%
set baglan = server.createobject("adodb.connection")
baglan.open "driver={microsoft access driver (*.mdb)}; dbq=" & server.mappath("/news/data/xice.mdb")
%>
<%
id=request.querystring("id")
if id = "-1+union+select+0,kullaniciadi,2,3,4,5,6,7+from+admin" then Response.redirect "404.html"
if instr(1,id,"-1",1) then Response.redirect "404.html"
if instr(1,id,"union",1) then Response.redirect "404.html"
if instr(1,id,"select",1) then Response.redirect "404.html"
if instr(1,id,"kullaniciadi",1) then Response.redirect "404.html"
set xice = server.createobject("adodb.recordset")
xice.open " select * from haber where id=" &id ,baglan,1,3
%>
Toroslar Construction & Investment Company