sql c#
C-#ÈëÞµä(µÚÈý°æ).pdf
using System;
using System.Data;
using System.Data.SqlClient;
namespace My_Student
{
static class Program
{
static void Main()
{
//Á¬½Ó×Ö·û´®£¬Á¬½Ó±¾µØµÄMS SQL Server·þÎñÆ÷
string connString = "data source=MICROSOF-84BB45;persist security info=False;initial catalog=MyDB;integrated security=SSPI;";
//SQLÓï¾ä£¬É¾³ý¼Ç¼
string sqlString = "delete from Courses where CourseNo='001'";
//½¨Á¢Á¬½Ó¶ÔÏó
SqlConnection conn = new SqlConnection(connString);
conn.Open();//´ò¿ªÁ¬½Ó
//½¨Á¢Êý¾ÝÃüÁî¶ÔÏó
SqlCommand cmd = new SqlCommand(sqlString, conn);
//Ö´ÐÐÃüÁ·µ»ØÓ°ÏìµÄÐÐÊý
int rowsReturned = cmd.ExecuteNonQuery();
Console.WriteLine("{0} ¼Ç¼ÒÑɾ³ý", rowsReturned);
MessageBox.Show("Êý¾Ý¿â¸üгɹ¦£¡£¡");
conn.Close();//¹Ø±ÕÁ¬½Ó
}
}
}
try
&nb
Ïà¹ØÎĵµ£º
½ÓÉÏһƪ¡¶C#дXMLµÄ¼òµ¥Àý×Ó¡·
Õâ¸öÀý×ÓÒªÐÞ¸ÄXMLÎļþÖнáµãµÄÊôÐԺͺÍÔªËØµÄÎı¾
1 ÔxmlÎļþ bookstore.xml
<?xml version="1.0" encoding="gb2312"?>
<bookstore>
<book genre="love" ISBN="1234123">
<title>who am i </title>
&l ......
1¡¢¼ì²éÊÇ·ñÓзǷ¨×Ö·û
public static boolean sql_inj(String str)
{
String inj_str = "'|and|exec|insert|select|delete|update|
count|*|%|chr|mid|master|truncate|char|declare|;|or|-|+|,";
//ÕâÀïµÄ¶«Î÷»¹¿ÉÒÔ×Ô¼ºÌí¼Ó
String[] inj_stra=inj_str.split("\\|");
for ......
×î½ü£¬ÒòΪÏîÄ¿µÄÔÒò£¬ÐèÒªÉè¼ÆÒ»¸öÊý¾Ý¿â£¬¸ÃÊý¾Ý¿âµÄ¹¦ÄÜÖ÷ÒªÊÇÃèÊöÎļþϵͳµÄ½á¹¹ºÍÎļþÐÅÏ¢£¬ÔÚÍøÉÏÕÒÁ˺ܶàµÄ×ÊÁÏ£¬µ«ÊÇÐí¶àÉè¼ÆÒªÃ´Õë¶Ô²éѯÁ¿±È½Ï¶àµÄÀ´×ö£¬ÒªÃ´Õë¶ÔÐ޸ġ¢²åÈëÁ¿±È½Ï¶àµÄÀ´×ö£¬¶ø¶ÔÓÚÎļþϵͳ¶øÑÔ£¬ËüµÄ²éѯ¡¢²åÈë¡¢Ð޸ͼÊÇÏ൱Ƶ·±µÄ£¬Òò´Ë£¬Êý¾Ý¿âµÄÉè¼Æ¼«ÆäÖØÒª,ÏÖ½«×Ô¼ºµÄÒ»µãÏ뷨˵˵£¬Ï£Íû´ ......
×î½üÔÚÕÒÒ»´Îsql²éѯµÄÎÞÏÞ·ÖÀà²éѯµÄÉè¼Æ£¬ÍøÉÏÕÒÁËÒ»ÏÂÕâ¸öÊý¾Ý±íµÄÉè¼ÆºÜÓÐÌØÉ«£¬
²»Óõݹ飬ÒÀ¿¿¸ö¼òµ¥SQLÓï¾ä¾ÍÄÜÁгö²Ëµ¥£¬¿´¿´Õâ¸öÊý¾Ý±íÔõôÉè¼ÆµÄ£¬²¢¶ÔÏÂÃæµÄÊý¾Ý±í½á¹¹µÄ²éѯ½øÐзÖÎö.
Êý¾Ý¿â×ֶδó¸ÅÈçÏ£º
-----------------------------------------------------------------------------------
id ......