git-svn-id: http://webgoat.googlecode.com/svn/trunk@15 4033779f-a91e-0410-96ef-6bf7bf53c507
		
			
				
	
	
		
			52 lines
		
	
	
		
			1.6 KiB
		
	
	
	
		
			INI
		
	
	
	
	
	
			
		
		
	
	
			52 lines
		
	
	
		
			1.6 KiB
		
	
	
	
		
			INI
		
	
	
	
	
	
| category.General.ranking=11
 | |
| lesson.HttpBasics.ranking=10
 | |
| lesson.ThreadSafetyProblem.ranking=20
 | |
| 
 | |
| category.Broken\ Authentication\ and\ Session\ Management.ranking=21
 | |
| lesson.BasicAuthentication.ranking=10
 | |
| lesson.WeakAuthenticationCookie.ranking=20
 | |
| 
 | |
| category.Broken\ Access\ Control.ranking=31
 | |
| lesson.AccessControlMatrix.ranking=10
 | |
| lesson.PathBasedAccessControl.ranking=20
 | |
| lesson.RoleBasedAccessControl.hidden=true
 | |
| 
 | |
| category.Cross-Site\ Scripting\ (XSS).ranking=41
 | |
| lesson.StoredXss.ranking=10
 | |
| lesson.ReflectedXSS.ranking=20
 | |
| lesson.CrossSiteScripting.hidden=true
 | |
| 
 | |
| category.Unvalidated\ Parameters.ranking=51
 | |
| lesson.HiddenFieldTampering.ranking=10
 | |
| lesson.JavaScriptValidation.ranking=20
 | |
| lesson.UncheckedEmail.ranking=30
 | |
| 
 | |
| category.Insecure\ Storage.ranking=61
 | |
| lesson.Encoding.ranking=10
 | |
| 
 | |
| category.Injection\ Flaws.ranking=71
 | |
| lesson.SqlNumericInjection.ranking=10
 | |
| lesson.SqlStringInjection.ranking=20
 | |
| lesson.CommandInjection.ranking=30
 | |
| lesson.SQLInjection.hidden=true
 | |
| 
 | |
| category.Improper\ Error\ Handling.ranking=81
 | |
| lesson.FailOpenAuthentication.ranking=10
 | |
| 
 | |
| category.Code\ Quality.ranking=91
 | |
| lesson.HtmlClues.ranking=10
 | |
| 
 | |
| category.Web\ Services.category.ranking=101
 | |
| lesson.SoapRequest.ranking=10
 | |
| lesson.WSDLScanning.ranking=20
 | |
| lesson.WsSqlInjection.ranking=30
 | |
| 
 | |
| lesson.WeakSessionID.hidden=true
 | |
| lesson.BufferOverflow.hidden=true
 | |
| lesson.BlindSqlInjection.hidden=true
 | |
| lesson.DOS_Login.hidden=true
 | |
| lesson.ForcedBrowsing.hidden=true
 | |
| lesson.ForgotPassword.hidden=true
 | |
| lesson.ParameterInjection.hidden=true
 | |
| lesson.RemoteAdminFlaw.hidden=true
 | |
| lesson.ChallengeScreen.hidden=true |