Back to Zaproxy

OWASP ZAP wavsep results

python/scripts/wavsep/report-v1.4.0.1.html

2015-06-2524.9 KB
Original Source

OWASP ZAP wavsep results

Generated: 2012-07-13 12:41

Total Score

80%

Group Scores

GroupPassFailScoreChart
RXSS-Detection-Evaluation-COOKIE-Experimental010%
RXSS-Detection-Evaluation-GET320100%
RXSS-Detection-Evaluation-GET-Experimental040%
RXSS-Detection-Evaluation-POST320100%
RXSS-Detection-Evaluation-POST-Experimental040%
RXSS-FalsePositives-GET70100%
SInjection-Detection-Evaluation-GET-200Error18194%
SInjection-Detection-Evaluation-GET-200Error-Experimental10100%
SInjection-Detection-Evaluation-GET-200Identical3537%
SInjection-Detection-Evaluation-GET-200Valid12763%
SInjection-Detection-Evaluation-GET-500Error18194%
SInjection-Detection-Evaluation-POST-200Error18194%
SInjection-Detection-Evaluation-POST-200Error-Experimental10100%
SInjection-Detection-Evaluation-POST-200Identical3537%
SInjection-Detection-Evaluation-POST-200Valid11857%
SInjection-Detection-Evaluation-POST-500Error18194%
SInjection-FalsePositives-GET5550%

