当前位置:Gxlcms > 数据库问题 > mysql - 防止sql注入

mysql - 防止sql注入

时间:2021-07-01 10:21:17 帮助过:2人阅读

SELECT * FROM Users where UserName=‘%s‘ and Password=‘%s‘", mysql_real_escape_string($Username), mysql_real_escape_string($Password)); mysql_query($query);

或者

$db = new mysqli("localhost", "user", "pass", "database");  
$stmt = $mysqli -> prepare("SELECT priv FROM testUsers WHERE username=? AND password=?");  
$stmt -> bind_param("ss", $user, $pass);  
$stmt -> execute();  

 

mysql - 防止sql注入

标签:

人气教程排行