ÔÚPHPÖÐÈ«Ãæ×èÖ¹SQL×¢Èëʽ¹¥»÷Ö®¶þ
Ò»¡¢ ×¢Èëʽ¹¥»÷µÄÀàÐÍ
¡¡¡¡¿ÉÄÜ´æÔÚÐí¶à²»Í¬ÀàÐ͵Ĺ¥»÷¶¯»ú£¬µ«ÊÇÕ§¿´ÉÏÈ¥£¬Ëƺõ´æÔÚ¸ü¶àµÄÀàÐÍ¡£ÕâÊǷdz£ÕæÊµµÄ-Èç¹û¶ñÒâÓû§·¢ÏÖÁËÒ»¸öÄܹ»Ö´Ðжà¸ö²éѯµÄ°ì·¨µÄ»°¡£±¾ÎĺóÃæ£¬ÎÒÃÇ»á¶Ô´Ë×÷ÏêϸÌÖÂÛ¡£
¡¡¡¡Èç¹ûÄãµÄ½Å±¾ÕýÔÚÖ´ÐÐÒ»¸öSELECTÖ¸ÁÄÇô£¬¹¥»÷Õß¿ÉÒÔÇ¿ÆÈÏÔʾһ¸ö±í¸ñÖеÄÿһÐмǼ-ͨ¹ý°ÑÒ»¸öÀýÈç"1=1"ÕâÑùµÄÌõ¼þ×¢Èëµ½WHERE×Ó¾äÖУ¬ÈçÏÂËùʾ(ÆäÖУ¬×¢È벿·ÖÒÔ´ÖÌåÏÔʾ)£º
SELECT * from wines WHERE variety = 'lagrein' OR 1=1;'
¡¡¡¡ÕýÈçÎÒÃÇÔÚÇ°ÃæËùÌÖÂ۵ģ¬Õâ±¾Éí¿ÉÄÜÊǺÜÓÐÓõÄÐÅÏ¢£¬ÒòΪËü½ÒʾÁ˸ñí¸ñµÄÒ»°ã½á¹¹(ÕâÊÇÒ»ÌõÆÕͨµÄ¼Ç¼Ëù²»ÄÜʵÏÖµÄ)£¬ÒÔ¼°Ç±ÔÚµØÏÔʾ°üº¬»úÃÜÐÅÏ¢µÄ¼Ç¼¡£
¡¡¡¡Ò»Ìõ¸üÐÂÖ¸ÁîDZÔڵؾßÓиüÖ±½ÓµÄÍþв¡£Í¨¹ý°ÑÆäËüÊôÐԷŵ½SET×Ó¾äÖУ¬Ò»Ãû¹¥»÷Õß¿ÉÒÔÐ޸ĵ±Ç°±»¸üеļǼÖеÄÈκÎ×ֶΣ¬ÀýÈçÏÂÃæµÄÀý×Ó£¨ÆäÖУ¬×¢È벿·ÖÒÔ´ÖÌåÏÔʾ£©£º
UPDATE wines SET type='red'£¬'vintage'='9999' WHERE variety = 'lagrein'
¡¡¡¡Í¨¹ý°ÑÒ»¸öÀýÈç1=1ÕâÑùµÄºãÕæÌõ¼þÌí¼Óµ½Ò»Ìõ¸üÐÂÖ¸ÁîµÄWHERE×Ó¾äÖУ¬ÕâÖÖÐ޸ķ¶Î§¿ÉÒÔÀ©Õ¹µ½Ã¿Ò»Ìõ¼Ç¼£¬ÀýÈçÏÂÃæµÄÀý×Ó£¨ÆäÖУ¬×¢È벿·ÖÒÔ´ÖÌåÏÔʾ£©£º
UPDATE wines SET type='red'£¬'vintage'='9999 WHERE variety = 'lagrein' OR 1=1;'
¡¡¡¡×îΣÏÕµÄÖ¸Áî¿ÉÄÜÊÇDELETE-ÕâÊDz»ÄÑÏëÏñµÄ¡£Æä×¢Èë¼¼ÊõÓëÎÒÃÇÒѾ¿´µ½µÄÏàͬ-ͨ¹ýÐÞ¸ÄWHERE×Ó¾äÀ´À©Õ¹ÊÜÓ°ÏìµÄ¼Ç¼µÄ·¶Î§£¬ÀýÈçÏÂÃæµÄÀý×Ó£¨ÆäÖУ¬×¢È벿·ÖÒÔ´ÖÌåÏÔʾ£©£º
DELETE from wines WHERE variety = 'lagrein' OR 1=1;'
¡¡¡¡¶þ¡¢ ¶à¸ö²éѯעÈë
¡¡¡¡¶à¸ö²éѯעÈ뽫»á¼Ó¾çÒ»¸ö¹¥»÷Õß¿ÉÄÜÒýÆðµÄDZÔÚµÄËð»µ-ͨ¹ýÔÊÐí¶àÌõÆÆ»µÐÔÖ¸Áî°üÀ¨ÔÚÒ»¸ö²éѯÖС£ÔÚʹÓÃMySQLÊý¾Ý¿âʱ£¬¹¥»÷Õßͨ¹ý°ÑÒ»¸ö³öºõÒâÁÏÖ®ÍâµÄÖÕÖ¹·û²åÈëµ½²éѯÖм´¿ÉºÜÈÝÒ×ʵÏÖÕâÒ»µã-´Ëʱһ¸ö×¢ÈëµÄÒýºÅ(µ¥ÒýºÅ»òË«ÒýºÅ)±ê¼ÇÆÚÍû±äÁ¿µÄ½áβ£»È»ºóʹÓÃÒ»¸ö·ÖºÅÖÕÖ¹¸ÃÖ¸Áî¡£ÏÖÔÚ£¬Ò»¸öÁíÍâµÄ¹¥»÷Ö¸Áî¿ÉÄܱ»Ìí¼Óµ½ÏÖÔÚÖÕÖ¹µÄÔʼָÁîµÄ½áβ¡£×îÖÕµÄÆÆ»µÐÔ²éѯ¿ÉÄÜ¿´ÆðÀ´ÈçÏÂËùʾ£º
SELECT * from wines WHERE variety = 'lagrein';
GRANT ALL ON *.* TO 'BadGuy@%' IDENTIFIED BY 'gotcha';'
¡¡¡¡Õâ¸ö×¢È뽫´´½¨Ò»¸öеÄÓû§BadGuy²¢¸³ÓèÆäÍøÂçÌØÈ¨£¨ÔÚËùÓеıí¸ñÉϾßÓÐËùÓеÄÌØÈ¨£©£»ÆäÖУ¬»¹ÓÐÒ»¸ö"²»Ïé"µÄ¿ÚÁî±»¼ÓÈëµ½Õâ¸ö¼òµ¥µÄSELECTÓï¾äÖС£Èç¹ûÄã×ñÑÎÒÃÇÔÚÒÔǰÎÄÕÂÖеĽ¨Òé£ÑϸñÏÞÖÆ¸Ã¹ý³ÌÓû§µÄÌØÈ¨£¬ÄÇô£¬ÕâÓ¦¸ÃÎÞ·¨¹¤×÷£¬ÒòΪweb·þÎñÆ÷ÊØ»¤³ÌÐò²
Ïà¹ØÎĵµ£º
ÓαêÊÇ´ÓÊý¾Ý¿âÖÐÌáÈ¡³öÀ´µÄÊý¾Ý£¬ÒÔÁÙʱ±íµÄÐÎʽ´æ·ÅÔÚÄÚ´æÖУ¬ÔÚÓαêÖÐÓÐÒ»¸öÊý¾ÝÖ¸Õ룬ÔÚ³õʼ״̬ÏÂÖ¸ÏòÊ׼Ǽ£¬ ÀûÓÃfetchÓï¾äÒÆ¶¯¸ÃÖ¸Õ룬´Ó¶ø¶ÔÓαêÖеÄÊý¾Ý½øÐи÷ÖÖ²Ù×÷¡£
1.¶¨ÒåÓαê
cursor ÓαêÃû is selectÓï¾ä;
2.´ò¿ªÓαê
open ÓαêÃû;
3.ÌáÈ¡ÓαêÊý¾Ý
fetch ÓαêÃû into ±äÁ¿Ãû1, ±äÁ¿Ãû2, ....;
»ò
......
