File Manager
Back to List
|
Up to Parent Directory
| Current Directory: ~/finance
Editing: finance/save_edit_regis.asp.bak
Full path: C:\ict\ICT\finance\save_edit_regis.asp.bak
Permissions: rwx
Write test: File appears not directly writable
Current process identity: IIS APPPOOL\DefaultAppPool
<!--#INCLUDE FILE="statConnectdb.asp"--> <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html> <head> <title>��䢢�����</title> <meta http-equiv="Content-Type" content="text/html; charset=windows-874"> </head> <body > <% fname=request.form("fname") name=request.form("name") sname=request.form("sname") position1=request.form("position1") addwork=request.form("addwork") address=request.form("address") tel=request.form("tel") fax=request.form("fax") email=request.form("email") stat=request.form("stat") pay=request.form("pay") mess=request.form("mess") response.write sname id_regis=session("id_regis") response.write id_regis %> <% set ors=server.createobject("adodb.recordset") sql="select * from statregis where id_regis="&id_regis&"" 'name='"&name&"' and sname='"&sname&"'" ors.open sql,Conn,1,3 sql_ = "update statregis set fname = '"&fname&"',addwork='"&addwork&"',address = '"&address&"',tel = '"&tel&"' ,fax = '"&fax&"',email = '"&email&"', pay= '"&pay&"',name = '"&name&"',sname='"&sname&"',position1='"&position1&"',mess='"&mess&"' where id_regis ="&id_regis&"" set ors_=server.createobject("adodb.recordset") ors_.open sql_,Conn,1,3 session("name")=name session("sname")=sname 'ors_.close 'response.write sql_ 'response.write password 'ors1.close ' set ors1=nothing set ors_=nothing 'session("username")=username 'session("password")=password set ors_1=server.createobject("adodb.recordset") ors_1.open "select * from statregis where name='"&name&"' and '"&sname&"'",Conn,1,3 if not ors_1.eof then id_regis=ors_1("id_regis") set ors_2=server.createobject("adodb.recordset") ors_2.open "delete * from regis where id_regis='"&id_regis&"'",conn,1,3 For counter = 1 To Request.Form("stat").Count sqldata="insert into regis(id_regis,stat) values('"&id_regis&"','"&request.form("stat")(counter)&"')" set orsdata = Server.CreateObject("adodb.recordset") orsdata.open sqldata,conn,1,3 'Response.Write "You selected " & Request.Form("stat")(counter) & "<br>" Next end if %> <meta http-equiv="refresh" content ="0;url=statshowdetail.asp"> </body> </html>