public Function RSQL(strChar)$ k1 A# P" ` Q0 m) L0 s! q: R! l7 m
If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function
( N' @2 u( Y) k! \' r% U9 Z Dim strBadChar, arrBadChar, tempChar, I5 l$ B- a1 q& r
strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的002 y5 X- D! k' Y4 ]. e9 }/ _$ `
arrBadChar = Split(strBadChar, ",")1 K3 i3 v# d- o( W1 }+ P" G! q
tempChar = strChar
$ r5 n: O# X; f; R: p/ t; b For I = 0 To UBound(arrBadChar)
7 |7 `8 t) e3 B7 } tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空
x+ ]) E8 X% j, |, d! w8 u N Next
$ o! T' V# D) r RSQL = tempChar
, r5 {- q! M% H, `End Function
; [, Z! S) l" S0 Q; g: U |