主程序:
package cn.itcast.jdbc;
import java.sql.Connection;
import java.sql.ResultSet;
import java.sql.SQLException;
import java.sql.Statement;
public class SQLInject {
public static void main(String[] args) throws SQLException {
read("19/8/2/15:03");
}
static void read(String time) throws SQLException {
Connection conn = null ;
Statement st = null ;
ResultSet rs = null ;
try {
//2.建立连接(建桥,拿着url去问各个驱动,“你能建这个桥吗?”,直到收到回复)
conn = JdbcUtils.getConnection();
//3.创建语句(建车)
st = conn.createStatement();
//4.执行语句 (运货)
rs = st.executeQuery("select id,name,birthday,time from user where time = '" + time + "'");
//5.处理结果 (卸货)
while(rs.next())
{
System.out.println(rs.getObject("id") + "\t" + rs.getObject("name") + "\t" + rs.getObject("birthday")