码迷,mamicode.com
首页 > 数据库 > 详细

过滤sql语句

时间:2020-04-13 15:22:32      阅读:88      评论:0      收藏:0      [点我收藏+]

标签:shell   return   region   ini   exec   mini   upd   function   sele   

#Region "过滤sql语句"
Public Shared Function denny(ByVal id) As String
id = Replace(id, "‘", "")
id = Replace(id, " and ", "")
id = Replace(id, "select ", "")
id = Replace(id, "update ", "")
id = Replace(id, " chr ", "")
id = Replace(id, " delete ", "")
id = Replace(id, "%20from", "")
id = Replace(id, ";", "")
id = Replace(id, "insert ", "")
id = Replace(id, " mid ", "")
id = Replace(id, "set", "")
id = Replace(id, "chr(37)", "")
id = Replace(id, "=", "")
id = Replace(id, "(", "")
id = Replace(id, "exec%20master.dbo.xp_cmdshell", "")
id = Replace(id, "xp_cmdshell", "")
id = Replace(id, "net localgroup administrators", "")
Return id
End Function
#End Region

过滤sql语句

标签:shell   return   region   ini   exec   mini   upd   function   sele   

原文地址:https://www.cnblogs.com/shiyi2014/p/12691530.html

(0)
(0)
   
举报
评论 一句话评论(0
登录后才能评论!
© 2014 mamicode.com 版权所有  联系我们:gaon5@hotmail.com
迷上了代码!