防止Sql注入

1.Sql语句过滤

select count(*) from info_oper where opid =@opid

2.SqlCommand. AddParameter("@opid","00900")

posted on 2016-05-05 20:10  tesus  阅读(76)  评论(0)    收藏  举报

导航