package com.shove.util;
import org.apache.commons.lang3.StringUtils;
public class SqlInfusion {
public static String FilteSqlInfusion(String input) {
if ((input == null) || (input.trim() == "")) {
return "";
}
if (!StringUtils.isNumeric(input)) {
return input.replace("'", "’").replace("update", "update").replace(
"drop", "drop").replace("delete", "delete").replace("exec",
"exec").replace("create", "create").replace("execute",
"execute").replace("where", "where").replace("truncate",
"truncate").replace("insert", "insert");
} else {
return input;
}
}
}