ExecuteNonQuery :int SqlCommand.ExcuteNonQuery () 对连接执行 Transact-SQL语句并执行返回受影响的行数。 ExecuteNonQuery是返回受影响的行数,为何不能在这里使用?
cm.Parameters.Add(new OleDbParameter("@pw",OleDbType.VarChar,20)); cm.Parameters.Add(new OleDbParameter("@zt",OleDbType.VarChar,50)); cm.Parameters.Add(new ...
The website isn't using parameterized queries, which is a fairly serious security flaw. Most likely, your mother is putting a single quote in a field where the programmer didn't expect it, and because ...