f58d8ee066 
					 
					
						
						
							
							Typo  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@320  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-13 11:48:51 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						4f712c1d5c 
					 
					
						
						
							
							Tomcat Lessons Plan added  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@319  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-13 09:26:42 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						265475391e 
					 
					
						
						
							
							Tomcat Setup instructions added  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@318  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-13 09:26:15 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						dc9daba1c0 
					 
					
						
						
							
							SessionFixation completed  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@317  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-12 08:28:54 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						acaccaa9b9 
					 
					
						
						
							
							Minor fixes  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@316  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-12 08:20:46 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						789d72e589 
					 
					
						
						
							
							Session Fixation bugfix  
						
						... 
						
						
						
						MultiLevelLogin2 bugfix
git-svn-id: http://webgoat.googlecode.com/svn/trunk@315  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-10 08:52:11 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						3e2b49b229 
					 
					
						
						
							
							Solution for Session Fixation added  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@314  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-10 08:50:36 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						e3bc01dc52 
					 
					
						
						
							
							Session Fixation Lessons Plan  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@313  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 17:14:24 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						b638314dd1 
					 
					
						
						
							
							Look changed  
						
						... 
						
						
						
						images altered
git-svn-id: http://webgoat.googlecode.com/svn/trunk@312  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 14:15:18 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						7a0f43ca56 
					 
					
						
						
							
							Session Fixation  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@311  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 14:09:31 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						361e142442 
					 
					
						
						
							
							MultiLevelLogin2 database  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@310  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 12:05:28 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						fa0c7eff8a 
					 
					
						
						
							
							MultiLevelLogin1 database changes  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@309  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 12:02:15 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						aa23f8169b 
					 
					
						
						
							
							Hint  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@308  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 11:54:02 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						6119e33ccc 
					 
					
						
						
							
							Hint  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@307  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 11:52:03 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						c4092d2669 
					 
					
						
						
							
							Session Fixation  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@306  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 11:51:04 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						ee6d8ad2d5 
					 
					
						
						
							
							MultiLevel Login1 fix  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@305  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-09 11:49:56 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						db7994052f 
					 
					
						
						
							
							Hints are declared now  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@304  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-08 11:40:36 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						eabdc53709 
					 
					
						
						
							
							MultiLevelLogin 2 data stored now in session  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@303  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-08 07:51:47 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						aec76a30e4 
					 
					
						
						
							
							MultiLevel Login 1 user name and so on now saved in the session  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@302  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-08 07:25:14 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						82e32acb77 
					 
					
						
						
							
							* Hints added  
						
						... 
						
						
						
						* Solutions added
* Bugfixes
* Introduction added (including how to start with webgoat and useful tools)
* New lesson: Password strength
* New lessons: Multi Level Login
* Not yet working new lesson: Session fixation (inital release)
git-svn-id: http://webgoat.googlecode.com/svn/trunk@301  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-07 14:28:38 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						ce703bc67d 
					 
					
						
						
							
							Fix for Issue 5.  Removed single ticks on hint for order by clause.  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@295  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-04 12:54:36 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						99ec50f096 
					 
					
						
						
							
							Issue 6 Fix - Change netstat protocols to lower case to support unix.  Some windows protocols will not work on unix.  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@294  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-04-04 12:33:17 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						ed10cb41b3 
					 
					
						
						
							
							Minor FAQ change  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@288  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-02-27 00:58:37 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						841c995be7 
					 
					
						
						
							
							Reformat of Java source.  Added JavaStyle format definitions.  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@287  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-02-27 00:29:19 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						a2bc152f80 
					 
					
						
						
							
							Added webgoat.sh to all builds  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@277  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-02-06 13:33:36 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						80c1b16f3e 
					 
					
						
						
							
							Changed ExecuteQuery to executeUpdate to remove empty result set error which stopped the lesson from working for HSQLDB  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@276  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-02-05 21:24:20 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						5e8f7c7096 
					 
					
						
						
							
							Obsolete file  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@275  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-02-05 21:19:09 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						dbfabf44b3 
					 
					
						
						
							
							fixing typo / bug  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@274  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-14 14:02:21 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						f7a19f534c 
					 
					
						
						
							
							Miscellaneous bug fixes  
						
						... 
						
						
						
						divide by zero, inaccurate discount and totals, reflection of user input
git-svn-id: http://webgoat.googlecode.com/svn/trunk@273  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-14 14:02:11 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						72c18c5426 
					 
					
						
						
							
							Removed space from " webgoat" directory name  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@272  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-12 17:42:01 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						280b46029b 
					 
					
						
						
							
							Make stage completion messages appear in a logical order  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@270  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 20:43:48 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						45d7b763d4 
					 
					
						
						
							
							Remove an unnecessary printStackTrace()  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@269  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 20:21:10 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						cbb5358485 
					 
					
						
						
							
							Changes for OWASP Developer build for 5.1  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@268  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 17:44:49 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						b7156e12da 
					 
					
						
						
							
							Added hint about extra "." in  http://localhost./  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@267  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 17:39:07 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						36ca8e5598 
					 
					
						
						
							
							Challenge jsp is supposed to be a clone of the webgoat.jsp  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@266  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 13:48:42 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						ef79edca0a 
					 
					
						
						
							
							Changes for OWASP Standard build for 5.1  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@265  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 13:43:46 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						aa62ffbb71 
					 
					
						
						
							
							No longer delivering standalone war  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@264  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 13:36:06 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						6834cac8fa 
					 
					
						
						
							
							Commented out console debugging output  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@263  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 12:57:39 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						8e83229be8 
					 
					
						
						
							
							Show solution button graphics  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@262  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 12:52:37 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						97a1291648 
					 
					
						
						
							
							Java mail APIs for unchecked email lesson  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@261  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 12:50:27 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						d8f7ce2a4f 
					 
					
						
						
							
							Add a link to the WSDL file in the 3rd stage of SOAPRequest  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@260  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:52:02 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						1b6789304c 
					 
					
						
						
							
							Fix a hint to refer to the right field  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@259  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:51:43 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						8d85b2da23 
					 
					
						
						
							
							Change UpdateProfile to always use a PreparedStatement, to avoid SQL Injection attacks  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@258  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:49:12 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						f78d70a8e7 
					 
					
						
						
							
							Only mark Stage 1 complete when someone else views the exploit  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@257  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:48:30 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						dd6a893f28 
					 
					
						
						
							
							minor changes  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@256  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:48:01 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						489bff08f8 
					 
					
						
						
							
							cleaning up a bit  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@255  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:47:33 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						457a868113 
					 
					
						
						
							
							adding XHR lesson  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@254  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:46:57 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						4066296d30 
					 
					
						
						
							
							changing name of lesson  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@253  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:46:18 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						b3591580a9 
					 
					
						
						
							
							clarifying instructions and importing a .js  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@252  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:45:44 +00:00 
						 
				 
			
				
					
						
					 
					
						
						
							
						
						dc3ad6453d 
					 
					
						
						
							
							adding backup files  
						
						... 
						
						
						
						git-svn-id: http://webgoat.googlecode.com/svn/trunk@251  4033779f-a91e-0410-96ef-6bf7bf53c507 
						
						
					 
					
						2008-01-10 10:45:23 +00:00