濮阳杆衣贸易有限公司

主頁 > 知識庫 > javascript asp教程添加和修改

javascript asp教程添加和修改

熱門標(biāo)簽:寧夏怎么申請400電話 外呼回?fù)芟到y(tǒng)圖片 咸陽銷售外呼系統(tǒng) 企數(shù)外呼系統(tǒng)能用多久 常用地圖標(biāo)注范圍點 蘭州智能語音電銷機(jī)器人功能 離線電子地圖標(biāo)注軟件注冊 為什么外呼系統(tǒng)需要預(yù)存話費呢 辦理400電話一年多少錢

The Connection Execute():

If you want to retrieve data from a database then you have no choice but to use a Recordset. However, for the purposes of adding, updating, and deleting data you don't necessarily have to have a Recordset. It's up to you.

For the purposes of adding, updating and deleting you can avoid the Recordset by using the Execute() method.

Get Started:

Below is the script for Lesson 19.

%@LANGUAGE="JavaScript"%>
var strConnect="Provider=Microsoft.Jet.OLEDB.4.0; Data Source=" 
strConnect += Server.MapPath("\\GOP") + "\\datastores\\gop.mdb;"
!-- METADATA TYPE="typelib" 
FILE="C:\Program Files\Common Files\System\ado\msado15.dll" -->
HTML>
HEAD>
TITLE>Administrator Page - Changing the Mailing List/TITLE>
/HEAD>
BODY LINK="red" VLINK="red" ALINK="crimson">
H2>Administrator Page/H2>
H3>Changing a the Mailing List/H3>
%
if (Request.Form("Delete") > "")
	{
	var sql="DELETE FROM Address WHERE ID = " + Request.Form("ID") + ";"
	}
else
	{
	var firstName = new String(Request.Form("firstName"))
	var lastName = new String(Request.Form("lastName"))
	var Address = new String(Request.Form("Address"))
	var City = new String(Request.Form("City"))

	var myRegExp = /[']/g;
	firstName = firstName.replace(myRegExp, '#39;');
	lastName = lastName.replace(myRegExp, '#39;');
	Address = Address.replace(myRegExp, '#39;');
	City = City.replace(myRegExp, '#39;');
	
	var sql="UPDATE Address SET firstName= '" + firstName + "' , lastName='" 
	sql += lastName + "' , Address='" + Address + "' , City='" 
	sql += City + "' , State='" + Request.Form("State") + "' , Zip='" 
	sql += Request.Form("Zip") + "' WHERE ID = " + Request.Form("ID") + ";"
	}
var objConn=Server.CreateObject("ADODB.Connection");
objConn.Open(strConnect)
objConn.Execute(sql)
objConn.Close()
objConn = null;
Response.Write("The member has been updated in the database.")
Response.Write("A HREF=\"../files/committee.asp\">")
Response.Write("Click here to see it./A>")
%>

There's no link to see this one in action. I did that for security reasons. I just want to point out a few highlights.

Danger in The Single Quote:

You'll notice that I replace single quote marks with the HTML encoded equivalent. I did that using the following code.

var myRegExp = /[']/g;
firstName = firstName.replace(myRegExp, '#39;');

The single quote is the only character you cannot input into a database using an ASP application. Everything else is fair game. DO NOT accept any text from users into your database without replacing all single quotes. To use an analogy, the single quote is like a key that opens up your entire database. Hackers will tear your application to shreds if you let someone input single quotes.

Execute( ):

The only other thing I want to spend any time with is objConn.Execute(sql). The variable sql takes on one of two definitions depending on the result of an "if" statement. In this case sql does all the work, and we never need a recordset.

標(biāo)簽:麗江 家電維修 昆明 溫州 泰州 咸陽 鐵嶺 昌都

巨人網(wǎng)絡(luò)通訊聲明:本文標(biāo)題《javascript asp教程添加和修改》,本文關(guān)鍵詞  javascript,asp,教程,添加,和,;如發(fā)現(xiàn)本文內(nèi)容存在版權(quán)問題,煩請?zhí)峁┫嚓P(guān)信息告之我們,我們將及時溝通與處理。本站內(nèi)容系統(tǒng)采集于網(wǎng)絡(luò),涉及言論、版權(quán)與本站無關(guān)。
  • 相關(guān)文章
  • 下面列出與本文章《javascript asp教程添加和修改》相關(guān)的同類信息!
  • 本頁收集關(guān)于javascript asp教程添加和修改的相關(guān)信息資訊供網(wǎng)民參考!
  • 推薦文章
    绵竹市| 福贡县| 昌平区| 凌源市| 昔阳县| 南木林县| 西充县| 云龙县| 浮梁县| 察隅县| 长治市| 万宁市| 泰宁县| 台江县| 泗洪县| 萨迦县| 普兰店市| 四会市| 沙田区| 徐州市| 黄浦区| 许昌县| 芜湖市| 石狮市| 曲松县| 醴陵市| 周口市| 磐石市| 涿鹿县| 雅安市| 含山县| 贵州省| 若尔盖县| 舒城县| 中山市| 大港区| 柳州市| 保山市| 贡觉县| 剑川县| 麻阳|