|
|
|
|
俵ÀÌ / 2000-07-07 / ¿ÀÈÄ 5:09:37 / 203.255.3.190
Á¶È¸¼ö : 115
|
[Áú¹®] ¾÷·Îµå Æû¿¡¼ ¼öÁ¤ÀÌ ¾ÈµÇ°í »õ·Î¿î °ªÀ¸·Î ÀԷµǴµ¥ |
> ¾È³Ä¼¼¿ä...
> ÀÚÁÖ Áú¹®µå¸®ÁÒ...Á˼Û.
> ´Ù¸§ÀÌ ¾Æ´Ï¿À¶ó Á¦°¡ ¾÷·Îµå¸¦ ÇÏ°í Àְŵç¿ä.¾÷·Îµå¿¡¼ ¼º°øÀ» Çß°í,¼öÁ¤ ¸ðµå¸¦ ¸¸µé¾ú´Âµ¥,¼öÁ¤ÀÌ ¾ÈµÇ°í »õ·Î¿î °ªÀ¸·Î ÀÔ·ÂÀÌ µÇ°í Àְŵç¿ä.
> ÀÌ°÷ÀÇ ¿¡·¯ Á» ºÁÁÖ¼¼¿ä.
> µµ¹«Áö ÆľÇÀÌ ¾ÈµÇ³×¿ä...
> ¼Ò½º´Â ¾Æ·¡¿Í °¬½À´Ï´Ù.
> ================================
>
> < script language="VBscript" RUNAT="server" >
> Function CheckWord(CheckValue)
>
> CheckValue = replace(CheckValue, "<","<")
> CheckValue = replace(CheckValue, ">",">")
> CheckValue = replace(CheckValue, ""","'")
> CheckValue = replace(CheckValue, "&","&")
>
> CheckWord = CheckValue
> End Function
> < /script >
> <%
> Set db = Server.CreateObject("ADODB.Connection")
> db.Open("sell1")
> 'ÇöÀçÀÇ ±ÛÀÇ ºñ¹Ð¹øÈ£¸¦ °¡Á®¿À´Â Äõ¸®¹®À» ÀÛ¼º
> SQL = "SELECT pwd sell From data WHERE board_idx = "& request("idx")
>
>
>
> set result = db.execute(SQL)
> if request("pwd") = result(0) then
>
>
> 'board_idx = UploadForm("board_idx")
> brandname = CheckWord(Request.Form("brandname") )
> product = CheckWord(Request.Form("product"))
> t_short = CheckWord(Request.Form("t_short"))
> mcode = CheckWord(Request.Form("mcode"))
> country = CheckWord(Request.Form("country"))
> specification = CheckWord(Request.Form("specification"))
> company = CheckWord(Request.Form("company"))
> contactperson = CheckWord(Request.Form("contactperson"))
> addre = CheckWordWord(Request.Form("addre"))
> tel = CheckWord(Request.Form("tel"))
> fax = CheckWord(Request.Form("fax"))
> url = CheckWord(Request.Form("url"))
> email = CheckWord(Request.Form("email"))
> payment = CheckWord(Request.Form("payment"))
> packing = CheckWord(Request.Form("packing"))
> fob = CheckWord(Request.Form("fob"))
> markets = CheckWord(Request.Form("markets"))
>
>
>
>
>
> 'Set db = Nothing
> 'ÀԷ¹ÞÀº ºñ¹Ð¹øÈ£¿Í ½ÇÁ¦ ºñ¹Ð¹øÈ£¸¦ ºñ±³ÇÏ¿© ÀÏÄ¡ÇÑ´Ù¸é
> 'if request("pwd") = pwd then
> Set db = Server.CreateObject("ADODB.Connection")
> db.Open("sell1")
> SQL = "UPDATE SELL set name = '" & name &"'"
> SQL = SQL & ",email = '" & email & "'"
> SQL = SQL & ",url= '" & url & "'"
> SQL = SQL & ",payment='" & payment & "'"
> SQL = SQL & ",company='" & company & "'"
> SQL = SQL & ",country='" & country & "'"
> SQL = SQL & ",t_short='" & t_short & "'"
> SQL = SQL & ",mcode='" & mcode & "'"
> SQL = SQL & ",productt='" & product & "'"
> SQL = SQL & ",brandname='" & brandname & "'"
> SQL = SQL & ",addre='" & addre & "'"
> SQL = SQL & ",tel='" & tel & "'"
> SQL = SQL & ",fax='" & fax & "'"
> SQL = SQL & ",specification='" & specification & "'"
> SQL = SQL & " where board_idx = "& request("idx")
> db.execute SQL
> Set db = Nothing
> Response.Redirect "list.asp"
> 'µ¥ÀÌÅͺ£À̽º¿¡ ÇöÀçÀÇ ·¹Äڵ带 updateÇÏ°í ¸®½ºÆ®·Î µ¹¾Æ°£´Ù.
>
> else
>
> %>
>
> < script language="javascript" >
> alert(" Nothing ...password");
> history.back();
> < /script >
>
>
> <%
> end if
> %>
-----------------------------------------------------------
¼öÁ¤Çϱâ ÈÀÏ·Î °¡´Âµ¥ ¾Æ´Ï°í µî·ÏÇϱâ ÈÀÏ·Î actionÀÌ ÀϾ´Â°Ô ¾Æ´Ò±î¿ä?
¼öÁ¤Çϱ⿡¼ form ´ÙÀ½¿¡ action ³»¿ëÀÌ Æ²¸°°Í °°³×¿ä...
Çѹø üũÇØ º¸¼¼¿ä...
|
|
|
|