public Function RSQL(strChar)0 ~" B. ]8 }# [& U
If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function0 V+ J- z/ ~2 x- z+ _9 a1 e- s
Dim strBadChar, arrBadChar, tempChar, I
- B; t: R+ |, k- U' i strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的00
+ n! p# ?" k, E! {! l/ j4 ] arrBadChar = Split(strBadChar, ",")
* u, l3 y# F6 j( u- m tempChar = strChar
; v+ [6 ?- n7 h: M l For I = 0 To UBound(arrBadChar) K$ b) ~& e8 B% \; c
tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空" y* i2 F! d; _" V# G7 A
Next, X* l: Y, ]/ B& A
RSQL = tempChar9 r% D5 _+ U! d0 z5 z2 X( Q
End Function
! h1 y1 Y! G* W/ c2 H1 a |