diff --git a/.github/dependabot.yml b/.github/dependabot.yml new file mode 100644 index 0000000000..7a0cc34782 --- /dev/null +++ b/.github/dependabot.yml @@ -0,0 +1,18 @@ +# To get started with Dependabot version updates, you'll need to specify which +# package ecosystems to update and where the package manifests are located. +# Please see the documentation for all configuration options: +# https://docs.github.com/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file + +version: 2 +updates: + - package-ecosystem: "github-actions" + directory: "/" + schedule: + interval: "daily" + - package-ecosystem: "maven" + directory: "/" + schedule: + interval: "daily" + open-pull-requests-limit: 10 + labels: + - dependencies diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml index ec13d729bc..e235340075 100644 --- a/.github/workflows/codeql-analysis.yml +++ b/.github/workflows/codeql-analysis.yml @@ -1,13 +1,15 @@ name: "CodeQL" +env: + CODEQL_EXTRACTOR_JAVA_RUN_ANNOTATION_PROCESSORS: true + on: push: branches: [ master ] pull_request: # The branches below must be a subset of the branches above branches: [ master ] - schedule: - - cron: '32 14 * * 0' + workflow_dispatch: jobs: analyze: @@ -17,7 +19,7 @@ jobs: actions: read contents: read security-events: write - + strategy: fail-fast: false matrix: @@ -25,23 +27,27 @@ jobs: steps: - name: Checkout repository - uses: actions/checkout@v2 + uses: actions/checkout@v6 # Get full history for spotless ratchetFrom with: fetch-depth: 0 # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL - uses: github/codeql-action/init@v1 + uses: github/codeql-action/init@v4 with: languages: ${{ matrix.language }} - # queries: ./path/to/local/query, your-org/your-repo/queries@main - - #- name: Autobuild - # uses: github/codeql-action/autobuild@v1 + queries: security-extended, security-experimental, security-and-quality - name: Build with Maven run: mvn -DskipTests=true install - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@v1 + uses: github/codeql-action/analyze@v4 + + - name: Upload Output + uses: actions/upload-artifact@v6 + with: + name: ${{ matrix.language }} SARIF + path: ${{ runner.workspace }}/results/*.sarif + diff --git a/.github/workflows/maven.yaml b/.github/workflows/maven.yaml index 61d4842e7c..29e50a43e2 100644 --- a/.github/workflows/maven.yaml +++ b/.github/workflows/maven.yaml @@ -8,15 +8,16 @@ jobs: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v6 with: fetch-depth: 0 - - name: Set up JDK 1.8 - uses: actions/setup-java@v1 + - name: Set up JDK 17 + uses: actions/setup-java@v5 with: - java-version: 1.8 - - name: Run spotless check + java-version: 17 + distribution: zulu + - name: Run Spotless check run: mvn spotless:check - - name: Run unit tests - run: mvn test + - name: Create WAR + run: mvn package diff --git a/.gitignore b/.gitignore index b4421fbd7a..cf0f2cf17c 100644 --- a/.gitignore +++ b/.gitignore @@ -1,17 +1,20 @@ .DS_Store +.dccache .java-version .classpath .project .settings/ .idea/ *.iml +.scannerwork/ data/out.csv +owasp-benchmark/ reports/ -scripts/SonarQubeCredentials.sh +src.zip +src/main/resources/benchmark.properties target/ testfiles/ tools/Contrast/contrast.jar tools/Contrast/contrast.yaml tools/Contrast/working/ - diff --git a/.mvn/extensions.xml b/.mvn/extensions.xml index 7f10ca750a..dc87e491c4 100644 --- a/.mvn/extensions.xml +++ b/.mvn/extensions.xml @@ -3,7 +3,7 @@ co.leantechniques maven-buildtime-extension - 3.0.3 + 3.0.5 diff --git a/.mvn/jvm.config b/.mvn/jvm.config new file mode 100644 index 0000000000..3311f694d5 --- /dev/null +++ b/.mvn/jvm.config @@ -0,0 +1,8 @@ +--add-exports jdk.compiler/com.sun.tools.javac.tree=ALL-UNNAMED +--add-opens java.base/java.lang=ALL-UNNAMED + +--add-exports=jdk.compiler/com.sun.tools.javac.api=ALL-UNNAMED +--add-exports=jdk.compiler/com.sun.tools.javac.code=ALL-UNNAMED +--add-exports=jdk.compiler/com.sun.tools.javac.file=ALL-UNNAMED +--add-exports=jdk.compiler/com.sun.tools.javac.parser=ALL-UNNAMED +--add-exports=jdk.compiler/com.sun.tools.javac.util=ALL-UNNAMED diff --git a/README.md b/README.md index 4cc4805ed2..fd9787cd08 100644 --- a/README.md +++ b/README.md @@ -1,6 +1,12 @@ -# OWASP Benchmark -The OWASP Benchmark Project is a Java test suite designed to verify the speed and accuracy of vulnerability detection tools. It is a fully runnable open source web application that can be analyzed by any type of Application Security Testing (AST) tool, including SAST, DAST (like OWASP ZAP), and IAST tools. The intent is that all the vulnerabilities deliberately included in and scored by the Benchmark are actually exploitable so its a fair test for any kind of application vulnerability detection tool. The Benchmark also includes scorecard generators for numerous open source and commercial AST tools, and the set of supported tools is growing all the time. +# OWASP Benchmark for Java +The OWASP Benchmark Project is a Java test suite designed to verify the speed and accuracy of vulnerability detection tools. It is a fully runnable open source web application that can be analyzed by any type of Application Security Testing (AST) tool, including SAST, DAST (like ZAP), and IAST tools. The intent is that all the vulnerabilities deliberately included in and scored by the Benchmark are actually exploitable so it's a fair test for any kind of application vulnerability detection tool. + +The Benchmark project also includes scorecard generators for numerous open source and commercial AST tools, and the set of supported tools is growing all the time. This scoring capability is implemented in the BenchmarkUtils project, which is at: https://github.com/OWASP-Benchmark/BenchmarkUtils. The project documentation is all on the OWASP site at the OWASP Benchmark project pages. Please refer to that site for all the project details. -The current latest release is v1.2. Note that all the releases that are available here: https://github.com/OWASP/Benchmark/releases are historical. The latest release is always available live by simply cloning or pulling the head