Sql - field as a parameter

Hello friends,

Is it correct a correct practice to pass the field for an sql query as a parameter.

Example:

SELECT *

FROM view_student

WHERE 

year = $P!{year}  AND $P!{filter_field} = $P!{filter_value}

 

Thanks for your help

heavensinformatica@gmail.com's picture
Joined: Aug 12 2019 - 4:38pm
Last seen: 2 months 2 weeks ago

0 Answers:

No answers yet
Feedback
randomness