File Manager
Back to List
| Current Directory: ~/
Editing: add_cowork_res.asp.bak
Full path: C:\ict\ICT\add_cowork_res.asp.bak
Permissions: rwx
Write test: File appears not directly writable
Current process identity: IIS APPPOOL\DefaultAppPool
<!--#INCLUDE FILE="ConnectDB.asp"--> <!--#include file="chk_login.asp"--> <% pern=session("username") per="2" tb="research" sqlnc="select * from tb_permission where id_staff='"&pern&"' and tb_edit='"&per&"' and tb_name='"&tb&"'" set orsnc=server.createobject("adodb.recordset") orsnc.open sqlnc,conn,1,3 if not orsnc.eof then %> <% id_lecturer=request.form("id_lecturer") position_res=request.form("position_res") id_level=request.form("id_level") id=request.form("id") proportion=request.form("proportion") 's_value1=request.form("s_value1") s_value=right(id_lecturer,1) id_lecturer=left(id_lecturer,(len(id_lecturer)-1)) ' set orscr=server.createobject("adodb.recordset") ' sqlcr="select * from cowork_res" ' orscr.open sqlcr,Conn,1,3 ' if not orscr.eof then 'orscr.movelast 'a=orscr("id_other_lec") 'do while not orscr.eof 'a=a+1 'orscr.movenext 'loop 'else 'a=1 'end if date_mo=now username=session("username") sqldata="insert into cowork_res(username,id_lecturer,date_mo,id_level,id_contact,id_position_res,proportion,source_c) values('"&username&"','"&id_lecturer&"','"&date_mo&"',"&id_level&",'"&id&"','"&position_res&"','"&proportion&"','"&s_value&"')" response.write sqldata set orsdata = Server.CreateObject("adodb.recordset") sqlcheck="select * from cowork_res where id_lecturer='"&id_lecturer&"' and id_contact='"&id&"'" set orscheck=server.createobject("adodb.recordset") orscheck.open sqlcheck,conn,1,3 if orscheck.eof then 'orsdata.open sqldata,conn,1,3 response.write sqldata %> <SCRIPT LANGUAGE="JavaScript"> <% 'response.write"alert('�ѹ�֡���������º��������');" %> --> </SCRIPT> <% 'response.write "<meta http-equiv='refresh' content ='0;url=cowork_res.asp?id="&id&"'>" else %> <SCRIPT LANGUAGE="JavaScript"> <% response.write"alert('�ѹ�֡�����ū��++ ��ҹ��ѹ�֡�����Ź�������');" response.write "window.location.href='cowork_res.asp?id="&id&"';" %> --> </SCRIPT> <% 'response.write "�����ū�� " 'response.write "<meta http-equiv='refresh' content ='7;url=index.asp'>" end if %><% else %> <SCRIPT LANGUAGE="JavaScript"> <% response.write "window.location.href='index.html';" %> --> </SCRIPT> <% end if %>