of this repository (i.e., git pull). +The current latest release is v1.2. Note that all the releases that are available here: https://github.com/OWASP-Benchmark/BenchmarkJava/releases, are historical. The latest release is always available live by simply cloning or pulling the head of this repository (i.e., git pull). + +Running Benchmark Itself: +* runBenchmark.sh - run the Benchmark Web Application (accessible via local machine only) +* runRemoteAccessibleBenchmark.sh - like the above but allows port 8443 to be accessible outside the machine Benchmark is running on. diff --git a/VMs/Dockerfile b/VMs/Dockerfile index 8e3eea4afc..aaa8d235a4 100644 --- a/VMs/Dockerfile +++ b/VMs/Dockerfile @@ -1,12 +1,12 @@ -# This dockerfile builds a container that pulls down and runs the latest version of Benchmark +# This dockerfile builds a container that pulls down and runs the latest version of BenchmarkJava FROM ubuntu:latest -MAINTAINER "Dave Wichers dave.wichers@owasp.org" +LABEL org.opencontainers.image.authors="Dave Wichers dave.wichers@owasp.org" RUN apt-get update RUN DEBIAN_FRONTEND="noninteractive" apt-get -y install tzdata RUN apt-get install -q -y \ - openjdk-8-jre-headless \ - openjdk-8-jdk \ + openjdk-17-jre-headless \ + openjdk-17-jdk \ git \ maven \ wget \ @@ -35,7 +35,7 @@ RUN useradd -d /home/bench -m -s /bin/bash bench RUN echo bench:bench | chpasswd RUN chown -R bench /owasp/ -ENV PATH /owasp/BenchmarkJava:$PATH +ENV PATH=/owasp/BenchmarkJava:$PATH # start up Benchmark once, for 60 seconds, then kill it, so the additional dependencies required to run it are downloaded/cached in the image as well. # exit 0 is required to return a 'success' code, otherwise the timeout returns a failure code, causing the Docker build to fail. diff --git a/VMs/buildDockerImage.sh b/VMs/buildDockerImage.sh index 5520645881..b0dd310374 100755 --- a/VMs/buildDockerImage.sh +++ b/VMs/buildDockerImage.sh @@ -1,13 +1,16 @@ -# Pull in latest version of ubuntu +# Pull in latest version of ubuntu. This builds an image using the OS native to this platform. docker pull ubuntu:latest -# Remove any ubuntu: image if it was left behind by a new version of ubunto:latest being pulled +# Remove any ubuntu: image if it was left behind by a new version of ubuntu:latest being pulled i=$(docker images | grep "ubuntu" | grep "OWASP Benchmark for Java OWASP Benchmark is a Java test suite designed to evaluate the accuracy, coverage, and speed of automated software vulnerability detection tools. - https://owasp.org/www-project-benchmark/ + https://github.com/OWASP-Benchmark/BenchmarkJava @@ -17,6 +17,11 @@ + + OWASP Foundation + https://owasp.org/ + + GNU General Public License, version 2 (GPL2) @@ -51,7 +56,7 @@ com.h3xstream.findsecbugs findsecbugs-plugin - 1.12.0 + 1.14.0 @@ -574,11 +579,12 @@ true + ${project.build.directory}/tomcat${tomcat.major.version}x -Xmx8G -javaagent:${basedir}/tools/HCL/secagent.jar=agent_path=${basedir}/tools/HCL/secagent.jar - -Dsecagent.log=${basedir}/tools/HCL/working/HCL-IAST.hcl + -Dsecagent.log=${basedir}/results/HCL-IAST.hcl 8443 https @@ -604,7 +610,7 @@ javax javaee-api - 7.0 + 8.0.1 provided @@ -618,7 +624,7 @@ commons-codec commons-codec - 1.15 + 1.21.0 @@ -628,6 +634,12 @@ 1.4 + + commons-io + commons-io + 2.21.0 + + commons-lang commons-lang @@ -639,26 +651,31 @@ org.slf4j slf4j-reload4j - 1.7.36 + 2.0.17 + + + + org.apache.directory.api + api-ldap-model + ${version.apache.api-ldap} + + + + org.apache.directory.api + api-ldap-schema-data + ${version.apache.api-ldap} org.apache.directory.server apacheds-core - ${version.apacheds} - - - - bouncycastle - bcprov-jdk15 - - - - commons-collections - commons-collections - - + + + + org.apache.directory.server + apacheds-core-annotations + ${version.apacheds} @@ -667,12 +684,30 @@ ${version.apacheds} + + org.apache.directory.server + apacheds-core-avl + ${version.apacheds} + + org.apache.directory.server apacheds-core-constants ${version.apacheds} + + org.apache.directory.server + apacheds-core-jndi + ${version.apacheds} + + + + org.apache.directory.server + apacheds-interceptor-kerberos + ${version.apacheds} + + org.apache.directory.server apacheds-jdbm-partition @@ -681,7 +716,7 @@ org.apache.directory.server - apacheds-jdbm-store + apacheds-kerberos-codec ${version.apacheds} @@ -705,51 +740,38 @@ org.apache.directory.server - apacheds-xdbm-base + apacheds-server-annotations ${version.apacheds} - org.apache.directory.shared - shared-ldap - ${version.apache-shared-ldap} - - - - commons-collections - commons-collections - - - - - - org.apache.directory.shared - shared-ldap-schema - ${version.apache-shared-ldap} + org.apache.directory.server + apacheds-server-jndi + ${version.apacheds} - org.apache.directory.shared - shared-ldap-schema-loader - ${version.apache-shared-ldap} + org.apache.directory.server + apacheds-test-framework + ${version.apacheds} - org.apache.directory.shared - shared-ldap-schema-manager - ${version.apache-shared-ldap} + org.apache.directory.server + apacheds-xdbm-partition + ${version.apacheds} org.apache.httpcomponents.client5 httpclient5 - 5.1.3 + 5.6 org.apache.httpcomponents.core5 httpcore5 - 5.1.3 + 5.4 @@ -782,14 +804,13 @@ org.hsqldb hsqldb - - 2.3.6 + 2.7.4 org.owasp.esapi esapi - 2.2.3.1 + 2.7.0.0 @@ -826,9 +847,15 @@ xml-apis xml-apis + 1.4.01 + + com.fasterxml.jackson.core + jackson-databind + 2.21.0 + @@ -838,7 +865,7 @@ co.leantechniques maven-buildtime-extension - 3.0.3 + 3.0.5 @@ -853,17 +880,17 @@ org.apache.maven.plugins maven-antrun-plugin - 3.0.0 + 3.2.0 org.apache.maven.plugins maven-assembly-plugin - 3.3.0 + 3.8.0 org.apache.maven.plugins maven-dependency-plugin - 3.3.0 + 3.9.0 com.sun.jersey:jersey-servlet @@ -877,7 +904,7 @@ org.apache.maven.plugins maven-release-plugin - 3.0.0-M6 + 3.3.1 @@ -891,35 +918,36 @@ org.apache.maven.plugins maven-clean-plugin - 3.2.0 + 3.5.0 org.apache.maven.plugins maven-compiler-plugin - 3.10.1 + 3.15.0 true 1000m 2000m + ${java.target} org.apache.maven.plugins maven-deploy-plugin - 3.0.0-M2 + 3.1.4 org.apache.maven.plugins