摘要: 前端: <form role="form" class="form-horizontal" id="form1" method="post" enctype="multipart/form-data" action="../ImportStudentEnrollment/ImportExcelFil 阅读全文
posted @ 2018-08-07 16:52 一直乱跑的熊 阅读(209) 评论(0) 推荐(0) 编辑
摘要: public static class SQLDefenderHelper { public static string SQLFilter(string inText) { string word = "and|exec|insert|select|delete|update|chr|mid|ma 阅读全文
posted @ 2018-08-07 11:03 一直乱跑的熊 阅读(192) 评论(0) 推荐(0) 编辑
摘要: public static string GetPageSql(string sql, int start, int end) { return string.Format(" select * from (select t1.*,rownum rowno from ({0}) t1 where r 阅读全文
posted @ 2018-08-07 08:53 一直乱跑的熊 阅读(155) 评论(0) 推荐(0) 编辑