1. 论坛系统升级为Xenforo,欢迎大家测试!
    排除公告

呀哦。刚看了下我们公司原来程序员写的两个代码。。发现~~

本帖由 风狼2006-03-29 发布。版面名称:谈天说地

  1. 风狼

    风狼 New Member

    注册:
    2005-10-01
    帖子:
    7,452
    赞:
    25
    在后台登陆页面里有
    if Request.QueryString("action")="login" then
    Set rs = conn.execute("select * from config where admin='"&user&"' and pass='"&pass2&"'")
    if rs.eof then
    msg = "用户名或密码错误!"
    Session("Login") = False
    else
    Session("Login") = True
    Response.Redirect("admin.asp")
    end if
    if Request.form("usr") = SYS_PASS then
    Response.Redirect("admin.asp")
    end if


    conn文件里有句
    Dim SYS_PASS
    SYS_PASS = "openthedor"

    不过我想用openthedor却登陆不了。。这丫的真失败~
     
  2. jcking

    jcking Well-Known Member

    注册:
    2005-08-30
    帖子:
    22,282
    赞:
    70
    技术,不懂,
     
  3. 风狼

    风狼 New Member

    注册:
    2005-10-01
    帖子:
    7,452
    赞:
    25
    呀哦。。
     
  4. jcking

    jcking Well-Known Member

    注册:
    2005-08-30
    帖子:
    22,282
    赞:
    70
    嗯哦。
     
  5. 小叶

    小叶 New Member

    注册:
    2005-09-04
    帖子:
    17,941
    赞:
    33
  6. 风狼

    风狼 New Member

    注册:
    2005-10-01
    帖子:
    7,452
    赞:
    25
    那笨笨好像是少写了句
    session("login")=true
     
  7. wm_chief

    wm_chief New Member

    注册:
    2005-09-05
    帖子:
    17,890
    赞:
    46
  8. 风狼

    风狼 New Member

    注册:
    2005-10-01
    帖子:
    7,452
    赞:
    25
    留下买路钱~~~~~~~~~~~~~~~~~~
     
  9. Function

    Function New Member

    注册:
    2006-03-24
    帖子:
    3,884
    赞:
    5
    这错误够隐蔽,看了半天都没看出来。
     
  10. 风狼

    风狼 New Member

    注册:
    2005-10-01
    帖子:
    7,452
    赞:
    25
    本地假造Session应该也能过~不过俺不会~~
     
  11. Function

    Function New Member

    注册:
    2006-03-24
    帖子:
    3,884
    赞:
    5
    本地伪造的,应该是 Cookies 吧?!
     
  12. 风狼

    风狼 New Member

    注册:
    2005-10-01
    帖子:
    7,452
    赞:
    25
    我说错不可以捏?敢找我叉。。拿钱来~~~
     
  13. 如来

    如来 New Member

    注册:
    2005-10-12
    帖子:
    168
    赞:
    0
    :music: :sweat: