Click here to Skip to main content
15,900,108 members
Home / Discussions / C#
   

C#

 
AnswerRe: C# and Windows Visual Style Pin
\laddie23-Aug-07 22:02
\laddie23-Aug-07 22:02 
GeneralRe: C# and Windows Visual Style Pin
Thomas Stockwell25-Aug-07 2:40
professionalThomas Stockwell25-Aug-07 2:40 
GeneralSuggestion for Administrators Pin
Rocky#23-Aug-07 21:33
Rocky#23-Aug-07 21:33 
GeneralRe: Suggestion for Administrators Pin
Martin#23-Aug-07 21:40
Martin#23-Aug-07 21:40 
GeneralRe: Suggestion for Administrators Pin
Vasudevan Deepak Kumar23-Aug-07 22:03
Vasudevan Deepak Kumar23-Aug-07 22:03 
GeneralRe: Suggestion for Administrators Pin
J4amieC23-Aug-07 22:15
J4amieC23-Aug-07 22:15 
QuestionSQL or query Pin
falles0123-Aug-07 21:18
falles0123-Aug-07 21:18 
AnswerRe: SQL or query Pin
Martin#23-Aug-07 21:28
Martin#23-Aug-07 21:28 
Hello,

falles01 wrote:
hey told me to not worry about sql innjection attacks at the moment because thats not what they are judging me on.

Ok, but you really should read what Colin suggested 7hr ago:
http://www.codeproject.com/script/comments/forums.asp?msg=2196907&forumid=1649#xx2196907xx[^]

There you would find this nice example (uses 'AND'):
// Get the valid user name and friendly name of the favourite
int uid = this.GetUserID();
string friendlyName = this.GetFriendlyName();
// Create the SQL statement to retrieve the search criteria
string sql = string.Format("SELECT Criteria FROM Favourites "+
"WHERE UserID={0} AND FriendlyName='{1}'",
uid, friendlyName);
SqlCommand cmd = new SqlCommand(sql, this.Connection);
string criteria = cmd.ExecuteScalar();
// Do the search
sql = string.Format("SELECT * FROM Products WHERE ProductName = '{0}'",
criteria);
SqlDataAdapter da = new SqlDataAdapter(sql, this.Connection);
da.Fill(this.productDataSet);



All the best,

Martin

GeneralRe: SQL or query Pin
falles0123-Aug-07 21:32
falles0123-Aug-07 21:32 
GeneralRe: SQL or query Pin
falles0123-Aug-07 21:35
falles0123-Aug-07 21:35 
GeneralRe: SQL or query Pin
Martin#23-Aug-07 21:38
Martin#23-Aug-07 21:38 
AnswerRe: SQL or query Pin
Rocky#23-Aug-07 21:29
Rocky#23-Aug-07 21:29 
AnswerRe: SQL or query Pin
Christian Graus23-Aug-07 22:13
protectorChristian Graus23-Aug-07 22:13 
GeneralRe: SQL or query Pin
falles0126-Aug-07 13:24
falles0126-Aug-07 13:24 
GeneralRe: SQL or query Pin
falles0126-Aug-07 16:20
falles0126-Aug-07 16:20 
QuestionWriting to an ole object field, datatables and C# Pin
anybudy23-Aug-07 20:56
anybudy23-Aug-07 20:56 
QuestionMoving form across splitter pane [modified] Pin
Maddie from Dartford23-Aug-07 20:43
Maddie from Dartford23-Aug-07 20:43 
AnswerRe: Moving form across splitter pane Pin
Martin#23-Aug-07 21:17
Martin#23-Aug-07 21:17 
GeneralRe: Moving form across splitter pane Pin
Maddie from Dartford23-Aug-07 21:28
Maddie from Dartford23-Aug-07 21:28 
GeneralRe: Moving form across splitter pane [modified] Pin
Martin#23-Aug-07 21:33
Martin#23-Aug-07 21:33 
GeneralRe: Moving form across splitter pane Pin
Maddie from Dartford23-Aug-07 21:45
Maddie from Dartford23-Aug-07 21:45 
GeneralRe: Moving form across splitter pane Pin
Martin#23-Aug-07 21:51
Martin#23-Aug-07 21:51 
GeneralRe: Moving form across splitter pane Pin
Luc Pattyn24-Aug-07 0:00
sitebuilderLuc Pattyn24-Aug-07 0:00 
GeneralRe: Moving form across splitter pane Pin
Martin#24-Aug-07 0:01
Martin#24-Aug-07 0:01 
GeneralRe: Moving form across splitter pane Pin
Luc Pattyn24-Aug-07 0:16
sitebuilderLuc Pattyn24-Aug-07 0:16 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.