function dvHTMLCode(byval fString)
if isnull(fString) or trim(fString)="" then
dvHTMLCode=""
exit function
end if
fString = replace(fString, ">", ">")
fString = replace(fString, "<", "<")
fString = Replace(fString, " "," ")
fString = Replace(fString, """, CHR(34))
fString = Replace(fString, "'", CHR(39))
fString = Replace(fString, "</P><P> ",CHR(10) & CHR(10))
fString = Replace(fString, "<BR> ", CHR(10))
dvHTMLCode = fString
end function
%>
<body>
<form name="form1" method="post" action="?action=submit">
<label>
<textarea name="textarea" cols="40" rows="7"></textarea>
</label>
<p>
<label>
<input type="text" name="textfield">
</label>
</p>
<p>
<label>
<input type="submit" name="Submit" value="提交">
</label>
</p>
</form>
</body>
</html>
<%
if request("action") = "submit" then
ubbHtml = request.Form("textarea")
ubbTitle = request.Form("textfield")
if ubbHtml <>"" then
htmlCode = dvHTMLCode(ubbHtml)
else
'儲存資料
end if
else
response.Write("未提交內容")
end if
' 我們在顯示時用到
response.Write(dvHTMLEncode(htmlCode)) '這樣就可以完美的過濾破壞資料或頁面效果的代碼
function dvHTMLEncode(byval fString)
if isnull(fString) or trim(fString)="" then
dvHTMLEncode=""
exit function
end if
fString = replace(fString, ">", ">")
fString = replace(fString, "<", "<")
fString = Replace(fString, CHR(32), " ")
fString = Replace(fString, CHR(9), " ")
fString = Replace(fString, CHR(34), """)
fString = Replace(fString, CHR(39), "'")
fString = Replace(fString, CHR(13), "")
fString = Replace(fString, CHR(10) & CHR(10), "</P><P> ")
fString = Replace(fString, CHR(10), "<BR> ")
dvHTMLEncode = fString
end function
'本站原創轉載註明www.111cn.net