rogan.dawes 7af27f7d1b Make per-user in-memory databases actually work
Previously we would just get a connection to the same database, regardless
of the user specified in the connect string. Trying to create
HSQLDB users did not seem to work. Non-ADMIN users don't have
CREATE TABLE privileges, it seems, and I couldn't find docs that
describe how to GRANT CREATE TABLE privileges. Go figure.


git-svn-id: http://webgoat.googlecode.com/svn/trunk@192 4033779f-a91e-0410-96ef-6bf7bf53c507
2007-07-18 13:34:53 +00:00

96 lines
4.6 KiB
Plaintext

<%@ page contentType="text/html; charset=ISO-8859-1" language="java"
errorPage="" %>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1" />
<title>WebGoat V5</title>
<link rel="stylesheet" href="css/webgoat.css" type="text/css" />
</head>
<body>
<div id="wrap">
<div id="top"></div>
<div id="start">
<p>Thank you for using WebGoat!</p>
<p>This program is a demonstration of common web application flaws.
The exercises are intended to provide hands on experience with application
penetration testing techniques. The WebGoat project is lead by Bruce Mayhew. Please send all
comments to Bruce at <a href=mailto:WebGoat@g2-inc.com>WebGoat@G2-Inc.com</a>.</p>
<div id="team">
<table border="0" align="center" class="lessonText">
<tr>
<td width="50%"><div align="center"><a href="http://www.owasp.org"><img border="0" src="images/logos/owasp.jpg" alt="OWASP Foundation" longdesc="http://www.owasp.org" /></a></div></td>
<td width="50%"><div align="center"><a href="http://www.aspectsecurity.com"><img border="0" src="images/logos/aspect.jpg" alt="Aspect Security" longdesc="http://www.aspectsecurity.com" /></a></div></td>
</tr>
<tr>
<td width="50%"><div align="center"><span class="style1"><br />WebGoat Design Team </span></div></td>
<td width="50%"><div align="center"><span class="style1"><br />Lesson Contributers </span></div></td>
</tr>
<tr>
<td valign="top">
<div align="center" class="style2">Bruce Mayhew</div>
<div align="center" class="style2">Laurence Casey</div>
<div align="center" class="style2">David Anderson</div>
<div align="center" class="style2">Eric Sheridan</div>
<div align="center" class="style2">Rogan Dawes</div>
</td>
<td valign="top">
<div align="center" class="style2">Aspect Security</div>
<div align="center" class="style2">Sherif Koussa</div>
<div align="center" class="style2">Alex Smolen</div>
<div align="center" class="style2">Chuck Willis</div>
</td>
</tr>
<tr>
<td height="25" valign="bottom"><div align="center"><span class="style1">Special Thanks for V5</span></div></td>
<td height="25" valign="bottom"><div align="center"><span class="style1">Documentation Contributers</span></div></td>
</tr>
<tr>
<td><div align="center" class="style2">Sherif Koussa<br />
(http://www.macadamian.com)<br /> </div>
</td>
<td><div align="center" class="style2">Robert Sullivan<br />
(http://www.unitedhealthgroup.com/) </div>
</td>
</tr>
<tr>
<td><div align="center" class="style2">OWASP Autumn of Code<br />
(http://www.owasp.org/) </div></td>
<td><div align="center" class="style2">Sherif Koussa<br />(http://www.macadamian.com)<br /></div>
</td>
</tr>
<tr>
<td><div align="center" class="style2">To all who have sent comments</div></td>
</tr>
<tr>
<td><div align="center" class="style2">&nbsp;</div></td>
</tr>
<tr>
<td colspan = "2">
<div align="center" class="style2">
<form id="form" name="form" method="post" action="attack">
<input type="submit" name="start" value="Start WebGoat" />
</form>
</div>
</td>
</tr>
</table>
</div>
</div>
<div id="warning"> WARNING<br />
While running this program, your machine is extremely vulnerable to attack.
You should disconnect from the network while using this program.
<br/>
<br/>
This program is for educational purposes only.
Use of these techniques without permission could lead to
job termination, financial liability, and/or criminal penalties.
</div>
</div>
</body>
</html>