bool CheckParams(string args)
        {
            string[] Lawlesses ={ "'", "xp_cmdshell", "net user", "exec", "insert", "select", "delete", "update", "count", "master", "truncate", "char", "declare" };
            for (int i = 0; i < Lawlesses.Length; i++)
            {
                Regex r = new Regex(Lawlesses[i]);
                Match m = r.Match(args);
                if (m.Success)
                    return false;
            }
            return true;
        }
posted on 2011-09-27 12:54  Machine Lee  阅读(385)  评论(0编辑  收藏  举报