From f5dfc0698d969e041c8ba64d1468ae1f264c33df Mon Sep 17 00:00:00 2001 From: esheri3 Date: Fri, 26 Jan 2007 19:06:42 +0000 Subject: [PATCH] change all instances of "trace" to "tracing" git-svn-id: http://webgoat.googlecode.com/svn/trunk@99 4033779f-a91e-0410-96ef-6bf7bf53c507 --- webgoat/main/project/WebContent/lesson_plans/TraceXSS.html | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ webgoat/main/project/WebContent/lesson_plans/TraceXSS.html b/ webgoat/main/project/WebContent/lesson_plans/TraceXSS.html index d22b03b1a..57931d602 100644 --- a/ webgoat/main/project/WebContent/lesson_plans/TraceXSS.html +++ b/ webgoat/main/project/WebContent/lesson_plans/TraceXSS.html @@ -1,9 +1,9 @@
-

Lesson Plan Title: How to Perform Cross Site Trace Attacks

+

Lesson Plan Title: How to Perform Cross Site Tracing Attacks

Concept / Topic To Teach:

It is always a good practice to scrub all input, especially those inputs that will later be used as parameters to OS commands, scripts, and database queries. It is particularly important for content that will be permanently stored somewhere in the application. Users should not be able to create message content that could cause another user to load an undesireable page or undesireable content when the user's message is retrieved.

General Goal(s):

-Tomcat is configured to support the HTTP TRACE command. Your goal is to perform a Cross Site Trace (XST) attack. +Tomcat is configured to support the HTTP TRACE command. Your goal is to perform a Cross Site Tracing (XST) attack. \ No newline at end of file