Removed hardcoded webgoat path for URLs
git-svn-id: http://webgoat.googlecode.com/svn/trunk@367 4033779f-a91e-0410-96ef-6bf7bf53c507
This commit is contained in:
@ -9,8 +9,8 @@ xmlns="http://www.w3.org/TR/REC-html40">
|
||||
<meta name=ProgId content=Word.Document>
|
||||
<meta name=Generator content="Microsoft Word 12">
|
||||
<meta name=Originator content="Microsoft Word 12">
|
||||
<link rel=File-List href="/WebGoat/lesson_solutions/HttpOnly_files/filelist.xml">
|
||||
<link rel=Edit-Time-Data href="/WebGoat/lesson_solutions/HttpOnly_files/editdata.mso">
|
||||
<link rel=File-List href="lesson_solutions/HttpOnly_files/filelist.xml">
|
||||
<link rel=Edit-Time-Data href="lesson_solutions/HttpOnly_files/editdata.mso">
|
||||
<!--[if !mso]>
|
||||
<style>
|
||||
v\:* {behavior:url(#default#VML);}
|
||||
@ -36,8 +36,8 @@ w\:* {behavior:url(#default#VML);}
|
||||
<o:Version>12.00</o:Version>
|
||||
</o:DocumentProperties>
|
||||
</xml><![endif]-->
|
||||
<link rel=themeData href="/WebGoat/lesson_solutions/HttpOnly_files/themedata.thmx">
|
||||
<link rel=colorSchemeMapping href="/WebGoat/lesson_solutions/HttpOnly_files/colorschememapping.xml">
|
||||
<link rel=themeData href="lesson_solutions/HttpOnly_files/themedata.thmx">
|
||||
<link rel=colorSchemeMapping href="lesson_solutions/HttpOnly_files/colorschememapping.xml">
|
||||
<!--[if gte mso 9]><xml>
|
||||
<w:WordDocument>
|
||||
<w:Zoom>90</w:Zoom>
|
||||
@ -693,9 +693,9 @@ style='font-family:"Arial","sans-serif";mso-no-proof:yes'><!--[if gte vml 1]><v:
|
||||
<o:lock v:ext="edit" aspectratio="t"/>
|
||||
</v:shapetype><v:shape id="Picture_x0020_115" o:spid="_x0000_i1032" type="#_x0000_t75"
|
||||
style='width:480pt;height:277.5pt;visibility:visible;mso-wrap-style:square'>
|
||||
<v:imagedata src="/WebGoat/lesson_solutions/HttpOnly_files/image001.png" o:title=""/>
|
||||
<v:imagedata src="lesson_solutions/HttpOnly_files/image001.png" o:title=""/>
|
||||
</v:shape><![endif]--><![if !vml]><img width=640 height=370
|
||||
src="/WebGoat/lesson_solutions/HttpOnly_files/image015.jpg" v:shapes="Picture_x0020_115"><![endif]></span></p>
|
||||
src="lesson_solutions/HttpOnly_files/image015.jpg" v:shapes="Picture_x0020_115"><![endif]></span></p>
|
||||
|
||||
<p class=MsoCaption style='text-align:justify'>Figure <!--[if supportFields]><span
|
||||
style='mso-element:field-begin'></span><span
|
||||
@ -722,9 +722,9 @@ normal'><o:p> </o:p></b></p>
|
||||
style='mso-bidi-font-weight:normal'><span style='mso-no-proof:yes'><!--[if gte vml 1]><v:shape
|
||||
id="Picture_x0020_117" o:spid="_x0000_i1031" type="#_x0000_t75" style='width:427.5pt;
|
||||
height:94.5pt;visibility:visible;mso-wrap-style:square'>
|
||||
<v:imagedata src="/WebGoat/lesson_solutions/HttpOnly_files/image003.png" o:title=""/>
|
||||
<v:imagedata src="lesson_solutions/HttpOnly_files/image003.png" o:title=""/>
|
||||
</v:shape><![endif]--><![if !vml]><img width=570 height=126
|
||||
src="/WebGoat/lesson_solutions/HttpOnly_files/image016.jpg" v:shapes="Picture_x0020_117"><![endif]></span></b></p>
