQL = SQL & ",addre='" & addre & "'"
SQL = SQL & ",tel='" & tel & "'"
SQL = SQL & ",fax='" & fax & "'"
SQL = SQL & ",specification='" & specification & "'"
SQL = SQL & " where board_idx = "& request("idx")
db.execute SQL
Set db = Nothing
Response.Redirect "list.asp"
'µ¥ÀÌÅͺ£À̽º¿¡ ÇöÀçÀÇ ·¹Äڵ带 updateÇÏ°í ¸®½ºÆ®·Î µ¹¾Æ°£´Ù.
else
%>
< script language="javascript" >
alert(" Nothing ...password");
history.back();
< /script >
<%
end if
%> |
|
|
|