Collections:
PHP ODBC - Including Text Values in SQL Statements
PHP ODBC - How To Include Text Values in SQL Statements?
✍: Guest
Text values in SQL statements should be quoted with single quotes ('). If the text value contains a single quote ('), it should be protected by replacing it with two single quotes (''). In SQL language syntax, two single quotes represents one single quote in string literals.
The tutorial exercise below shows you two INSERT statements. The first one will fail, because it has an un-protected single quote. The second one will be ok, because a str_replace() is used to replace (') with (''):
<?php
$con = odbc_connect('FYI_SQL_SERVER','sa','FYIcenter');
$notes = "It's a search engine!";
$sql = "INSERT INTO fyi_links (id, url, notes) VALUES ("
. " 201, 'www.google.com', '".$notes."')";
if (!odbc_exec($con, $sql)) {
print("SQL statement failed with error:\n");
print(odbc_error($con).": ".odbc_errormsg($con)."\n");
} else {
print("1 rows inserted.\n");
}
$notes = "It's another search engine!";
$notes = str_replace("'", "''", $notes);
$sql = "INSERT INTO fyi_links (id, url, notes) VALUES ("
. " 202, 'www.yahoo.com', '".$notes."')";
if (!odbc_exec($con, $sql)) {
print("SQL statement failed with error:\n");
print(odbc_error($con).": ".odbc_errormsg($con)."\n");
} else {
print("1 rows inserted.\n");
}
odbc_close($con);
?>
If you run this script, you will get something like this:
SQL statement failed with error: 37000: [Microsoft][ODBC SQL Server Driver][SQL Server] Incorrect syntax near 's'. 1 rows inserted.
⇒ PHP ODBC - Including Date and Time Values in SQL Statements
⇐ PHP ODBC - Deleting Existing Rows in a Table
⇑ SQL Server FAQs - PHP ODBC Functions - Managing Tables and Data Rows
2024-05-05, 2209🔥, 0💬
Popular Posts:
How To Get the Definition of a Stored Procedure Back in SQL Server Transact-SQL? If you want get the...
What Is a Parameter File in Oracle? A parameter file is a file that contains a list of initializatio...
How To Look at the Current SQL*Plus System Settings in Oracle? If you want to see the current values...
How To Create a Stored Program Unit in Oracle? If you want to create a stored program unit, you can ...
How to change the data type of an existing column with "ALTER TABLE" statements in SQL Server? Somet...