Facebook
From M, 2 Weeks ago, written in PHP.
Embed
Download Paste or View Raw
Hits: 123
  1. <?php
  2.  
  3. $mysqli = new mysqli('127.0.0.1', 'uuu', 'ppp', 'ddd');
  4.  
  5. $john = 'John';
  6.  
  7. $stmt = $mysqli->prepare('select \'john\' like ? escape \'\\\\\'');
  8. $stmt->bind_param('s', $john);
  9. $stmt->execute();
  10. var_dump($stmt->get_result()->fetch_row());
  11.  
  12. $stmt = $mysqli->prepare('select ?');
  13. $stmt->bind_param('s', $john);
  14. $stmt->execute();
  15. var_dump($stmt->get_result()->fetch_row());
  16.  
  17. $stmt = $mysqli->prepare('select \'john\' like (select ?) escape \'\\\\\'');
  18. $stmt->bind_param('s', $john);
  19. $stmt->execute();
  20. var_dump($stmt->get_result()->fetch_row());