20-4 ?用範?二?線?檔??修??

@ӨAYnqקAݪAUCؤ覡G
  1. g telnet sWAAMAק蠟C
  2. g ftp sWAAUɮרíקAAg ftp WɮצܦAC]UltraEdit Nت\C^
ƹWAڭ̤]iHg Web {޳NAgsӭקﻷݪAɮסAШdҡG

Example]editfile/example.asp^G

WzdҪlɦpUG

lɡ]editfile/example.asp^G]ǦϰUYi^
<!--#include file="editfile.inc"-->
<%title="uWɮ׭ק諸d"%>
<!--#include file="../head.inc"-->
<hr>
<!-- ==========OsɮקAФŭק惡CHW========== -->

ƥiѭקAЫU F9Agѻ{ҫAYiiקCi<a href="editfile.asp?FileName=<%=Request.ServerVariables("PATH_INFO")%>">s</a>Hiɮ׽sסC
<p>
զקAжJzjWG
<ol>
<li>LF
<li>
<li>μz
</ol>
]ФťNקAHO@LPǾDzߦdҤvqA¡I^

<!-- ==========OsɮקAФŭק惡CHU========== -->
<hr>
<!!--#include file="../foot.inc"-->

bWzdҤAunϥΪ̫U F9AIYӯSwsAN|}ұKX{ҵAY{Ҧ\AYiiɮ׽sסCAѦdҡAЦUPǪ}ҦdҨôխקɮת\C

KX{ҹL{AwbW`AbAԭzCߤ@ݭn`NOAѩϥΪ̥iHgѡuv覡Ӷisץ\઺ҰʡA]bؼк]bҬO editfile.asp^õLkg Request.ServerVariables("HTTP_REFERER") Өoӷ]bҬO example.asp^A]ڭ̥b editfile.inc ]w session("source")AHKϥΪ̫Uu{ҡvɡAJӷC

bdҤA`@oA줻ɮסAOpUG

example.asp
]tF editfile.incAҥHiHig Web sסC
editfile.inc
]tFuvwqAó]wF session("source")CunOtɮסAN㦳sת\C
editfile.asp
ȬŪJݭnsתɮסAåH textarea 覡e{bsAHKϥΪ̽sסC]MA include F auth.incAHKb}ɮ׽sפeAiKX{ҡC^
auth.inc
Ȭ{ҸTO_sbG
  1. YsbAhơC
  2. YsbAhX{ҵ]auth.asp^AШDJKXAæbJӷ]Ҭ example.asp^C
ݭnKXO@Auݭn include ɮסAYiFO@\C(Ъ`NGbҤAsession("source") O]wb edtifile.inc AӤOb auth.inc C)
auth.asp
تiKX{ҡG
  1. YqLAh}ҳQO@ؼк]Ҭ editfile.asp^
  2. YqLAhШDsJbBKX
delauth.asp
Ȭ{ҸT]YNܼ session("secret")]w False^AøJӷ]Ҭ example.asp^C

JScript {]pPΡGΩAݪ ASP