public Function RSQL(strChar)
. P5 H, G& k/ R7 W If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function
/ |: P7 M4 o9 h* ^! ^$ Y" ~: c Dim strBadChar, arrBadChar, tempChar, I
( t- P+ f5 f/ v- H# D3 T5 v strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的00# o8 V: [9 g. C) t X3 q
arrBadChar = Split(strBadChar, ",")
' C! y2 X. Z V tempChar = strChar- |# f& k# M. t& I
For I = 0 To UBound(arrBadChar)
5 k/ [' k4 V/ D/ ~8 Z tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空
$ ^. _2 C7 i/ i3 Y/ [* x) u0 f Next
: y1 j( [% J$ ?9 f RSQL = tempChar
5 v/ m. x( g+ d! M- O/ f# WEnd Function
2 I; W4 \/ j7 ^( \ |