public Function RSQL(strChar)
, Q- A' z/ ^: H4 | If strChar = "" or IsNull(strChar) Then RSQL = "":Exit Function. r( O( J4 C2 y, o1 r; u
Dim strBadChar, arrBadChar, tempChar, I
; o* g5 B3 e# P0 q; s- l strBadChar = "$,#,',%,^,&,?,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""’注意这里过滤的是特殊字符 ‘Chr(34)对应的ASCII码是双引号。Chr(0)其实就是我们上传改包把空格(20)改成的00
" \: ~2 n p1 s% [ arrBadChar = Split(strBadChar, ",")
# O3 d# t8 g) A8 L) i tempChar = strChar
$ j* p7 G n4 k; Q9 a/ C, K; B7 N8 d For I = 0 To UBound(arrBadChar)+ R* F* b, N" a* h1 }" o" W$ ? `% L
tempChar = Replace(tempChar, arrBadChar(I), "") ‘将特殊字符过滤为空" \8 k2 T* _* ~3 I/ G3 L1 g' m
Next
, z! r1 M9 a' B RSQL = tempChar; ?# V* ^9 M$ c: c
End Function* Y6 _# s6 `4 m; G" u
|