You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 'f'',0)%' OR LOWER(description) LIKE '%f8ebe5e9f4+e4ebff+samsung+sgh-x''/**/an' at line 1 SQL query : SELECT COUNT(DISTINCT p.productID) FROM SS_products p where categoryID>1 and enabled=1 and ( LOWER(name) LIKE '%f8ebe5e9f4+e4ebff+samsung+sgh-x''/**/and/**/dbms_pipe.receive_message(''f'',0)%' /* OR LOWER(product_code ) LIKE '%f8ebe5e9f4+e4ebff+samsung+sgh-x''/**/and/**/dbms_pipe.receive_message(''f'',0)%' OR LOWER(description) LIKE '%f8ebe5e9f4+e4ebff+samsung+sgh-x''/**/and/**/dbms_pipe.receive_message(''f'',0)%' OR LOWER(brief_description) LIKE '%f8ebe5e9f4+e4ebff+samsung+sgh-x''/**/and/**/dbms_pipe.receive_message(''f'',0)%' */)