public Function RSQL(strChar)( a- b7 f- p) I. J
If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function
7 a9 v' y5 t+ y5 j2 a1 Q) b Dim strBadChar, arrBadChar, tempChar, I
) N U" [4 ]; _$ F3 _/ p5 s- M strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的00/ t: t* N$ F; X# U1 A( v1 D
arrBadChar = Split(strBadChar, ",")4 m& c: Z" n" P5 b
tempChar = strChar8 L6 E; |% y2 V5 u6 H; s
For I = 0 To UBound(arrBadChar)
9 l( X1 v, f, x4 w' W/ s tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空
6 s% @) G* L- b" s+ T% V$ s Next5 F5 v6 d# \, l% d7 @
RSQL = tempChar, g% Q* v" G9 `
End Function; g, q& A1 H: \/ v! ?+ z' V- k a
|