public Function RSQL(strChar)- T5 ~+ X: k9 U# H; U& j0 d
If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function8 l) m& _5 I" |% T2 x
Dim strBadChar, arrBadChar, tempChar, I
/ d$ [' t- ^2 A strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的00
; T5 t9 q8 k6 V5 ?" k' u( [+ m: l) M arrBadChar = Split(strBadChar, ",")8 J1 `. C/ \9 @+ M( i/ p
tempChar = strChar
7 h; l: n6 b6 ] b) w For I = 0 To UBound(arrBadChar)
* j1 Z6 `% t- @! } tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空2 `$ V3 X# A2 Q2 l. V7 z4 ]
Next3 m6 c' x' z6 E) Y3 _ t7 q- z
RSQL = tempChar
- d& m3 F q# g- Z. MEnd Function
9 d* C% h1 b/ E# R5 c/ K |