Login | Register   
RSS Feed
Download our iPhone app
Browse DevX
Sign up for e-mail newsletters from DevX

By submitting your information, you agree that devx.com may send you DevX offers via email, phone and text message, as well as email offers about other products and services that DevX believes may be of interest to you. DevX will process your information in accordance with the Quinstreet Privacy Policy.

Tip of the Day
Language: Enterprise
Expertise: All
Aug 11, 2000



Application Security Testing: An Integral Part of DevOps

Fix Single Quotes in a SQL Statement

The following will replace all single quotes in a SQL statement [CHR(39)] with an apostrophe [CHR(180)]. This is useful if you are trying to add names to a database as parameter values or using inline SQL.

The SQL statement Insert Into tablename(fldName) Values (SomeValue) will fail for values like O'Tool. If you use the Replace command Replace("O'Tool",Chr(34),Chr(180)), the SQL statement will succeed with the new value of O.

Steve Turquette
Comment and Contribute






(Maximum characters: 1200). You have 1200 characters left.



Thanks for your registration, follow us on our social networks to keep up-to-date