Christian Haul [mailto:[EMAIL PROTECTED]]
Sent: Friday, December 06, 2002 4:28 PM
To: [EMAIL PROTECTED]
Subject: Re: Request parameters for SQL arguments
On 06.Dec.2002 -- 04:13 PM, [EMAIL PROTECTED] wrote:
> I use ESQL, the beginning of my page is like this : type="xsp"?>
>
&g
On 06.Dec.2002 -- 04:13 PM, [EMAIL PROTECTED] wrote:
> I use ESQL, the beginning of my page is like this :
>
>
>
> http://apache.org/xsp";
>xmlns:esql="http://apache.org/cocoon/SQL/v2";>
>
>
>
> personnel
>
>
please send mor code!
I will have a look at home
-Ursprüngliche Nachricht-
Von: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Gesendet: Freitag, 6. Dezember 2002 16:14
An: [EMAIL PROTECTED]
Betreff: RE: Request parameters for SQL arguments
I use ESQL, the beginning of my page is like
IL PROTECTED]]
Sent: Friday, December 06, 2002 4:12 PM
To: [EMAIL PROTECTED]
Subject: AW: Request parameters for SQL arguments
Is there a reason u don't use esql?
Or do you use esql?
http://enpdata.csit.fsu.edu/cocoon/documents/esql
-Ursprüngliche Nachricht-
Von: [EMAIL PR
thing in my pipeline?
thanks
-Original Message-
From: Scherler, Thorsten [mailto:[EMAIL PROTECTED]]
Sent: Friday, December 06, 2002 3:47 PM
To: [EMAIL PROTECTED]
Subject: AW: Request parameters for SQL arguments
Sorry, that
in my pipeline?
thanks
-Original Message-
From: Scherler, Thorsten [mailto:[EMAIL PROTECTED]]
Sent: Friday, December 06, 2002 3:47 PM
To: [EMAIL PROTECTED]
Subject: AW: Request parameters for SQL arguments
Sorry, that is much better
On 06.Dec.2002 -- 03:47 PM, Scherler, Thorsten wrote:
> Sorry, that is much better (use ):
>
> select * From AllTask Where wfID=name="myID"/>
Please imagine what happens if myID evaluates to "; update AllTasks set done = 1; --"
IOW you should use around it to have esql use a PreparedStatement.
Sorry, that is much better (use ):
select * From AllTask Where wfID=
-Ursprüngliche Nachricht-
Von: Scherler, Thorsten
Gesendet: Freitag, 6. Dezember 2002 15:44
An: [EMAIL PROTECTED]
Betreff: AW: Request parameters for SQL arguments
select * From AllTask Where wfID=
call it like
select * From AllTask Where wfID=
call it like: ../view-workflow?myID=2
-Ursprüngliche Nachricht-
Von: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Gesendet: Freitag, 6. Dezember 2002 15:41
An: [EMAIL PROTECTED]
Betreff: XSP: Request parameters for SQL arguments
I try to have a
I try to have a variable for my sql query :
select * From AllTask Where wfID=
That variable (wfID=*) is in my url, that means the page is loaded with
the adress:
.../view-workflow?myID=2 or .../view-workflow?myID=5
How can I get the variable 2 or 5 and put it in my SQL query? I use a
xsp page.
10 matches
Mail list logo