62,266
社区成员
发帖
与我相关
我的任务
分享string DataType = ConfigurationManager.ConnectionStrings["CarConnection"].ConnectionString;
string selectSQL = " Select * From Member Where UserName='" + UserName.Text + "' AND UserPwd='" + UserPwd.Text + "'";
SqlConnection Conn = new SqlConnection(DataType);
SqlCommand SelectCmd = new SqlCommand(selectSQL, Conn);
try
{
Conn.Open();
SqlDataReader DR = SelectCmd.ExecuteReader();
if (DR.Read() == false)
{
Response.Write("<script>alert(\"该用户还未注册!\");</script>");
return;
}
else if (DR["UserPwd"].ToString() != UserPwd.Text.Trim())
{
Response.Write("<script>alert(\"密码错误!\");</script>");
return;
}
else
{
Response.Redirect("Default.aspx");
}
}
catch(Exception err)
{
lblMessage.Text = err.Message;
}
finally
{
Conn.Close();
}
string selectSQL = " Select COUNT(*) From Member Where UserName='" + UserName.Text.Trim() + "' AND UserPwd='" + UserPwd.Text.Trim() + "'";
...
int result = (int)SelectCmd.ExecuteScalar();
if(result>1)
{
...
}
else
{
...
}
string selectSQL = " Select COUNT(*) From Member Where UserName='" + UserName.Text + "' AND UserPwd='" + UserPwd.Text + "'";
...
int result = (int)SelectCmd.ExecuteScalar();
if((int)result>1)
{
...
}
else
{
...
}