Detailed Results

PageResultPassFailOther
active : RXSS-Detection-Evaluation-COOKIE-Experimental : Case01FAIL&nbspInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case01PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case02PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case03PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case04PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case05PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case06PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case07PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case08PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case09PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case10PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case11PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case12PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case13PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case14PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case15PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case16PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case17PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case18PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case19PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case20PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case21PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case22PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case23PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case24PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case25PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case26PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case27PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case28PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case29PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case30PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case31PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET : Case32PASS&nbspXSSInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET-Experimental : Case01FAIL&nbspInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET-Experimental : Case02FAIL&nbspInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET-Experimental : Case03FAIL&nbspInfoUrl XFrame XContent
active : RXSS-Detection-Evaluation-GET-Experimental : Case04FAIL&nbspXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case01PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case02PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case03PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case04PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case05PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case06PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case07PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case08PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case09PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case10PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case11PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case12PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case13PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case14PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case15PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case16PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case17PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case18PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case19PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case20PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case21PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case22PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case23PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case24PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case25PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case26PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case27PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case28PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case29PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case30PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case31PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST : Case32PASS&nbspXSSXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST-Experimental : Case01FAIL&nbspXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST-Experimental : Case02FAIL&nbspXFrame CSRF XContent
active : RXSS-Detection-Evaluation-POST-Experimental : Case03FAIL&nbspXFrame XContent
active : RXSS-Detection-Evaluation-POST-Experimental : Case04FAIL&nbspXFrame CSRF XContent
active : RXSS-FalsePositives-GET : Case01PASS&nbspInfoUrl XFrame XContent
active : RXSS-FalsePositives-GET : Case02PASS&nbspInfoUrl XFrame XContent
active : RXSS-FalsePositives-GET : Case03PASS&nbspInfoUrl XFrame XContent
active : RXSS-FalsePositives-GET : Case04PASS&nbspInfoUrl XFrame XContent
active : RXSS-FalsePositives-GET : Case05PASS&nbspInfoUrl XFrame HttpOnly XContent
active : RXSS-FalsePositives-GET : Case06PASS&nbspInfoUrl XFrame XContent
active : RXSS-FalsePositives-GET : Case07PASS&nbspInfoUrl XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case01PASS&nbspSQLi SQLfpInfoUrl XFrame XSS XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case02PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case03PASS&nbspSQLi SQLfpInfoUrl XFrame XSS XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case04PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case05PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case06PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case07PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case08PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case09PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case10PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case11PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case12PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case13PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case14PASS&nbspSQLi SQLfpXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case15PASS&nbspSQLiXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case16PASS&nbspSQLiXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case17PASS&nbspSQLiXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case18PASS&nbspSQLiXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error : Case19FAIL&nbspXSS XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Error-Experimental : Case01PASS&nbspSQLi SQLfpInfoUrl XFrame XSS XContent
active : SInjection-Detection-Evaluation-GET-200Identical : Case01PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Identical : Case02PASS&nbspSQLiInfoUrl XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Identical : Case03PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Identical : Case04FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Identical : Case05FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Identical : Case06FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Identical : Case07FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Identical : Case08FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case01PASS&nbspSQLiInfoUrl XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case02FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case03PASS&nbspSQLiInfoUrl XFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case04FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case05FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case06PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case07PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case08PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case09FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case10FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case11PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case12PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case13PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case14FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case15PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case16PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case17PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case18PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-200Valid : Case19FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case01PASS&nbspSQLi SQLfpInfoUrl XFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case02PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case03PASS&nbspSQLi SQLfpInfoUrl XFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case04PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case05PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case06PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case07PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case08PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case09PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case10PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case11PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case12PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case13PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case14PASS&nbspSQLi SQLfpXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case15PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case16PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case17PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case18PASS&nbspSQLiXFrame XContent
active : SInjection-Detection-Evaluation-GET-500Error : Case19FAIL&nbspXFrame XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case01PASS&nbspSQLi SQLfpXFrame Auto XSS CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case02PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case03PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case04PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case05PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case06PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case07PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case08PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case09PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case10PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case11PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case12PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case13PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case14PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case15PASS&nbspSQLiXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case16PASS&nbspSQLiXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case17PASS&nbspSQLiXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case18PASS&nbspSQLiXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error : Case19FAIL&nbspXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Error-Experimental : Case01PASS&nbspSQLi SQLfpXSS XFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Identical : Case01PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Identical : Case02PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Identical : Case03PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Identical : Case04FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Identical : Case05FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Identical : Case06FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Identical : Case07FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Identical : Case08FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case01FAIL&nbspXFrame Auto CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case02FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case03PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case04FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case05FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case06PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case07PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case08PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case09FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case10FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case11PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case12PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case13PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case14FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case15PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case16PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case17PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case18PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-200Valid : Case19FAIL&nbspXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case01PASS&nbspSQLi SQLfpXFrame Auto CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case02PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case03PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case04PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case05PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case06PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case07PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case08PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case09PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case10PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case11PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case12PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case13PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case14PASS&nbspSQLi SQLfpXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case15PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case16PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case17PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case18PASS&nbspSQLiXFrame CSRF XContent
active : SInjection-Detection-Evaluation-POST-500Error : Case19FAIL&nbspXFrame CSRF XContent
active : SInjection-FalsePositives-GET : Case01PASS&nbspInfoUrl XFrame XContent
active : SInjection-FalsePositives-GET : Case02FAIL&nbspSQLi SQLfpInfoUrl XFrame XContent
active : SInjection-FalsePositives-GET : Case03PASS&nbspInfoUrl XFrame XContent
active : SInjection-FalsePositives-GET : Case04FAIL&nbspSQLi SQLfpInfoUrl XFrame XContent
active : SInjection-FalsePositives-GET : Case05PASS&nbspInfoUrl XFrame XContent
active : SInjection-FalsePositives-GET : Case06FAIL&nbspSQLi SQLfpInfoUrl XFrame XContent
active : SInjection-FalsePositives-GET : Case07FAIL&nbspSQLfpInfoUrl XFrame InfoDb XContent
active : SInjection-FalsePositives-GET : Case08FAIL&nbspSQLi SQLfpInfoUrl XFrame InfoDb XContent
active : SInjection-FalsePositives-GET : Case09PASS&nbspXFrame XContent
active : SInjection-FalsePositives-GET : Case10PASS&nbspXFrame XContent

Alerts Key

AlertDescription
AutoPassword Autocomplete in browser
CSRFCross Site Request Forgery
HttpOnlyCookie set without HttpOnly flag
InfoDbInformation disclosure - database error messages
InfoUrlInformation disclosure - sensitive informations in URL
SQLfpSQL Injection Fingerprinting
SQLiSQL Injection
XContentX-Content-Type-Options header missing
XFrameX-Frame-Options header not set
XSSCross Site Scripting