|
||||
src="lesson_solutions/HttpOnly_files/image016.jpg" v:shapes="Picture_x0020_117"><![endif]></span></b></p>
|
||||
|
||||
<p class=MsoCaption style='text-align:justify'>Figure <!--[if supportFields]><span
|
||||
style='mso-element:field-begin'></span><span
|
||||
@ -745,9 +745,9 @@ WebScarab.<o:p></o:p></span></p>
|
||||
style='font-family:"Arial","sans-serif";mso-no-proof:yes'><!--[if gte vml 1]><v:shape
|
||||
id="Picture_x0020_118" o:spid="_x0000_i1030" type="#_x0000_t75" style='width:481.5pt;
|
||||
height:344.25pt;visibility:visible;mso-wrap-style:square'>
|
||||
<v:imagedata src="/WebGoat/lesson_solutions/HttpOnly_files/image005.png" o:title=""/>
|
||||
<v:imagedata src="lesson_solutions/HttpOnly_files/image005.png" o:title=""/>
|
||||
</v:shape><![endif]--><![if !vml]><img width=642 height=459
|
||||
src="/WebGoat/lesson_solutions/HttpOnly_files/image017.jpg" v:shapes="Picture_x0020_118"><![endif]></span></p>
|
||||
src="lesson_solutions/HttpOnly_files/image017.jpg" v:shapes="Picture_x0020_118"><![endif]></span></p>
|
||||
|
||||
<p class=MsoCaption style='text-align:justify'>Figure <!--[if supportFields]><span
|
||||
style='mso-element:field-begin'></span><span style='mso-spacerun:yes'><3E></span>SEQ
|
||||
@ -761,9 +761,9 @@ field-end'></span><![endif]--> HTTP Request</p>
|
||||
style='mso-no-proof:yes'><!--[if gte vml 1]><v:shape id="Picture_x0020_119"
|
||||
o:spid="_x0000_i1029" type="#_x0000_t75" style='width:481.5pt;height:344.25pt;
|
||||
visibility:visible;mso-wrap-style:square'>
|
||||
<v:imagedata src="/WebGoat/lesson_solutions/HttpOnly_files/image007.png" o:title=""/>
|
||||
<v:imagedata src="lesson_solutions/HttpOnly_files/image007.png" o:title=""/>
|
||||
</v:shape><![endif]--><![if !vml]><img width=642 height=459
|
||||
src="/WebGoat/lesson_solutions/HttpOnly_files/image018.jpg" v:shapes="Picture_x0020_119"><![endif]></span></p>
|
||||
src="lesson_solutions/HttpOnly_files/image018.jpg" v:shapes="Picture_x0020_119"><![endif]></span></p>
|
||||
|
||||
<p class=MsoCaption style='text-align:justify'>Figure <!--[if supportFields]><span
|
||||
style='mso-element:field-begin'></span><span
|
||||
@ -783,9 +783,9 @@ on "Read cookie". You will see the JSESSIONID which is not using HTTPOnly.<o:p><
|
||||
style='mso-no-proof:yes'><!--[if gte vml 1]><v:shape id="Picture_x0020_120"
|
||||
o:spid="_x0000_i1028" type="#_x0000_t75" style='width:254.25pt;height:94.5pt;
|
||||
visibility:visible;mso-wrap-style:square'>
|
||||
<v:imagedata src="/WebGoat/lesson_solutions/HttpOnly_files/image009.png" o:title=""/>
|
||||
<v:imagedata src="lesson_solutions/HttpOnly_files/image009.png" o:title=""/>
|
||||
</v:shape><![endif]--><![if !vml]><img width=339 height=126
|
||||
src="/WebGoat/lesson_solutions/HttpOnly_files/image019.jpg" v:shapes="Picture_x0020_120"><![endif]></span></p>
|
||||
src="lesson_solutions/HttpOnly_files/image019.jpg" v:shapes="Picture_x0020_120"><![endif]></span></p>
