﻿    function CheckForm()
    {    
      var list= document.body.getElementsByTagName("input");
      for(var i=0;i<list.length;i++)
      {
           if(list[i].type=="text")
           {   
              if(list[i].value.length>0)//值大于0才比较
              {        
                if(!CheckOneElementContent(list[i].value,list[i].id))
                 {
                    return false;
                 }
                 else
                 {
                 continue;
                 }
              }else
              {
              continue;
              }
           }
           else {continue;}
      }
      
      //debugger;
      list= document.body.getElementsByTagName("textarea");
      for(var i=0;i<list.length;i++)
      {                   
      
           if(list[i].value.length>0)//值大于0才比较
           {      
                if(!CheckOneElementContent(list[i].value,list[i].id))
                 {
                    return false;
                 }
           }
      }
      
      return true;
    }
    
    function CheckOneElementContent(checkValue,elementId)
    {
        var arr = new Array(" and "," exec " ," count "," chr ", " mid " ," master " ," or "," truncate "," char " ," declare ", " join "  , "insert" , "select" , "delete" , "update" , "create" , "drop", "|", " /*" , "*/" , "\\u" ,"'", ";" ,"<" , ">");
        var reg=new RegExp("\"","g"); 
        var val=checkValue;
        val=val.replace(reg,"");  
          for(var i =0 ; i< arr.length; i++)
          {
          //var val=arr[i].toString();
                if(checkValue.toLowerCase().indexOf(arr[i].toString().toLowerCase())!=-1)//包含某关键词
                {                  
                        alert("抱歉,您提交的内容包含特殊字符(串)【 "+arr[i].toString()+" 】,请修改后重试!");
                         
                          try{                        
                               document.getElementById(elementId).focus(); 
                             }
                             catch(e)
                             {
                             
                             }
                        
                         return false;
                }
                else
                {
                continue;
                }
          }
          return true;
                

    }


