Ò׽ؽØÍ¼Èí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

ÈçºÎÓ¦¶ÔWinformsÖÐSQLµÄ×¢Èëʽ¹¥»÷

SqlÓï¾ä×÷Ϊ¹ú¼Ê±ê×¼µÄÊý¾Ý¿â²éѯÓï¾ä£¬±±¾©°á¼Ò¹«Ë¾ ±±¾©Êèͨ¹«Ë¾ÔÚ¸÷ÖÖ±à³Ì»·¾³Öеõ½Á˹㷺µÄÓ¦Óá£×÷Ϊһ¸ö³ÉÊì¡¢Îȶ¨µÄϵͳ£¬Óû§µÇ½ºÍÃÜÂëÑéÖ¤ÊDZز»¿ÉÉٵġ£ÔÚÆ½Ê±µÄ±à³Ì¹¤×÷ÖÐÐí¶à³ÌÐòÔ±ÔÚÓÃsqlÓï¾ä½øÐÐÓû§ÃÜÂëÑé֤ʱÊÇͨ¹ýÒ»¸öÀàËÆÕâÑùµÄÓï¾äÀ´ÊµÏֵģº
 strSel = " Select * from Óû§±í where ÐÕÃû= '" + name + "'  and  ÃÜÂë = '"  + password + "'";
        ÆäÖÐnameºÍpasswordÊÇ´æ·ÅÓû§ÊäÈëµÄÓû§ÃûºÍ¿ÚÁͨ¹ýÖ´ÐÐÉÏÊöÓï¾äÀ´ÑéÖ¤Óû§ºÍÃÜÂëÊÇ·ñºÏ·¨ÓÐЧ¡£µ«ÊÇͨ¹ý·ÖÎö¿ÉÒÔ·¢ÏÖ£¬ÉÏÊöÓï¾äÈ´´æÔÚ×ÅÖÂÃüµÄ©¶´¡£µ±ÎÒÃÇÔÚÓû§Ãû³ÆÖÐÊäÈëÏÂÃæµÄ×Ö·û´®Ê±£º111 ' or  '1 = 1£¬È»ºó¿ÚÁîÒ²ÒÔÀàËÆ·½·¨ÊäÈ룬ÎÒÃǼÙÉèÃÜÂëΪaaaa¡£±äÁ¿´ú»»ºó£¬sqlÓï¾ä¾Í±ä³ÉÁËÏÂÃæµÄ×Ö·û´®£º Sql="Select * from Óû§±í where ÐÕÃû = '111' or '1' = '1'  and  ÃÜÂë = 'aaaa'
        ÎÒÃǶ¼ÖªµÀselectÓï¾äÔÚÅжϲéѯÌõ¼þʱ£¬Óöµ½»ò£¨or£©²Ù×÷¾Í»áºöÂÔÏÂÃæµÄÓ루and£©²Ù×÷£¬¶øÔÚÉÏÃæµÄÓï¾äÖÐ1=1µÄÖµÓÀԶΪtrue£¬ÕâÒâζ×ÅÎÞÂÛÔÚÃÜÂëÖÐÊäÈëʲôֵ£¬¾ùÄÜͨ¹ýÉÏÊöµÄÃÜÂëÑéÖ¤£¡Õâ¸öÎÊÌâµÄ½â¾öºÜ¼òµ¥£¬·½·¨Ò²ºÜ¶à£¬×î³£ÓõÄÊÇÔÚÖ´ÐÐÑé֤֮ǰ£¬¶ÔÓû§ÊäÈëµÄÓû§ºÍÃÜÂë½øÐкϷ¨ÐÔÅжϣ¬±±¾©°á¼Ò¹«Ë¾ ±±¾©Êèͨ¹«Ë¾²»ÔÊÐíÊäÈëµ¥ÒýºÅ¡¢µÈºÅµÈÌØÊâ×Ö·û¡£
       ÉÏÊöÎÊÌâËäÈ»¿´ÆðÀ´¼òµ¥£¬µ«È·ÊµÊÇ´æÔڵġ£ÀýÈçÔÚ»¥ÁªÍøÉϺÜÓÐÃûÆøµÄÍøÂçÓÎÏ·"Ц°Á½­ºþ"µÄÔçÆÚ°æ±¾¾Í´æÔÚ×ÅÕâÑùµÄÎÊÌ⣬ÕâȷʵӦ¸ÃÒýÆðÎÒÃǵÄ×¢Òâ¡£ÕâÒ²±©Â¶³öÄêÇá³ÌÐòÔ±ÔÚ±à³Ì¾­ÑéºÍ°²È«ÒâʶÉϵIJ»×㡣ͬʱҲÌáÐÑÎÒÃDZà³Ì¹¤×÷ÕßÔÚ³ÌÐòÉè¼ÆÊ±Ó¦µ±³ä·Ö¿¼ÂdzÌÐòµÄ°²È«ÐÔ£¬²»¿ÉÓаëµãÂí»¢£¬Ò»¸ö¿´ËƺÜСµÄÊè©¿ÉÄܾͻáÔì³ÉºÜÑÏÖØµÄºó¹û¡£ ÔÚWinforms±à³ÌÖпÉÒÔ²ÉÈ¡ÒÔÏ·½·¨½â¾ö£¬¿ÉÒÔÓÃÎı¾¿òµÄKeyPressʼþÖÐÌí¼ÓÒÔÏ´úÂë
     if(e.KeyChar == ' \' ') {
            MessageBox.Show("²»¿ÉÒÔÊäÈë‘£¡");
            e.Handled = true;
     }±±¾©°á¼Ò¹«Ë¾ ±±¾©Êèͨ¹«Ë¾
     ´Ë´¦µÄeÊǸÃʼþÌṩµÄ²ÎÊý¶ÔÏó£¬KeyCharÊDZíʾËù°´¼üµÄASCIIÂ룬\'±íʾµ¥ÒýºÅ£¬Ìõ¼


