public Function RSQL(strChar)
0 C- o9 q$ T7 h2 P0 `% p, X If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function# L7 t$ ?! [. @6 g, R' R; R; k
Dim strBadChar, arrBadChar, tempChar, I
6 u$ h, e, F$ Y; _" J strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的009 a1 R& q I. r1 N
arrBadChar = Split(strBadChar, ",")5 [3 r4 n4 {; ]( j# O5 E3 ~
tempChar = strChar
/ ^. L* ^$ W4 o: H$ K& t For I = 0 To UBound(arrBadChar)9 l0 [& I1 x m
tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空
) K# s8 b" R9 Q7 Q Next
' O2 x4 ^8 g- b2 a' s5 }3 } RSQL = tempChar
5 _0 Y- u. |# c& g; \5 c( Z. OEnd Function
2 H( f5 l* }8 ?- u2 l4 \ |