时间:2021-07-01 10:21:17 帮助过:98人阅读
mysql: select * from test where school_name like concat(‘%‘,${name},‘%‘)
oracle: select * from test where school_name like ‘%‘||${name},‘%‘
SQL Server:select * from test where school_name like ‘%‘+${name},+‘%‘
like语句防止SQL注入
标签:acl 语句 sch like where sql注入 防止 cat mysq