--¶¼Ð´ÁË ²Î¿¼Ï°É
ͨ³££¬ÄãÐèÒª»ñµÃµ±Ç°ÈÕÆÚºÍ¼ÆËãһЩÆäËûµÄÈÕÆÚ£¬ÀýÈ磬ÄãµÄ³ÌÐò¿ÉÄÜÐèÒªÅжÏÒ»¸öÔµĵÚÒ»Ìì»òÕß×îºóÒ»Ìì¡£ÄãÃǴ󲿷ÖÈË´ó¸Å¶¼ÖªµÀÔõÑù°ÑÈÕÆÚ½øÐзָÄê¡¢Ô¡¢Èյȣ©£¬È»ºó½ö½öÓ÷ָî³öÀ´µÄÄê¡¢Ô¡¢ÈյȷÅÔÚ¼¸¸öº¯ÊýÖмÆËã³ö×Ô¼ºËùÐèÒªµÄÈÕÆÚ£¡ÔÚÕâÆªÎÄÕÂÀÎÒ½«¸æËßÄãÈçºÎʹÓÃDATEADDºÍDATEDIFFº¯Êý ......
ʲôÊÇ IDE?
¡¡¡¡¼ò¶øÑÔÖ®£¬IDE Ϊ±àÂ빤×÷ÌṩÁËһվʽ·þÎñ¡£IDE °üÀ¨Ò»¸ö±à¼Æ÷£¬ÔÚ´Ë±à¼Æ÷ÄÚ¿ÉÒԱ༴úÂë¡¢µ÷ÊÔ´úÂë¡¢ÔÚä¯ÀÀÆ÷(ͨ³£ÊÇǶÈëʽµÄ)Öв鿴´úÂëºÍÇ©ÈëºÍÇ©³öÔ´Âë¿ØÖÆ¡£ÎªÁËÖ§³ÖÕâЩ¹¦ÄÜ£¬IDE ÓµÓÐÒ»Ì×ÔÚ»ù±¾±à¼Æ÷(±ÈÈç¼Çʱ¾»òÕß Vim)ÖÐËùÕÒ²»µ½µÄÌØÐÔ¡£µ±È»£¬Äú¿ÉÒÔͨ¹ýÀ©Õ¹±à¼Æ÷À´ÊµÏÖÕâЩ¹¦ÄÜ£¬µ«ÊÇ ID ......
£¨1£© Ñ¡Ôñ×îÓÐЧÂʵıíÃû˳Ðò(Ö»ÔÚ»ùÓÚ¹æÔòµÄÓÅ»¯Æ÷ÖÐÓÐЧ)£º
ORACLE µÄ½âÎöÆ÷°´ÕÕ´ÓÓÒµ½×óµÄ˳Ðò´¦Àífrom×Ó¾äÖеıíÃû£¬from×Ó¾äÖÐдÔÚ×îºóµÄ±í(»ù´¡±í driving table)½«±»×îÏÈ´¦Àí£¬ÔÚfrom×Ó¾äÖаüº¬¶à¸ö±íµÄÇé¿öÏÂ,Äã±ØÐëÑ¡Ôñ¼Ç¼ÌõÊý×îÉٵıí×÷Ϊ»ù´¡±í¡£Èç¹ûÓÐ3¸öÒÔÉϵıíÁ¬½Ó²éѯ, ÄǾÍÐèÒª ......
SQLÓï¾äÓÅ»¯Êµ¼ùÖ®Ò»SQL_TRACE
»·¾³£ºÔÚPL/sqlÉϵ÷ÊÔÊý¾Ý
Pl/sql developer¹¤¾ßÁ¬½ÓʵÀýºó¼´×÷Ϊһ¸öÓû§½ø³ÌÕ¼ÓÃÒ»¸ösession£»
select * from v$session t where t.PROGRAM='plsqldev.exe' and t.USERNAME='DZJC'
²éѯ½á¹ûÏÔʾÁ˼¸¸ö¹Ø¼üµÄ×Ö¶Î
SADDR RAW(4) S ......