Ïà¹ØÎĵµ£º

Sql helperʹÓ÷½·¨

    public List<FirmAttachmentModel> LoadFirmAttachmentByFirmId(int FirmId, int pageIndex, int pageSize)
        {
            List<FirmAttachmentModel> result = new List<FirmAtt ......

SQL Server ´æ´¢¹ý³ÌÈëÃÅѧϰ

´´½¨´æ´¢¹ý³Ì֮ǰҪÏÈÓÃuseÓï¾äÉùÃ÷Òª½«´æ´¢¹ý³Ì´æ´¢ÔÚÄĸöÊý¾Ý¿âÖÐ. e.g use company; Ö´ÐÐÖ®.Ö®ºó¾Í¿ÉÒÔÉùÃ÷´æ´¢¹ý³ÌÁË. e.g create procedure *** @id varchar(50) , @name int output as select @name=name from table where id=@id È»ºó¿ÉÒÔÓÃalter¶Ô´æ´¢¹ý³Ì½øÐÐÐÞ¸Ä. declare¿ÉÒÔÉùÃ÷Ò»¸ö±äÁ¿ ÓÃset¶Ô±ä ......

sql group by Óë havingµÄÓ÷¨

1. GROUP BY ÊÇ·Ö×é²éѯ, Ò»°ã GROUP BY ÊǺ;ۺϺ¯ÊýÅäºÏʹÓÃ
group by ÓÐÒ»¸öÔ­Ôò,¾ÍÊÇ select ºóÃæµÄËùÓÐÁÐÖÐ,ûÓÐʹÓþۺϺ¯ÊýµÄÁÐ,±ØÐë³öÏÖÔÚ group by ºóÃæ£¨ÖØÒª£©
ÀýÈç,ÓÐÈçÏÂÊý¾Ý¿â±í£º
A    B
1    abc
1    bcd
1    asdfg
 Èç¹ûÓÐÈ ......

java Annotation Æ´×°SQLÓï¾ä

ÉùÃ÷×Ö¶ÎÓ³Éä
@Target(ElementType.FIELD)  
@Retention(RetentionPolicy.RUNTIME) 
public @interface FiledRef
{
    String fieldName();
}
ÉùÃ÷±íÓ³Éä
@Target(ElementType.TYPE)  
@Retention(RetentionPolicy.RUNTIME)
public @interface TableRef
{
 & ......

SQL ×Ö·û´®½ØÈ¡Ê¾Àý

SELECT LEFT(RTRIM('20080927p1058'),LEN('20080927p1058')-2)
 
SELECT SUBSTRING('20080927p1058',1,LEN('20080927p1058')-2)
.csharpcode, .csharpcode pre
{
font-size: small;
color: black;
font-family: consolas, "Courier New", courier, monospace;
background-color: #ffffff;
/*whit ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØÍ¼ | ¸ÓICP±¸09004571ºÅ