|
||||
|
||||
<p class=MsoCaption style='text-align:justify'>Figure <!--[if supportFields]><span
|
||||
style='mso-element:field-begin'></span><span
|
||||
@ -799,9 +799,9 @@ style='mso-element:field-end'></span><![endif]--> Only JSESSIONID</p>
|
||||
style='mso-no-proof:yes'><!--[if gte vml 1]><v:shape id="Picture_x0020_116"
|
||||
o:spid="_x0000_i1027" type="#_x0000_t75" style='width:480pt;height:277.5pt;
|
||||
visibility:visible;mso-wrap-style:square'>
|
||||
<v:imagedata src="/WebGoat/lesson_solutions/HttpOnly_files/image011.png" o:title=""/>
|
||||
<v:imagedata src="lesson_solutions/HttpOnly_files/image011.png" o:title=""/>
|
||||
</v:shape><![endif]--><![if !vml]><img width=640 height=370
|
||||
src="/WebGoat/lesson_solutions/HttpOnly_files/image020.jpg" v:shapes="Picture_x0020_116"><![endif]></span></p>
|
||||
src="lesson_solutions/HttpOnly_files/image020.jpg" v:shapes="Picture_x0020_116"><![endif]></span></p>
|
||||
|
||||
<p class=MsoCaption style='text-align:justify'>Figure <!--[if supportFields]><span
|
||||
style='mso-element:field-begin'></span><span style='mso-spacerun:yes'><3E></span>SEQ
|
||||
@ -820,9 +820,9 @@ on
|
||||
style='font-family:"Arial","sans-serif";mso-no-proof:yes'><!--[if gte vml 1]><v:shape
|
||||
id="Picture_x0020_121" o:spid="_x0000_i1026" type="#_x0000_t75" style='width:254.25pt;
|
||||
height:94.5pt;visibility:visible;mso-wrap-style:square'>
|
||||
<v:imagedata src="/WebGoat/lesson_solutions/HttpOnly_files/image009.png" o:title=""/>
|
||||
<v:imagedata src="lesson_solutions/HttpOnly_files/image009.png" o:title=""/>
|
||||
</v:shape><![endif]--><![if !vml]><img width=339 height=126
|
||||
src="/WebGoat/lesson_solutions/HttpOnly_files/image019.jpg" v:shapes="Picture_x0020_121"><![endif]></span></p>
|
||||
src="lesson_solutions/HttpOnly_files/image019.jpg" v:shapes="Picture_x0020_121"><![endif]></span></p>
|
||||
|
||||
<p class=MsoCaption style='text-align:justify'>Figure <!--[if supportFields]><span
|
||||
style='mso-element:field-begin'></span><span
|
||||
@ -836,9 +836,9 @@ style='mso-element:field-end'></span><![endif]--> JSESSIONID cookie</p>
|
||||
style='mso-no-proof:yes'><!--[if gte vml 1]><v:shape id="Picture_x0020_122"
|
||||
o:spid="_x0000_i1025" type="#_x0000_t75" style='width:480pt;height:277.5pt;
|
||||
visibility:visible;mso-wrap-style:square'>
|
||||
<v:imagedata src="/WebGoat/lesson_solutions/HttpOnly_files/image013.png" o:title=""/>
|
||||
<v:imagedata src="lesson_solutions/HttpOnly_files/image013.png" o:title=""/>
|
||||
</v:shape><![endif]--><![if !vml]><img width=640 height=370
|
||||
src="/WebGoat/lesson_solutions/HttpOnly_files/image021.jpg" v:shapes="Picture_x0020_122"><![endif]></span></p>
|
||||
src="lesson_solutions/HttpOnly_files/image021.jpg" v:shapes="Picture_x0020_122"><![endif]></span></p>
|
||||
|
||||
<p class=MsoCaption style='text-align:justify'>Figure <!--[if supportFields]><span
|
||||
style='mso-element:field-begin'></span><span
|
||||
|
Reference in New Issue
Block a user