public Function RSQL(strChar)* ?% l" Q& r5 Y, |
If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function# P# S: ~3 M) m. n) `' u
Dim strBadChar, arrBadChar, tempChar, I
( O8 h, o$ O/ _- @! H1 W' R6 \( u strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的00
4 P( k+ y" r' }; H9 |$ s# |5 @; \ arrBadChar = Split(strBadChar, ",")$ z7 g8 K% j; z4 }/ m M! I$ _
tempChar = strChar
% _$ y+ v$ c |6 r/ L, Y For I = 0 To UBound(arrBadChar)
: Z# n# M7 \# u tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空( C, K; H( ~; x' M! C2 l/ k6 V
Next
: L$ J( d- M3 T RSQL = tempChar
" V( Q y: k, K& IEnd Function
9 C9 H2 J7 c% V1 d |