phpÖÐsqlÓï¾äµÄÒýºÅÏê½â
Õâ¾ÍÒª´ÓË«ÒýºÅºÍµ¥ÒýºÅµÄ×÷Óý²Æð£º
Ë«ÒýºÅÀïÃæµÄ×ֶλᾹý±àÒëÆ÷½âÊÍÈ»ºóÔÙµ±×÷HTML´úÂëÊä³ö£¬µ«Êǵ¥ÒýºÅÀïÃæµÄ²»ÐèÒª½âÊÍ£¬Ö±½ÓÊä³ö¡£ÀýÈ磺
$abc='I love u';
echo $abc //½á¹ûÊÇ:I love u
echo '$abc' //½á¹ûÊÇ:$abc
echo "$abc" //½á¹ûÊÇ:I love u
ËùÒÔÔÚ¶ÔÊý¾Ý¿âÀïÃæµÄSQLÓï¾ä¸³ÖµµÄʱºòÒ²ÒªÓÃÔÚË«ÒýºÅÀïÃæSQL="select a,b,c from ..."
µ«ÊÇSQLÓï¾äÖлáÓе¥ÒýºÅ°Ñ×Ö¶ÎÃûÒý³öÀ´
ÀýÈç:select * from table where user='abc';
ÕâÀïµÄSQLÓï¾ä¿ÉÒÔÖ±½Óд³ÉSQL="select * from table where user='abc'"
µ«ÊÇÈç¹ûÏóÏÂÃæ£º
$user='abc';
SQL1="select * from table where user=' ".$user." ' ";¶Ô±ÈÒ»ÏÂ
SQL2="select * from table where user=' abc ' "
ÎҰѵ¥ÒýºÅºÍË«ÒýºÅÖ®¼ä¶à¼ÓÁ˵ã¿Õ¸ñ£¬Ï£ÍûÄãÄÜ¿´µÄÇå³þÒ»µã¡£
Ò²¾ÍÊǰÑ'abc' Ìæ»»Îª '".$user."'¶¼ÊÇÔÚÒ»¸öµ¥ÒýºÅÀïÃæµÄ¡£Ö»ÊǰÑÕû¸öSQL×Ö·û´®·Ö¸îÁË¡£
SQL1¿ÉÒÔ·Ö½âΪÒÔÏÂ3¸ö²¿·Ö
1£º"select * from table where user=' "
2£º$user
3£º" ' "
×Ö·û´®Ö®¼äÓà . À´Á¬½Ó£¬ÕâÑùÄÜÃ÷°×Á˰ɡ£
Ïà¹ØÎĵµ£º
1¡¢·Ö±ð°²×°Èý¸ö»·¾³£¬²¢ÉèÖò»Í¬¶Ë¿Ú
PHP:80
JSP:8080
ASP:8081
2¡¢ÉèÖÃ/Apache2/conf/httpd.conf
È¥µôÒÔÏÂÈýÐÐǰµÄ×¢ÊÍ£º
LoadModule proxy_module modules/mod_proxy.so
LoadModule proxy_connect_module modules/mod_proxy_connect.so
LoadModule proxy_http_module modules/mod_proxy_http.so
¼ÓÈëÒÔϼ¸ÐУº ......
sqlÓïÑÔÖÐÓÐûÓÐÀàËÆCÓïÑÔÖеÄswitch caseµÄÓï¾ä£¿£¿
ûÓÐ,ÓÃcase when À´´úÌæ¾ÍÐÐÁË.
ÀýÈç,ÏÂÃæµÄÓï¾äÏÔʾÖÐÎÄÄêÔÂ
select getdate() as È ......
1.ÏÞÖÆ·µ»Ø¼Ç¼µÄÐÐÊý£¨4-10ÐУ©
select rownum,c1 from t144 where rownum<10
minus
select rownum,c1 from t144 where rownum<5
2.ÅúÁ¿²åÈë
insert into tablename(select * from othertable)
»ò
insert into (column1,column2,,,,,,,)tablename(select column1,column2,,,,,,,from othertable)
3,·Ö×éº¯Ê ......
SQLÓï·¨ÊÖ²á
Select
ÓÃ;£º
´ÓÖ¸¶¨±íÖÐÈ¡³öÖ¸¶¨µÄÁеÄÊý¾Ý
Óï·¨£º
SELECT column_name(s) from table_name
½âÊÍ£º
´ÓÊý¾Ý¿âÖÐѡȡ×ÊÁÏÁУ¬²¢ÔÊÐí´ÓÒ»»ò¶à¸ö×ÊÁϱíÖУ¬Ñ¡È¡Ò»»ò¶à¸ö×ÊÁÏÁлò×ÊÁÏÐС£SELECT ³ÂÊöʽµÄÍêÕûÓï·¨Ï൱¸´ÔÓ£¬µ«Ö÷Òª×Ó¾ä¿ÉժҪΪ£º
SELECT select_ ......
SQL UNION ²Ù×÷·û
UNION ²Ù×÷·ûÓÃÓںϲ¢Á½¸ö»ò¶à¸ö SELECT Óï¾äµÄ½á¹û¼¯¡£
Çë×¢Ò⣬UNION ÄÚ²¿µÄ SELECT Óï¾ä±ØÐëÓµÓÐÏàͬÊýÁ¿µÄÁС£ÁÐÒ²±ØÐëÓµÓÐÏàËÆµÄÊý¾ÝÀàÐÍ¡£Í¬Ê±£¬Ã¿Ìõ SELECT Óï¾äÖеÄÁеÄ˳Ðò±ØÐëÏàͬ¡£
SQL UNION Óï·¨
SELECT column_name(s) from table_name1
UNION
SELECT column_name(s) from table_na ......