public Function RSQL(strChar)
: n( A3 D! N/ `. \ If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function
- A; _' R V0 U8 ?9 @3 L Dim strBadChar, arrBadChar, tempChar, I* U6 E, |, N' _+ F
strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的006 m# ?/ x( W" ~# t/ M
arrBadChar = Split(strBadChar, ",")+ w9 T; k. c, ]! ~; m
tempChar = strChar
* i: ~6 H4 @9 R6 z' c For I = 0 To UBound(arrBadChar)
+ J% e& N1 s: s9 p. g tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空* f$ E8 @+ z) _' p
Next6 |/ x. V8 J+ G3 \/ k
RSQL = tempChar
8 m i; ?& r l- H2 M- @0 q. PEnd Function! {; s* I- b5 K2 V' ]
|