String TableName = request.getParameter("TableName");
String sql="select * from ["+TableName+"]";
Statement stmt=connWeb.createStatement();
ResultSet rs=stmt.executeQuery(sql);如果表名帶空格,還是說第四行有錯!怎麼辦?
String sql="select * from ["+TableName+"]";
Statement stmt=connWeb.createStatement();
ResultSet rs=stmt.executeQuery(sql);如果表名帶空格,還是說第四行有錯!怎麼辦?
GenericValidator.isBlankOrNull(TableName);
return TableName;
String sql="select * from \""+TableName+"\"";
另外,良好的编程习惯,变量首字母小写,写成tableName
` 就是 1 旁边的那个键
select * from [Order Details]
1.用"[]"将表名括起来
2.我不记得了