maven-enforcer-plugin - 3.1.0 + 3.6.2 org.codehaus.mojo extra-enforcer-rules - 1.5.1 + 1.11.0 @@ -931,12 +959,8 @@ - ${project.java.target} - - - com.google.guava:guava - - Dependencies shouldn't require Java 8+. + 11 + Dependencies shouldn't require Java 12+. warn @@ -950,8 +974,8 @@ - ${project.java.target} - Benchmark is currently written to support Java 7 and 8. + ${java.target} + Benchmark is currently written to support Java 8. @@ -963,59 +987,64 @@ org.apache.maven.plugins maven-help-plugin - 3.2.0 + 3.5.1 org.apache.maven.plugins maven-install-plugin - 3.0.0-M1 + 3.1.4 org.apache.maven.plugins maven-jxr-plugin - 3.2.0 + 3.6.0 org.apache.maven.plugins maven-pmd-plugin - 3.17.0 - - true - ${project.java.target} - + 3.28.0 org.apache.maven.plugins maven-project-info-reports-plugin - 3.3.0 + 3.9.0 org.apache.maven.plugins maven-resources-plugin - 3.2.0 + 3.4.0 + org.apache.maven.plugins maven-site-plugin - 4.0.0-M1 + 3.21.0 + + + + org.apache.maven.skins + maven-fluido-skin + ${version.fluido} + + org.apache.maven.plugins maven-surefire-plugin - 3.0.0-M7 + 3.5.4 org.apache.maven.plugins maven-war-plugin - 3.3.2 + 3.5.1 ${maven.war.webxml} @@ -1024,13 +1053,13 @@ org.codehaus.cargo cargo-maven3-plugin - 1.9.12 + 1.10.26 org.codehaus.mojo versions-maven-plugin - 2.11.0 + 2.21.0 @@ -1057,13 +1086,13 @@ com.h3xstream.findsecbugs findsecbugs-plugin - 1.12.0 + 1.14.0 com.internetitem write-properties-file-maven-plugin - 1.0.1 + 2.0.0 @@ -1075,7 +1104,7 @@ com.diffplug.spotless spotless-maven-plugin - 2.22.8 + 3.2.1 origin/master @@ -1140,7 +1169,7 @@ - ${project.java.target} + 1.17.0 @@ -1197,8 +1226,8 @@ false + 8 UTF-8 - 1.7 UTF-8 ${basedir}/src/config/web.xml @@ -1215,16 +1244,19 @@ ${project.build.directory}/log - 1.5.7 - 0.9.19 - 1.6.0 + 2.1.7 + 2.0.0.AM27 + 2.1.0 + 3.6.10.Final - 4.7.0.0 - 4.7.0 - 4.3.30.RELEASE - - 8 - 8.5.70 + 4.9.8.2 + 4.9.8 + + 5.3.39 + + 9 + 9.0.113 https://archive.apache.org/dist/tomcat/tomcat-${tomcat.major.version}/v${version.tomcat}/bin/apache-tomcat-${version.tomcat}.zip + diff --git a/scripts/mvnFortifyScan.bat b/scripts/mvnFortifyScan.bat deleted file mode 100755 index 7a4a2f9017..0000000000 --- a/scripts/mvnFortifyScan.bat +++ /dev/null @@ -1,2 +0,0 @@ -sourceanalyzer -b benchmark -Xmx10G -scan -f benchmark.fpr - diff --git a/scripts/mvnFortifyScan_OnWindows.sh b/scripts/mvnFortifyScan_OnWindows.sh new file mode 100644 index 0000000000..05f217c57d --- /dev/null +++ b/scripts/mvnFortifyScan_OnWindows.sh @@ -0,0 +1,9 @@ +benchmark_version=$(scripts/getBenchmarkVersion.sh) +FortifySCA_version=$(sourceanalyzer -v | grep 'Fortify Static' | cut -d" " -f5) +FortifyRulePack_version=$(fortifyupdate.cmd -showInstalledRules | grep "Core, Java v" | cut -d" " -f7) + +results_file="results/Benchmark_${benchmark_version}-Fortify${FortifySCA_version}_${FortifyRulePack_version}.fpr" + +sourceanalyzer -b benchmark -Xmx10G -scan -f $results_file +echo "Results written to: $results_file" + diff --git a/scripts/mvnFortifyTranslate.bat b/scripts/mvnFortifyTranslate.bat index dc3d2c6a47..ad5f769057 100755 --- a/scripts/mvnFortifyTranslate.bat +++ b/scripts/mvnFortifyTranslate.bat @@ -1,3 +1,3 @@ sourceanalyzer -b benchmark -clean -sourceanalyzer -b benchmark mvn com.fortify.sca.plugins.maven:sca-maven-plugin:translate -Dfortify.sca.source.version=1.7 +sourceanalyzer -b benchmark mvn com.fortify.sca.plugins.maven:sca-maven-plugin:translate -Dfortify.sca.source.version=1.8 diff --git a/scripts/runBearer.sh b/scripts/runBearer.sh new file mode 100755 index 0000000000..3a9ccd560f --- /dev/null +++ b/scripts/runBearer.sh @@ -0,0 +1,29 @@ +#!/usr/bin/env bash + +# Check for install/updates at https://github.com/bearer/bearer + +# For this script to work, you need to change the permissions on the results/ directory to 777 +# so docker can write the results file into the results/ folder + +source scripts/requireCommand.sh + +requireCommand docker + +docker pull bearer/bearer --platform linux/amd64 + +benchmark_version=$(scripts/getBenchmarkVersion.sh) +bearer_version=$(docker run --platform linux/amd64 bearer/bearer bearer --version | grep -o '[[:digit:]]\+\.[[:digit:]]\+\.[[:digit:]]\+') +result_file="results/Benchmark_$benchmark_version-Bearer-v$bearer_version.json" +temp_result_file="$result_file.tmp" +docker_result_file="/benchmark/$temp_result_file" + +# if you set the Docker userid to match the current user id with: --user $(id -u):$(id -g) you get a suspicious git repository error +docker run --platform linux/amd64 --rm -v "${PWD}:/benchmark" bearer/bearer scan /benchmark/src/main/ --format jsonv2 --output "$docker_result_file" > /dev/null + +# Because the docker userid and current user ID might be different, we write the Bearer result to a temp file. +# Then copy it to the desired file name, and then delete the temp file. +# +# We can't just chown the file to the right user ID as Unix won't allow that. +cp $temp_result_file $result_file +rm -f $temp_result_file + diff --git a/scripts/runBearer_onWindows.bat b/scripts/runBearer_onWindows.bat new file mode 100644 index 0000000000..1741707792 --- /dev/null +++ b/scripts/runBearer_onWindows.bat @@ -0,0 +1,24 @@ +@echo off +REM Check for install/updates at https://github.com/bearer/bearer + +where docker >nul 2>nul +IF %ERRORLEVEL% NEQ 0 ( + @echo docker required. Please install. + exit /b +) + +where sh >nul 2>nul +IF %ERRORLEVEL% NEQ 0 ( + @echo git bash is required. Please install. + exit /b +) + +docker pull bearer/bearer + +for /f %%i in ('sh scripts/getBenchmarkVersion.sh') do set benchmark_version=%%i +for /f %%i in ('docker run bearer/bearer bearer --version ^| grep -o "[[:digit:]]\+\.[[:digit:]]\+\.