阅读背景:

在SQL WHERE子句中包含数据的最安全的方法是什么,同时避免SQL注入风险而不使用参数化查询?

来源:互联网 

What's a good function to use for making a string safe for inclusion in a SQL query? For example, apostrophes would need to be fixed, and there are doubtless other problems that could arise as well. I'd like a function that is rock-solid and would work given any possible input an evil-doer could devise.What's a good function to use for making a stri




你的当前访问异常,请进行认证后继续阅读剩余内容。

分享到: