%@ Language=JavaScript %>
<%
DSN = "DSN=yourDSN;";
record_set = Server.CreateObject("ADODB.RecordSet");
Conn = Server.CreateObject("ADODB.Connection");
Conn.Open(DSN);
sql = Request('sql') + "";
%>
SQL Form
<%
//hey, minimal security in this version!
if (Request("misc") + "" == "history"){
match_select = /select.*/i;
match_update = /^(insert|update|delete|create).*/i;
if (match_select.test(sql)){
Response.write(":" + sql + ": was a select.
");
record_set.Open (sql, Conn, 1,1);
field_list = new Array();
for ( field_number = 0; field_number < record_set.fields.count ; field_number++ ){
field_list[field_number] = record_set.fields(field_number).Name;
}
while (!(record_set.EOF)){
for (field_number in field_list){
Response.write(field_list[field_number] + " is: " + record_set.fields(field_list[field_number]) + "
");
}
Response.write("
");
record_set.move(1);
}
}
else if (match_update.test(sql)) {
Response.write(sql + " was an update.");
Conn.Execute (sql);
}
else {
Response.write("sql not recognized.");
}
}
%>