[[:digit:]]\+"') do set bearer_version=%%i +set result_file="/src/results/Benchmark_%benchmark_version%-Bearer-v%bearer_version%.json" +set current_dir=%cd% + +@echo on +docker run --rm -v "%current_dir%:/src" bearer/bearer scan /src/src/main/ --format jsonv2 --output %result_file% diff --git a/scripts/runCodeQL.sh b/scripts/runCodeQL.sh index b7624d51e0..925040919f 100755 --- a/scripts/runCodeQL.sh +++ b/scripts/runCodeQL.sh @@ -1,4 +1,16 @@ -# This script assumes the owasp-benchmark database has already been initialized by running this first: -# ../../Tools/codeql-home/codeql/codeql database create owasp-benchmark --language=java -../../Tools/codeql-home/codeql/codeql database analyze owasp-benchmark java-code-scanning.qls --format=sarifv2.1.0 --output=results/Benchmark_1.2-codeql_java-code-scanning_qls.sarif +# The following is based on the instructions at: https://docs.github.com/en/code-security/codeql-cli/getting-started-with-the-codeql-cli/setting-up-the-codeql-cli. Follow the instructions at: Setting up the CodeQL CLI + +# Prerequisites: +# 1) Install codeql in a tools/ directory that is a peer to the folder containing BenchmarkJava. For example, if you have a git/ folder, which contains BenchmarkJava, BenchmarkUtils, etc., then the tools/ folder would be at the same level as the git/ folder. i.e., relative to BenchmarkJava, it is at ../../tools/code-ql-home. +# 2) Then the owasp-benchmark database has to be initialized by first running the translateCodeQL.sh script. + +# Mac Users: "If you are using macOS on Apple Silicon (for example, Apple M1), ensure that the Xcode command-line developer tools and Rosetta 2 are installed." +## For Xcode command line, run: xcode-select -p 1>/dev/null;echo $? - If this returns 0, its installed, if 2, its not installed. +## For Rosetta 2, run: lsbom -f /Library/Apple/System/Library/Receipts/com.apple.pkg.RosettaUpdateAuto.bom - And if it returns a list of files, it's installed. + +# This then runs the CodeQL scan: +## The following CodeQL query is a bit complex. I had to raise an issue with the CodeQL team to figure out how to do this. +## The issue raised and the answer that documents this query is here: https://github.com/github/codeql/issues/18518#issuecomment-2730684184 +benchmark_version=$(scripts/getBenchmarkVersion.sh) +../../tools/codeql-home/codeql/codeql database analyze owasp-benchmark codeql/java-queries:codeql-suites/java-security-extended.qls --format=sarifv2.1.0 --output=results/Benchmark_1.2-codeql_java-security-extended.sarif -j0 --download diff --git a/scripts/runCodeQLFull.sh b/scripts/runCodeQLFull.sh deleted file mode 100755 index effa7579d3..0000000000 --- a/scripts/runCodeQLFull.sh +++ /dev/null @@ -1,14 +0,0 @@ -# The full list of java CodeQL query sets is: -# tested: java-code-scanning.qls - Standard Code Scanning queries for Java - This does NOT include Weak Random rule. -# tested: java-security-extended.qls - Security-extended queries for Java - Same score. -## this one builds on the previous one a litte -# tested: java-security-and-quality.qls - Security-and-quality queries for Java - This ONE adds Weak Random rule. -## this one builds on the previous one. But detects nothing additional - Also does NOT include Weak Random rule. -# tested: java-lgtm.qls - Standard LGTM queries for Java - scores lower than lgtm-full by 1 category (Random) -# tested: java-lgtm-full.qls - Standard LGTM queries for Java, including ones not displayed by default - This ONE adds Weak Random rule. - -# This script assumes the owasp-benchmark database has already been initialized by running this first: -# ../../Tools/codeql-home/codeql/codeql database create owasp-benchmark --language=java -#../../Tools/codeql-home/codeql/codeql database analyze owasp-benchmark java-security-extended.qls --format=sarifv2.1.0 --output=results/Benchmark_1.2-codeql_java-security-extended.sarif -../../Tools/codeql-home/codeql/codeql database analyze owasp-benchmark java-security-and-quality.qls --format=sarifv2.1.0 --output=results/Benchmark_1.2-codeql_java-security-and-quality.sarif - diff --git a/scripts/runContrastCodeSec_OnSource.sh b/scripts/runContrastCodeSec_OnSource.sh new file mode 100644 index 0000000000..46d05ab40e --- /dev/null +++ b/scripts/runContrastCodeSec_OnSource.sh @@ -0,0 +1,21 @@ +# To use Contrast CodeSec you have to install it first. +# See the install instructions at: https://www.contrastsecurity.com/developer/codesec/ + +# For example, on Mac: +# brew tap contrastsecurity/tap +# brew install contrast + +# To scan the source code you have to create a .zip of the src/ directory so src.zip exists in the project's root folder. + +if [ -f "./src.zip" ]; then + +# Note: you have to do 'contrast auth' first, and successfully authenticate before you can run this. +benchmark_version=$(scripts/getBenchmarkVersion.sh) + +contrast scan -f src.zip --timeout=10000 --save +mv results.sarif results/Benchmark_$benchmark_version-ContrastCodeSec_OnSrc.sarif + +else + echo "ERROR: You must create a .zip of the src directory first, before running this script." +fi + diff --git a/scripts/runContrastCodeSec_OnWAR.sh b/scripts/runContrastCodeSec_OnWAR.sh new file mode 100644 index 0000000000..30a2f4149a --- /dev/null +++ b/scripts/runContrastCodeSec_OnWAR.sh @@ -0,0 +1,13 @@ +# To use Contrast CodeSec you have to install it first. +# See the install instructions at: https://www.contrastsecurity.com/developer/codesec/ + +# For example, on Mac: +# brew tap contrastsecurity/tap +# brew install contrast + +# Note: you have to do 'contrast auth' first, and successfully authenticate before you can run this. +benchmark_version=$(scripts/getBenchmarkVersion.sh) + +contrast scan -f target/benchmark.war --save +mv results.sarif results/Benchmark_$benchmark_version-ContrastCodeSec_OnWAR.sarif + diff --git a/scripts/runFindBugs.bat b/scripts/runFindBugs.bat index 52dfa7961f..d3c68beb65 100644 --- a/scripts/runFindBugs.bat +++ b/scripts/runFindBugs.bat @@ -1,6 +1,7 @@ # source "scripts/verifyBenchmarkPluginAvailable.sh" - Don't have .bat version of this (yet) + # FindBugs is dead, so this specifies the specific (last) version of findbugs. Its version is not defined in the pom.xml file. # The buildtime elements when invoking the findbugs-maven-plugin leverage the buildtime extension specified in: .mvn/extensions.xml -CALL mvn compile org.codehaus.mojo:findbugs-maven-plugin:3.0.5:findbugs -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv -CALL mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=findbugs +call mvn compile org.codehaus.mojo:findbugs-maven-plugin:3.0.5:findbugs -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv +call mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=findbugs diff --git a/scripts/runFindSecBugs.bat b/scripts/runFindSecBugs.bat index 2033a71843..5e5d660ec8 100644 --- a/scripts/runFindSecBugs.bat +++ b/scripts/runFindSecBugs.bat @@ -1,5 +1,7 @@ # source "scripts/verifyBenchmarkPluginAvailable.sh" - Don't have .bat version of this (yet) -# The buildtime elements when invoking the findbugs-maven-plugin leverage the buildtime extension specified in: .mvn/extensions.xml -CALL mvn compile -Pfindsecbugs -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv -CALL mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=findsecbugs + +# The buildtime elements when invoking the findbugs-maven-plugin thru the findsecbugs profile leverage the +# buildtime extension specified in: .mvn/extensions.xml +call mvn compile -Pfindsecbugs -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv +call mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=findsecbugs diff --git a/scripts/runFindSecBugs.sh b/scripts/runFindSecBugs.sh index 2ad9731138..dcf442a37c 100755 --- a/scripts/runFindSecBugs.sh +++ b/scripts/runFindSecBugs.sh @@ -1,5 +1,6 @@ source "scripts/verifyBenchmarkPluginAvailable.sh" -# The buildtime elements when invoking the findbugs-maven-plugin leverage the buildtime extension specified in: .mvn/extensions.xml +# The buildtime elements when invoking the findbugs-maven-plugin thru the findsecbugs profile leverage the +# buildtime extension specified in: .mvn/extensions.xml mvn compile -Pfindsecbugs -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=findsecbugs diff --git a/scripts/runHorusec.sh b/scripts/runHorusec.sh index d7bdb9856c..1ae715ac0e 100755 --- a/scripts/runHorusec.sh +++ b/scripts/runHorusec.sh @@ -11,7 +11,7 @@ docker pull horuszup/horusec-cli benchmark_version=$(scripts/getBenchmarkVersion.sh) horusec_version=$(docker run --rm horuszup/horusec-cli horusec version 2>&1 | grep Version | awk '{print $NF}') -result_file="/src/results/Benchmark_$benchmark_version-horusec-$horusec_version.json" +result_file="./results/Benchmark_$benchmark_version-horusec-$horusec_version.json" docker run --rm \ -v /var/run/docker.sock:/var/run/docker.sock \ -v "$(pwd)":/src horuszup/horusec-cli \ diff --git a/scripts/runPMD.bat b/scripts/runPMD.bat index c40598c7f5..378d26381a 100644 --- a/scripts/runPMD.bat +++ b/scripts/runPMD.bat @@ -1,5 +1,5 @@ # source "scripts/verifyBenchmarkPluginAvailable.sh" - Don't have .bat version of this (yet) -# The buildtime elements when invoking the findbugs-maven-plugin leverage the buildtime extension specified in: .mvn/extensions.xml -CALL mvn compile pmd:pmd -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv -CALL mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=pmd +# The buildtime elements when invoking the PMD plugin leverage the buildtime extension specified in: .mvn/extensions.xml +call mvn compile pmd:pmd -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv +call mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=pmd diff --git a/scripts/runPMD.sh b/scripts/runPMD.sh index 202e2744fd..1d3538771c 100755 --- a/scripts/runPMD.sh +++ b/scripts/runPMD.sh @@ -1,5 +1,5 @@ source "scripts/verifyBenchmarkPluginAvailable.sh" -# The buildtime elements when invoking the findbugs-maven-plugin leverage the buildtime extension specified in: .mvn/extensions.xml +# The buildtime elements when invoking the PMD plugin leverage the buildtime extension specified in: .mvn/extensions.xml mvn compile pmd:pmd -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=pmd diff --git a/scripts/runPrecaution.sh b/scripts/runPrecaution.sh new file mode 100755 index 0000000000..6ce7d5afa8 --- /dev/null +++ b/scripts/runPrecaution.sh @@ -0,0 +1,6 @@ +# To install Precaution CLI: +# pip install precli +# +# See also: https://precli.readthedocs.io/latest/ +benchmark_version=$(scripts/getBenchmarkVersion.sh) +precli -r . --json -o results/Benchmark_$benchmark_version-Precaution.json diff --git a/scripts/runSemgrep.sh b/scripts/runSemgrep.sh index 7619596344..54be0f9219 100755 --- a/scripts/runSemgrep.sh +++ b/scripts/runSemgrep.sh @@ -1,13 +1,16 @@ #!/usr/bin/env bash -# Check for install/updates at https://github.com/returntocorp/semgrep +# Check for install/updates at https://semgrep.dev/docs/update/ source scripts/requireCommand.sh requireCommand docker +docker pull semgrep/semgrep + benchmark_version=$(scripts/getBenchmarkVersion.sh) -semgrep_version=$(docker run --rm returntocorp/semgrep --version) -result_file="/src/results/Benchmark_$benchmark_version-Semgrep-v$semgrep_version.json" +semgrep_version=$(docker run --rm semgrep/semgrep semgrep --version) +result_file="/src/results/Benchmark_$benchmark_version-Semgrep-v$semgrep_version.sarif" + +docker run --rm -v "${PWD}:/src" semgrep/semgrep semgrep --config p/security-audit -q --sarif -o "$result_file" . > /dev/null -docker run --rm -v "${PWD}:/src" returntocorp/semgrep --config p/security-audit -q --json -o "$result_file" . > /dev/null diff --git a/scripts/runShiftLeftScan.sh b/scripts/runShiftLeftScan.sh index 814c1e599e..f4adb9662a 100755 --- a/scripts/runShiftLeftScan.sh +++ b/scripts/runShiftLeftScan.sh @@ -6,6 +6,8 @@ source scripts/requireCommand.sh requireCommand docker +docker pull docker.io/shiftleft/scan:latest + benchmark_version=$(scripts/getBenchmarkVersion.sh) shiflteft_version="2.0.4" # it's not (yet) possible to get the release version so we just assume it result_file="results/Benchmark_$benchmark_version-ShiftLeftScan-v$shiflteft_version.json" diff --git a/scripts/runSnykSAST.sh b/scripts/runSnykSAST.sh new file mode 100755 index 0000000000..09904bb508 --- /dev/null +++ b/scripts/runSnykSAST.sh @@ -0,0 +1,8 @@ +# Install Snyk per: https://docs.snyk.io/snyk-cli/install-or-update-the-snyk-cli +# Before running this, you must first run: snyk auth (and then authenticate) so snyk code is authorized to run. + +benchmark_version=$(scripts/getBenchmarkVersion.sh) +Snyk_version=$(snyk -v) + +snyk code test --sarif-file-output=results/Benchmark_$benchmark_version-snykCodeCli-v$Snyk_version-$SECONDS.sarif + diff --git a/scripts/runSnykSAST_OnWindows.sh b/scripts/runSnykSAST_OnWindows.sh new file mode 100644 index 0000000000..97e7f0f96d --- /dev/null +++ b/scripts/runSnykSAST_OnWindows.sh @@ -0,0 +1,8 @@ +# Install Snyk per: https://docs.snyk.io/snyk-cli/install-or-update-the-snyk-cli +# Before running this, you must first run: snyk auth (and then authenticate) so snyk code is authorized to run. + +benchmark_version=$(scripts/getBenchmarkVersion.sh) +Snyk_version=$(snyk-win -v) + +snyk-win code test --sarif-file-output=results/Benchmark_$benchmark_version-snykCodeCli-v$Snyk_version-$SECONDS.sarif + diff --git a/scripts/runSonarQube.sh b/scripts/runSonarQube.sh index 1e93f0709d..761294d373 100755 --- a/scripts/runSonarQube.sh +++ b/scripts/runSonarQube.sh @@ -1,72 +1,94 @@ #!/usr/bin/env bash +# this script will +# - create a sonarqube server using the default configuration +# - setup basic things (account, project, token) +# - start a scan (takes >= 1 hour on mac) +# - create a report file +# - shutdown sonarqube server + source scripts/requireCommand.sh requireCommand curl +requireCommand docker requireCommand jq +if ! command -v "sonar-report" &> /dev/null; then + echo "sonar-report is required. Please install it via https://github.com/soprasteria/sonar-report and then try again." + exit 1 +fi + # Check for install/updates at https://github.com/SonarSource/sonarqube -if [ ! -f scripts/SonarQubeCredentials.sh ]; then - cat > scripts/SonarQubeCredentials.sh << EOF -#!/usr/bin/env bash +container_name="sonarqube-benchmark" +sonar_external_port="9876" +sonar_internal_port="9000" +sonar_host="http://localhost:$sonar_external_port" +sonar_project="benchmark" +sonar_user="admin" +sonar_default_password="admin" +sonar_password="P4ssword!!!!" -sonar_host="" # e. g. http://localhost:9000 -sonar_project="" -sonar_token="" -EOF - chmod +x scripts/SonarQubeCredentials.sh -fi +docker pull sonarqube +docker pull sonarsource/sonar-scanner-cli -source scripts/SonarQubeCredentials.sh +echo "Creating temporary SonarQube instance..." -if [ -z "$sonar_host" ] || [ -z "$sonar_project" ] || [ -z "$sonar_token" ]; then - echo "Please provide credentials in SonarQubeCredentials.sh" - exit 1 -fi +# start local sonarqube +docker run --rm -d --name "$container_name" -e SONAR_ES_BOOTSTRAP_CHECKS_DISABLE=true -p "$sonar_external_port:$sonar_internal_port" sonarqube -mvn sonar:sonar -Dsonar.projectKey="$sonar_project" -Dsonar.host.url="$sonar_host" -Dsonar.login="$sonar_token" +echo "Waiting for SonarQube to start..." -sleep 300s # might be replaced with polling of $sonar_host/api/ce/component?component=$sonar_project +while [[ "$(curl --connect-timeout 5 --max-time 5 --retry 60 --retry-delay 0 --retry-max-time 120 -s -o /dev/null -w '%{http_code}' "$sonar_host")" != "200" ]]; do + echo -n "." + sleep 3 +done -benchmark_version=$(scripts/getBenchmarkVersion.sh) -sonarqube_version=$(curl --silent -u "$sonar_token:" "$sonar_host/api/server/version") -result_file="results/Benchmark_$benchmark_version-sonarqube-v$sonarqube_version.json" +echo "" +echo "Waiting for SonarQube to become ready..." -# SonarQube does not provide a download option so we've to create the result file manually :( +while [[ "$(curl --silent "$sonar_host/api/system/status" | jq -r '.status')" != "UP" ]]; do + echo -n "." + sleep 3 +done -result='{"issues":[], "hotspots": []}' -rules='[]' +echo "" +echo "SonarQube ready. Setting up instance..." -# sonarqube does not allow us to grab more than 10k issues, but most of them are information exposure which is not even -# considered by benchmark so let's just get all relevant rules and receive results for only those rules +# change default password +curl "$sonar_host/api/users/change_password" --silent -u "$sonar_user:$sonar_default_password" -X POST --data-raw "login=$sonar_user&password=$sonar_password&previousPassword=$sonar_default_password" -o /dev/null -rules_count=$(curl --silent -u "$sonar_token:" "$sonar_host/api/rules/search?p=1&ps=1" | jq -r '.total') -page=1 +# create project +curl "$sonar_host/api/projects/create" --silent -u "$sonar_user:$sonar_password" -X POST --data-raw "project=$sonar_project&name=$sonar_project" -o /dev/null -while (((page - 1) * 500 < rules_count)); do - rules=$(echo "$rules" | jq ". += $(curl --silent -u "$sonar_token:" "$sonar_host/api/rules/search?p=$page&ps=500" | jq '.rules | map( .key ) | map( select(. | contains("java:") ) )')") - page=$((page+1)) -done +# create token +sonar_token=$(curl "$sonar_host/api/user_tokens/generate" --silent -u "$sonar_user:$sonar_password" -X POST --data-raw "name=$(date)" | jq -r '.token') -rules=$(echo "$rules" | jq '. | join(",")' | sed 's/java:S1989,//') +echo "Starting scan... (might take some time!)" -issues_count=$(curl --silent -u "$sonar_token:" "$sonar_host/api/issues/search?p=1&ps=1&types=VULNERABILITY&componentKeys=$sonar_project&rules=$rules" | jq -r '.paging.total') -page=1 +container_ip=$(docker inspect "$container_name" | jq -r '.