Python连接数据库查询时,需注意sql语句的语法
1、数据库表名参数化,用format
file = 'tables.csv' with open(file) as f: table_names = csv.reader(f) for table_name in table_names: print(table_name) sql = "SELECT * FROM {0}".format(table_name[0]) conn = pyodbc.connect(driver=driver, server=server, user=user, password=password, database=database) cur = conn.cursor() # 创建一个游标(cursor) cur.execute(sql)
2、列名参数化
with open(file_name) as f_obj: reader = csv.reader(f_obj) ID = 0 for line in reader: if reader.line_num == 1: continue print(line) ID += 1 cclient_Name = line[0] sex = line[1] hospital = line[2] deparment = line[3] specialist = line[4] dbespoke_Time = line[5] week_day = line[6] serve_Sort = line[7] insert_sql = "insert into %s(ID,%s)values('%s','%s','%s','%s','%s','%s','%s','%s','%s')" \ % (table_name, ",".join(header), int(ID), line[0], str(line[1]), str(line[2]), str(line[3]), str(line[4]), str(line[5]), str(line[6]), str(line[7])) # print(insert_sql)