SQLCommand c = new SQLCommand(connection); c.CommandType = CommandType.Text; c.CommandText = "SELECT * FROM users WHERE name=\'" + textbox1.text + "\'"; adapter.Fill(dataset1,"users");
SELECT * FROM [users] WHERE [name]=@username
var
This content, along with any associated source code and files, is licensed under The Code Project Open License (CPOL)