public void UpdateStock(DTO_Class.StockDTO stockDTO) { sqlConnection.Open(); /* string sqlQuery = "Update Owner SET OwnerID='" + ownerDTO.OwnerID + "' where OwnerID='" + ownerDTO.OwnerID + "'"; * * sqlCommand = new SqlCommand(sqlQuery, sqlConnection); * sqlCommand.ExecuteNonQuery(); * */ string sqlQuery1 = "Update Stock SET MedicineName='" + stockDTO.MedicineNAME + "' where MedicineID='" + stockDTO.MedicineID + "'"; sqlCommand1 = new SqlCommand(sqlQuery1, sqlConnection); sqlCommand1.ExecuteNonQuery(); string sqlQuery2 = "Update Stock SET Price='" + stockDTO.PRICE + "' where MedicineID='" + stockDTO.MedicineID + "'"; sqlCommand2 = new SqlCommand(sqlQuery2, sqlConnection); sqlCommand2.ExecuteNonQuery(); string sqlQuery3 = "Update Stock SET Quantity='" + stockDTO.QUANTITY + "' where MedicineID='" + stockDTO.MedicineID + "'"; sqlCommand3 = new SqlCommand(sqlQuery3, sqlConnection); sqlCommand3.ExecuteNonQuery(); string sqlQuery4 = "Update Stock SET MedicineType='" + stockDTO.MedicineTYPE + "' where MedicineID='" + stockDTO.MedicineID + "'"; sqlCommand4 = new SqlCommand(sqlQuery4, sqlConnection); sqlCommand4.ExecuteNonQuery(); sqlConnection.Close(); }
public void CreateStock(DTO_Class.StockDTO stockDTO) { try { sqlConnection.Open(); string sqlQuery = " insert into Stock values('" + stockDTO.MedicineID + "','" + stockDTO.MedicineNAME + "','" + stockDTO.PRICE + "','" + stockDTO.QUANTITY + "','" + stockDTO.MedicineTYPE + "')"; sqlCommand = new SqlCommand(sqlQuery, sqlConnection); sqlCommand.ExecuteNonQuery(); sqlConnection.Close(); } catch (Exception ex) { MessageBox.Show("Invalid Input!", "alert", MessageBoxButtons.OK, MessageBoxIcon.Error); } }