http://blog.csdn.net/u013165504/article/details/52008534
sql注入
String sql = "select * from users where name='rhp' or 1=1 -- and password = '1234567'";
http://blog.csdn.net/u013165504/article/details/52008534
sql注入
String sql = "select * from users where name='rhp' or 1=1 -- and password = '1234567'";