Ò׽ؽØÍ¼Èí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

SQlÖÐSTUFFÓ÷¨

1¡¢×÷ÓÃ
     ɾ³ýÖ¸¶¨³¤¶ÈµÄ×Ö·û£¬²¢ÔÚÖ¸¶¨µÄÆðµã´¦²åÈëÁíÒ»×é×Ö·û¡£
2¡¢Óï·¨
     STUFF ( character_expression , start , length ,character_expression )
3¡¢Ê¾Àý
     ÒÔÏÂʾÀýÔÚµÚÒ»¸ö×Ö·û´® abcdÖÐɾ³ý´ÓµÚ 2 ¸öλÖã¨×Ö·û b£©¿ªÊ¼µÄÈý¸ö×Ö·û£¬È»ºóÔÚɾ³ýµÄÆðʼλÖòåÈëµÚ¶þ¸ö×Ö·û´®£¬´Ó¶ø´´½¨   ²¢·µ»ØÒ»¸ö×Ö·û´®
     SELECT STUFF('abcde', 2, 3, 'fgh')
     GO
     ÏÂÃæÊǽá¹û¼¯
     afghe
4¡¢²ÎÊý
     character_expression
     Ò»¸ö×Ö·ûÊý¾Ý±í´ïʽ¡£character_expression ¿ÉÒÔÊdz£Á¿¡¢±äÁ¿£¬Ò²¿ÉÒÔÊÇ×Ö·ûÁлò¶þ½øÖÆÊý¾ÝÁС£
     start
     Ò»¸öÕûÊýÖµ£¬Ö¸¶¨É¾³ýºÍ²åÈëµÄ¿ªÊ¼Î»Öá£Èç¹û start »ò length Ϊ¸º£¬Ôò·µ»Ø¿Õ×Ö·û´®¡£Èç¹û start ±ÈµÚÒ»¸öcharacter_expression³¤£¬Ôò·µ»Ø¿Õ×Ö·û´®¡£start ¿ÉÒÔÊÇ bigint ÀàÐÍ¡£
     length
     Ò»¸öÕûÊý£¬Ö¸¶¨ÒªÉ¾³ýµÄ×Ö·ûÊý¡£Èç¹û length ±ÈµÚÒ»¸ö character_expression³¤£¬Ôò×î¶àɾ³ýµ½×îºóÒ»¸ö     character_expression ÖеÄ×îºóÒ»¸ö×Ö·û¡£length ¿ÉÒÔÊÇ bigint ÀàÐÍ¡£
5¡¢·µ»ØÀàÐÍ
     Èç¹û character_expression ÊÇÊÜÖ§³ÖµÄ×Ö·ûÊý¾ÝÀàÐÍ£¬Ôò·µ»Ø×Ö·ûÊý¾Ý¡£Èç¹û character_expression ÊÇÒ»¸öÊÜÖ§³ÖµÄ binary Êý¾ÝÀàÐÍ£¬Ôò·µ»Ø¶þ½øÖÆÊý¾Ý¡£
6¡¢±¸×¢
     Èç¹û½á¹ûÖµ´óÓÚ·µ»ØÀàÐÍÖ§³ÖµÄ×î´óÖµ£¬Ôò²úÉú´íÎó¡£


Ïà¹ØÎĵµ£º

¾­µäµÄSQLÓï¾ä

SQL·ÖÀࣺ
¡¡¡¡DDL—Êý¾Ý¶¨ÒåÓïÑÔ(CREATE£¬ALTER£¬DROP£¬DECLARE)
¡¡¡¡DML—Êý¾Ý²Ù×ÝÓïÑÔ(SELECT£¬DELETE£¬UPDATE£¬INSERT)
¡¡¡¡DCL—Êý¾Ý¿ØÖÆÓïÑÔ(GRANT£¬REVOKE£¬COMMIT£¬ROLLBACK)
¡¡¡¡Ê×ÏÈ,¼òÒª½éÉÜ»ù´¡Óï¾ä£º
¡¡¡¡1¡¢ËµÃ÷£º´´½¨Êý¾Ý¿â
CREATE DATABASE database-name
¡¡¡¡2¡¢ËµÃ÷£ºÉ¾³ýÊý¾Ý¿â ......

Êý¾Ý¿â»ù±¾ SQLÓï¾ä´óÈ«

Ò»¡¢»ù´¡
1¡¢ËµÃ÷£º´´½¨Êý¾Ý¿â
Create DATABASE database-name
2¡¢ËµÃ÷£ºÉ¾³ýÊý¾Ý¿â
drop database dbname
3¡¢ËµÃ÷£º±¸·Ýsql server
--- ´´½¨ ±¸·ÝÊý¾ÝµÄ device
USE master
EXEC sp_addumpdevice disk, testBack, c:mssql7backupMyNwind_1.dat
--- ¿ªÊ¼ ±¸·Ý
BACKUP DATABASE pubs TO testBack
4¡¢Ë ......

SQLËø»úÖÆºÍÊÂÎñ¸ôÀë¼¶±ð£¨×ª£©

NOLOCKºÍREADPASTµÄÇø±ð¡£
1.¿ªÆôÒ»¸öÊÂÎñÖ´ÐвåÈëÊý¾ÝµÄ²Ù×÷¡£
BEGIN TRAN t
INSERT INTO Customer
SELECT 'a','a'
2.Ö´ÐÐÒ»Ìõ²éѯÓï¾ä¡£
SELECT * from Customer WITH (NOLOCK)
½á¹ûÖÐÏÔʾ”a”ºÍ”a”¡£µ±1ÖÐÊÂÎñ»Ø¹öºó£¬ÄÇôa½«³ÉΪÔàÊý¾Ý¡£(×¢:1ÖеÄÊÂÎñδÌá½») ¡£NOLOCK±íÃ÷ûÓжÔÊý¾Ý±íÌ ......

SQL Injection with MySQL£¨×ª£©


SQL Injection with MySQL
±¾ÎÄ×÷Õߣºangel
ÎÄÕÂÐÔÖÊ£ºÔ­´´
·¢²¼ÈÕÆÚ£º2004-09-16
±¾ÎÄÒѾ­·¢±íÔÚ¡¶ºÚ¿Í·ÀÏß¡·7Ô¿¯£¬×ªÔØÇë×¢Ã÷¡£ÓÉÓÚдÁ˺ܾã¬Ëæ×ż¼ÊõµÄ½ø²½£¬±¾ÈËÒ²·¢ÏÖ¸ÃÎÄÀïÓв»ÉÙ´íÎóºÍÂÞàµĵط½¡£Çë¸÷λ¸ßÊÖ¿´Á˲»ÒªÐ¦¡£±¾ÎÄдÓÚ¡¶Advanced SQL Injection with MySQL¡·Ö®Ç°Ò»¸öÔ¡£
ÉùÃ÷
¡¡¡¡±¾ÎĽöÓÃÓÚ½ ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØÍ¼ | ¸ÓICP±¸09004571ºÅ