SQLÖеÄLIKEÓï¾äµÄÓ÷¨
ÔÚSQL½á¹¹»¯²éѯÓïÑÔÖУ¬LIKEÓï¾äÓÐ×ÅÖÁ¹ØÖØÒªµÄ×÷Óá£
¡¡¡¡LIKEÓï¾äµÄÓï·¨¸ñʽÊÇ£ºselect * from ±íÃû where ×Ö¶ÎÃû like ¶ÔÓ¦Öµ£¨×Ó´®£©£¬ËüÖ÷ÒªÊÇÕë¶Ô×Ö·ûÐÍ×ֶεģ¬ËüµÄ×÷ÓÃÊÇÔÚÒ»¸ö×Ö·ûÐÍ×Ö¶ÎÁÐÖмìË÷°üº¬¶ÔÓ¦×Ó´®µÄ¡£
¡¡¡¡¼ÙÉèÓÐÒ»¸öÊý¾Ý¿âÖÐÓиö±ítable1£¬ÔÚtable1ÖÐÓÐÁ½¸ö×ֶΣ¬·Ö±ðÊÇnameºÍsex¶þÕßÈ«ÊÇ×Ö·ûÐÍÊý¾Ý¡£ÏÖÔÚÎÒÃÇÒªÔÚÐÕÃû×Ö¶ÎÖвéѯÒÔ“ÕÅ”×Ö¿ªÍ·µÄ¼Ç¼£¬Óï¾äÈçÏ£º
select * from table1 where name like "ÕÅ*"
Èç¹ûÒª²éѯÒÔ“ÕÅ”½áβµÄ¼Ç¼£¬ÔòÓï¾äÈçÏ£º
¡¡¡¡¡¡select * from table1 where name like "*ÕÅ"
ÕâÀïÓõ½ÁËͨÅä·û“*”£¬¿ÉÒÔ˵£¬likeÓï¾äÊǺÍͨÅä·û·Ö²»¿ªµÄ¡£ÏÂÃæÎÒÃǾÍÏêϸ½éÉÜÒ»ÏÂͨÅä·û¡£
Æ¥ÅäÀàÐÍ¡¡¡¡
ģʽ
¾ÙÀý¡¡¼°¡¡´ú±íÖµ
˵Ã÷
¶à¸ö×Ö·û
*
c*c´ú±ícc,cBc,cbc,cabdfecµÈ
ËüͬÓÚDOSÃüÁîÖеÄͨÅä·û£¬´ú±í¶à¸ö×Ö·û¡£
¶à¸ö×Ö·û
%
%c%´ú±íagdcagdµÈ
ÕâÖÖ·½·¨Ôںܶà³ÌÐòÖÐÒªÓõ½£¬Ö÷ÒªÊDzéѯ°üº¬×Ó´®µÄ¡£
ÌØÊâ×Ö·û
[*]
a[*]a´ú±ía*a
´úÌæ*
µ¥×Ö·û
?
b?b´ú±íbrb,bFbµÈ
ͬÓÚDOSÃüÁîÖеģ¿Í¨Åä·û£¬´ú±íµ¥¸ö×Ö·û
µ¥Êý×Ö
#
k#k´ú±ík1k,k8k,k0k
´óÖÂͬÉÏ£¬²»Í¬µÄÊÇ´úÖ»ÄÜ´ú±íµ¥¸öÊý×Ö¡£
×Ö·û·¶Î§
-
[a-z]´ú±íaµ½zµÄ26¸ö×ÖĸÖÐÈÎÒâÒ»¸ö
Ö¸¶¨Ò»¸ö·¶Î§ÖÐÈÎÒâÒ»¸ö
ÐøÉÏ
Åųý
[!×Ö·û]
[!a-z]´ú±í9,0,%,*µÈ
ËüÖ»´ú±íµ¥¸ö×Ö·û
Êý×ÖÅųý
[!Êý×Ö]
[!0-9]´ú±íA,b,C,dµÈ
ͬÉÏ
×éºÏÀàÐÍ
×Ö·û[·¶Î§ÀàÐÍ]×Ö·û
cc[!a-d]#´ú±íccF#µÈ
¿ÉÒÔºÍÆäËü¼¸ÖÖ·½Ê½×éºÏʹÓÃ
¡¡¡¡¡¡¼ÙÉè±ítable1ÖÐÓÐÒÔϼǼ£º
¡¡¡¡¡¡¡¡¡¡name sex
ÕÅСÃ÷¡¡¡¡¡¡¡¡ÄÐ
¡¡¡¡¡¡¡¡ÀîÃ÷Ìì¡¡¡¡¡¡¡¡¡¡¡¡¡¡ÄÐ
¡¡¡¡¡¡¡¡ÀîaÌì¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡Å®
¡¡¡¡¡¡¡¡Íõ5Îå¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡ÄÐ
¡¡¡¡¡¡¡¡ÍõÇåÎå¡¡¡¡¡¡¡¡¡¡¡¡ÄÐ
¡¡¡¡ÏÂÃæÎÒÃÇÀ´¾ÙÀý˵Ã÷һϣº
Àý1£¬²éѯname×Ö¶ÎÖаüº¬ÓГÃ÷”×ֵġ£
¡¡¡¡¡¡¡¡¡¡¡¡select * from table1 where name like %Ã÷%
Àý2£¬²éѯname×Ö¶ÎÖÐÒÔ“Àî”×Ö¿ªÍ·¡£
¡¡¡¡¡¡¡¡¡¡¡¡select * from table1 where name like Àî*
Àý3£¬²éѯname×Ö¶ÎÖк¬Ó
Ïà¹ØÎĵµ£º
SQL Injection with MySQL
±¾ÎÄ×÷Õߣºangel
ÎÄÕÂÐÔÖÊ£ºÔ´´
·¢²¼ÈÕÆÚ£º2004-09-16
±¾ÎÄÒѾ·¢±íÔÚ¡¶ºÚ¿Í·ÀÏß¡·7Ô¿¯£¬×ªÔØÇë×¢Ã÷¡£ÓÉÓÚдÁ˺ܾã¬Ëæ׿¼ÊõµÄ½ø²½£¬±¾ÈËÒ²·¢ÏÖ¸ÃÎÄÀïÓв»ÉÙ´íÎóºÍÂÞàµĵط½¡£Çë¸÷λ¸ßÊÖ¿´Á˲»ÒªÐ¦¡£±¾ÎÄдÓÚ¡¶Advanced SQL Injection with MySQL¡·Ö®Ç°Ò»¸öÔ¡£
ÉùÃ÷
¡¡¡¡±¾ÎĽöÓÃÓÚ½ ......
ÒÔORACLEÊý¾Ý¿âΪÀý£¬ ½«tab±íÖеÄtname×Ö¶Îת³ÉÒÔ¶ººÅ·Ö¸ôµÄ×Ö·û´®
SQLÈçÏ£º
select substr(max(sys_connect_by_path(tname, ',')), 2)
from (
select b.tname, b.t1, lead(b.t1, 1) over (order by b.t1) t2
from (
select a.tname, row_number() over (orde ......
н¨±í£º
create table [±íÃû]
(
[×Ô¶¯±àºÅ×Ö¶Î] int IDENTITY (1,1) PRIMARY KEY ,
[×Ö¶Î1] nVarChar(50) default \'ĬÈÏÖµ\' null ,
[×Ö¶Î2] ntext null ,
[×Ö¶Î3] datetime,
[×Ö¶Î4] money null ,
[×Ö¶Î5] int default 0,
[×Ö¶Î6] Decimal (12,4) default 0,
[×Ö¶Î7] image null ,
)
ɾ³ý±í£º
Drop table [ ......
CEILING£º
½«²ÎÊý Number ÏòÉÏÉáÈ루Ñؾø¶ÔÖµÔö´óµÄ·½Ïò£©Îª×î½Ó½üµÄ significance µÄ±¶Êý¡£ÀýÈ磬Èç¹ûÄú²»Ô¸ÒâʹÓÃÏñ“·Ö”ÕâÑùµÄÁãÇ®£¬¶øËùÒª¹ºÂòµÄÉÌÆ·¼Û¸ñΪ $4.42£¬¿ÉÒÔÓù«Ê½ =CEILING(4.42,0.1) ½«¼Û¸ñÏòÉÏÉáÈëΪÒÔ“½Ç”±íʾ¡£
Óï·¨
CEILING(number,significance)
Number ÒªËÄÉáÎåÈëµÄÊýÖµ ......