<%! public void jspInit() { try { Class.forName("sun.jdbc.odbc.JdbcOdbcDriver"); System.out.println("JDBC driver loaded"); } catch (ClassNotFoundException e) { System.out.println(e.toString()); } } String encodeHtmlTag(String tag) { if (tag==null) return null; int length = tag.length(); StringBuffer encodedTag = new StringBuffer(2 * length); for (int i=0; i') encodedTag.append(">"); else if (c=='&') encodedTag.append("&"); else if (c=='"') encodedTag.append("""); //when trying to output text as tag's value as in // values="???". else if (c==' ') encodedTag.append(" "); else encodedTag.append(c); } return encodedTag.toString(); } %> <%@ page session="false" %> <%@ page import="java.sql.*" %> Display All Users

Displaying All Users



<% String sql = "SELECT FirstName, LastName, UserName, Password" + " FROM Users"; try { Connection con = DriverManager.getConnection("jdbc:odbc:JavaWeb"); Statement s = con.createStatement(); ResultSet rs = s.executeQuery(sql); while (rs.next()) { %> <% } rs.close(); s.close(); con.close(); } catch (SQLException e) { } catch (Exception e) { } %>
First Name Last Name User Name Password
<% out.print(encodeHtmlTag(rs.getString(1))); %> <% out.print(encodeHtmlTag(rs.getString(2))); %> <% out.print(encodeHtmlTag(rs.getString(3))); %> <% out.print(encodeHtmlTag(rs.getString(4))); %>