<%
t_max="大于4000的字符集"
set cmd = server.CreateObject("adodb.command")
openConnCursor()
with cmd
set .ActiveConnection=connCursor
.CommandText="update t_test set t1=" & t1 & ",t2=" & t2 &",t3=" & t3 &", t4= " & t4& " , t_maxval=? where t5=" & t5 & " and t6='" & t6 & "'"
.Parameters.Append .CreateParameter("@t_maxval",201,1,999999,t_max)
.CommandType = 1
end with
set rs = server.createobject("adodb.recordset")
rs.CursorLocation = 3:rs.open cmd
set cmd = nothing
function openConnCursor()
dim objmail
dim connstr,RequestStr,splitqword,instrsi
Set connCursor = Server.CreateObject("adodb.connection")
connstr="Provider=OraOLEDB.Oracle.1;PLSQLRSet=1;Data Source=server_oracle;User ID=test;Password=123456"
connCursor.Open connstr
end function
%>
本文提供了一个使用ASP和ADO组件更新数据库的示例代码。通过创建Command对象并设置其属性来执行更新操作,并展示了如何使用参数化查询防止SQL注入。
1172

被折叠的 条评论
为什么被折叠?



