S
SStory
How can I handle the user entering single quotes like in
Bob's mini mart?
If I use command objects will this no longer be an issue?
I guess that would mean no simple adhoc SQL statements right?
like SELECT name from WHATEVER
would need a command object with
"SELECT @NAME, etc.
and then params
is this the way to solve the problem?
Thanks,
Shane
Bob's mini mart?
If I use command objects will this no longer be an issue?
I guess that would mean no simple adhoc SQL statements right?
like SELECT name from WHATEVER
would need a command object with
"SELECT @NAME, etc.
and then params
is this the way to solve the problem?
Thanks,
Shane