sql server 存储过程中拼接sql,转义单引号

DECLARE @col VARCHAR(9) ,

DECLARE @val VARCHAR(100)

SET @col = 'firstname'

EXEC('SELECT * FROM table WHERE firstname like ''%' +@val+'%'' ORDER BY '+@col)

GO

 

posted on 2011-11-10 13:41  魔GUI  阅读(2002)  评论(0编辑  收藏  举报

导航