[0].NetworkSettings.Networks.bridge.IPAddress' ) +sonar_docker_host="http://$container_ip:$sonar_internal_port" -while (((page - 1) * 500 < issues_count)); do - issues_page=$(curl --silent -u "$sonar_token:" "$sonar_host/api/issues/search?types=VULNERABILITY&p=$page&ps=500&componentKeys=$sonar_project&rules=$rules" | jq '.issues') +docker run --env SONAR_SCANNER_OPTS=-Xmx4g --rm -v ~/.m2:/root/.m2 -v "$(pwd)":"$(pwd)" -w "$(pwd)" sonarsource/sonar-scanner-cli \ + -Dsonar.java.binaries="target" \ + -Dsonar.projectKey="$sonar_project" \ + -Dsonar.host.url="$sonar_docker_host" \ + -Dsonar.login="$sonar_token" \ + -Dsonar.sources="src" \ + -Dsonar.exclusions="results/**,scorecard/**,scripts/**,tools/**,VMs/**" - result=$(echo "$result" | jq ".issues += $issues_page") - page=$((page+1)) +echo "Waiting for SonarQube CE to finish task..." + +while [[ "$(curl --silent -u "$sonar_token:" "$sonar_host/api/ce/component?component=$sonar_project" | jq -r '.current.status')" != "SUCCESS" ]]; do + echo -n "." + sleep 3 done -hotspot_count=$(curl --silent -u "$sonar_token:" "$sonar_host/api/hotspots/search?projectKey=benchmark&p=1&ps=1" | jq -r '.paging.total') -page=1 +echo "" +echo "Generating report..." -while (((page - 1) * 500 < hotspot_count)); do - result=$(echo "$result" | jq ".hotspots += $(curl --silent -u "$sonar_token:" "$sonar_host/api/hotspots/search?projectKey=$sonar_project&p=$page&ps=500" | jq '.hotspots')") - page=$((page+1)) -done +mvn exec:java -Dexec.mainClass="org.owasp.benchmark.report.sonarqube.SonarReport" + +echo "Shutting down SonarQube..." -echo "$result" > "$result_file" +#docker stop "$container_name" diff --git a/scripts/runSonarQube_wDocker.sh b/scripts/runSonarQube_wDocker.sh deleted file mode 100755 index ae50771eb6..0000000000 --- a/scripts/runSonarQube_wDocker.sh +++ /dev/null @@ -1,114 +0,0 @@ -#!/usr/bin/env bash - -# this script will -# - create a sonarqube server using the default configuration -# - setup basic things (account, project, token) -# - start a scan (takes >= 1 hour on mac) -# - create a report file -# - shutdown sonarqube server - -source scripts/requireCommand.sh - -requireCommand curl -requireCommand docker -requireCommand jq - -# Check for install/updates at https://github.com/SonarSource/sonarqube - -sonar_port="9876" -sonar_host="http://localhost:$sonar_port" -sonar_project="benchmark" -sonar_user="admin" -sonar_default_password="admin" -sonar_password="password" - -echo "Creating temporary SonarQube instance" - -docker pull sonarqube - -# start local sonarqube -container_id=$(docker run --rm -d -e SONAR_ES_BOOTSTRAP_CHECKS_DISABLE=true -p "$sonar_port:9000" sonarqube) - -echo "Waiting for instance to come up" - -# wait for container to come up -while [[ "$(curl --connect-timeout 5 --max-time 5 --retry 60 --retry-delay 0 --retry-max-time 120 -s -o /dev/null -w '%{http_code}' "$sonar_host")" != "200" ]]; do - sleep 3; -done - -# wait for sonarqube to be started -while [[ "$(curl --silent "$sonar_host/api/system/status" | jq -r '.status')" != "UP" ]]; do - sleep 3; -done - -echo "Setting up instance" - -# change default password -curl "$sonar_host/api/users/change_password" --silent -u "$sonar_user:$sonar_default_password" -X POST --data-raw "login=$sonar_user&password=$sonar_password&previousPassword=$sonar_default_password" -o /dev/null - -# create project -curl "$sonar_host/api/projects/create" --silent -u "$sonar_user:$sonar_password" -X POST --data-raw "project=$sonar_project&name=$sonar_project" -o /dev/null - -# create token -sonar_token=$(curl "$sonar_host/api/user_tokens/generate" --silent -u "$sonar_user:$sonar_password" -X POST --data-raw "name=$(date)" | jq -r '.token') - -echo "Starting scan (might take some time!)" - -# run scan (using net=host to be able to connect to localhost sonarqube) -docker run --env SONAR_SCANNER_OPTS=-Xmx4g --net=host --rm -v ~/.m2:/root/.m2 -v "$(pwd)":"$(pwd)" -w "$(pwd)" sonarsource/sonar-scanner-cli \ - -Dsonar.java.binaries="target" -Dsonar.projectKey="$sonar_project" -Dsonar.host.url="$sonar_host" -Dsonar.login="$sonar_token" \ - -Dsonar.sources="src" -Dsonar.exclusions="results/**,scorecard/**,scripts/**,tools/**,VMs/**" - -echo "Waiting for SonarQube CE to finish task" - -while [[ "$(curl --silent -u "$sonar_token:" "$sonar_host/api/ce/component?component=$sonar_project" | jq -r '.current.status')" != "SUCCESS" ]]; do - sleep 3; -done - -echo "Generating report..." - -benchmark_version=$(scripts/getBenchmarkVersion.sh) -sonarqube_version=$(curl --silent -u "$sonar_token:" "$sonar_host/api/server/version") -result_file="results/Benchmark_$benchmark_version-sonarqube-v$sonarqube_version.json" - -# SonarQube does not provide a download option so we've to create the result file manually :( - -result='{"issues":[], "hotspots": []}' -rules='[]' - -# sonarqube does not allow us to grab more than 10k issues, but most of them are information exposure which is not even -# considered by benchmark so let's just get all relevant rules and receive results for only those rules - -rules_count=$(curl --silent -u "$sonar_token:" "$sonar_host/api/rules/search?p=1&ps=1" | jq -r '.total') -page=1 - -while (((page - 1) * 500 < rules_count)); do - rules=$(echo "$rules" | jq ". += $(curl --silent -u "$sonar_token:" "$sonar_host/api/rules/search?p=$page&ps=500" | jq '.rules | map( .key ) | map( select(. | contains("java:") ) )')") - page=$((page+1)) -done - -rules=$(echo "$rules" | jq '. | join(",")' | sed 's/java:S1989,//') - -issues_count=$(curl --silent -u "$sonar_token:" "$sonar_host/api/issues/search?p=1&ps=1&types=VULNERABILITY&componentKeys=$sonar_project&rules=$rules" | jq -r '.paging.total') -page=1 - -while (((page - 1) * 500 < issues_count)); do - issues_page=$(curl --silent -u "$sonar_token:" "$sonar_host/api/issues/search?types=VULNERABILITY&p=$page&ps=500&componentKeys=$sonar_project&rules=$rules" | jq '.issues') - - result=$(echo "$result" | jq ".issues += $issues_page") - page=$((page+1)) -done - -hotspot_count=$(curl --silent -u "$sonar_token:" "$sonar_host/api/hotspots/search?projectKey=benchmark&p=1&ps=1" | jq -r '.paging.total') -page=1 - -while (((page - 1) * 500 < hotspot_count)); do - result=$(echo "$result" | jq ".hotspots += $(curl --silent -u "$sonar_token:" "$sonar_host/api/hotspots/search?projectKey=$sonar_project&p=$page&ps=500" | jq '.hotspots')") - page=$((page+1)) -done - -echo "$result" > "$result_file" - -echo "Shutting down SonarQube" - -docker stop "$container_id" diff --git a/scripts/runSpotBugs.bat b/scripts/runSpotBugs.bat index 428125a6ad..68fefaed0c 100755 --- a/scripts/runSpotBugs.bat +++ b/scripts/runSpotBugs.bat @@ -1,5 +1,5 @@ # source "scripts/verifyBenchmarkPluginAvailable.sh" - Don't have .bat version of this (yet) -# The buildtime elements when invoking the findbugs-maven-plugin leverage the buildtime extension specified in: .mvn/extensions.xml -CALL mvn compile spotbugs:spotbugs -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv -CALL mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=spotbugs +# The buildtime elements when invoking the Spotbugs plugin leverage the buildtime extension specified in: .mvn/extensions.xml +call mvn compile spotbugs:spotbugs -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv +call mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=spotbugs diff --git a/scripts/runSpotBugs.sh b/scripts/runSpotBugs.sh index b3c37eca9d..54719e2880 100755 --- a/scripts/runSpotBugs.sh +++ b/scripts/runSpotBugs.sh @@ -1,5 +1,5 @@ source "scripts/verifyBenchmarkPluginAvailable.sh" -# The buildtime elements when invoking the findbugs-maven-plugin leverage the buildtime extension specified in: .mvn/extensions.xml +# The buildtime elements when invoking the Spotbugs plugin leverage the buildtime extension specified in: .mvn/extensions.xml mvn compile spotbugs:spotbugs -Dbuildtime.output.csv=true -Dbuildtime.output.csv.file=../data/out.csv mvn org.owasp:benchmarkutils-maven-plugin:append-time -DtoolName=spotbugs diff --git a/scripts/translateCodeQL.sh b/scripts/translateCodeQL.sh index 0833df92ee..c10b389f43 100755 --- a/scripts/translateCodeQL.sh +++ b/scripts/translateCodeQL.sh @@ -1,3 +1,11 @@ -#a This translates the current app, and builds up the rules databases. This only has to be run once after each code change. -../../Tools/codeql-home/codeql/codeql database create owasp-benchmark --language=java --overwrite +# First, you have to get the platform binaries from: https://github.com/github/codeql-cli-binaries/releases +# And then install them in a tools directory, that is a peer to your HOME_FOLDER. HOME_FOLDER should contain BenchmarkJava, BenchmarkUtils, etc. +# The unzipped codeql-binaries codeql/ folder should be put in tools/codeql-home/ +# NOTE: This tool requires Java 11+ + +# You have to download the rulepacks now. This does this. +../../tools/codeql-home/codeql/codeql pack download codeql/java-queries + +# This translates the current app, and builds up the rules databases. This only has to be run once after each code change. +../../tools/codeql-home/codeql/codeql database create owasp-benchmark --language=java --overwrite --command="mvn clean package" diff --git a/scripts/verifyBenchmarkPluginAvailable.sh b/scripts/verifyBenchmarkPluginAvailable.sh index d425f72d3c..d38e8a9009 100755 --- a/scripts/verifyBenchmarkPluginAvailable.sh +++ b/scripts/verifyBenchmarkPluginAvailable.sh @@ -1,5 +1,5 @@ # Verify the benchmarkutils plugin is installed. And if not, explain how to install it -mvn -Djava.awt.headless=true -Dplugin=org.owasp:benchmarkutils-maven-plugin help:describe 2>&1 >/dev/null +mvn -Dplugin=org.owasp:benchmarkutils-maven-plugin help:describe 2>&1 >/dev/null if [ $? -ne 0 ] then diff --git a/src/main/java/org/owasp/benchmark/helpers/DataBaseServer.java b/src/main/java/org/owasp/benchmark/helpers/DataBaseServer.java index e59ecef136..e8f4dcd55e 100644 --- a/src/main/java/org/owasp/benchmark/helpers/DataBaseServer.java +++ b/src/main/java/org/owasp/benchmark/helpers/DataBaseServer.java @@ -27,15 +27,15 @@ import org.owasp.benchmark.service.pojo.XMLMessage; import org.springframework.http.HttpStatus; import org.springframework.http.ResponseEntity; +import org.springframework.web.bind.annotation.GetMapping; +import org.springframework.web.bind.annotation.PostMapping; import org.springframework.web.bind.annotation.RequestBody; -import org.springframework.web.bind.annotation.RequestMapping; -import org.springframework.web.bind.annotation.RequestMethod; import org.springframework.web.bind.annotation.RestController; @RestController public class DataBaseServer { - @RequestMapping(value = "/resetdb", method = RequestMethod.GET) + @GetMapping(value = "/resetdb") public ResponseEntity> getOtherOrder( @RequestBody Person model, HttpServletRequest request, HttpServletResponse response) throws ServletException, IOException { @@ -44,7 +44,7 @@ public ResponseEntity> getOtherOrder( return new ResponseEntity>(resp, HttpStatus.OK); } - @RequestMapping(value = "/testdb", method = RequestMethod.POST) + @PostMapping(value = "/testdb") public ResponseEntity> createOrder2( @RequestBody Person model, HttpServletRequest request, HttpServletResponse response) throws ServletException, IOException { @@ -53,7 +53,7 @@ public ResponseEntity> createOrder2( return new ResponseEntity>(resp, HttpStatus.OK); } - @RequestMapping(value = "/getall", method = RequestMethod.GET) + @GetMapping(value = "/getall") public ResponseEntity> getAll( HttpServletRequest request, HttpServletResponse response) throws ServletException, IOException { diff --git a/src/main/java/org/owasp/benchmark/helpers/DatabaseHelper.java b/src/main/java/org/owasp/benchmark/helpers/DatabaseHelper.java index af0f53b29d..3d271a3f47 100644 --- a/src/main/java/org/owasp/benchmark/helpers/DatabaseHelper.java +++ b/src/main/java/org/owasp/benchmark/helpers/DatabaseHelper.java @@ -33,7 +33,6 @@ import org.owasp.esapi.ESAPI; public class DatabaseHelper { - private static Statement stmt; private static Connection conn; public static org.springframework.jdbc.core.JdbcTemplate JDBCtemplate; public static org.owasp.benchmark.helpers.HibernateUtil hibernateUtil = @@ -42,6 +41,7 @@ public class DatabaseHelper { new org.owasp.benchmark.helpers.HibernateUtil(true); public static final boolean hideSQLErrors = false; // If we want SQL Exceptions to be suppressed from being displayed to the user of + // the web app. static { @@ -120,13 +120,11 @@ public static java.sql.Statement getSqlStatement() { if (conn == null) { getSqlConnection(); } - - if (stmt == null) { - try { - stmt = conn.createStatement(); - } catch (SQLException e) { - System.out.println("Problem with database init."); - } + Statement stmt = null; + try { + stmt = conn.createStatement(); + } catch (SQLException e) { + System.out.println("Problem with database init."); } return stmt; @@ -149,7 +147,7 @@ private static void initData() { executeSQLCommand("INSERT INTO SCORE (nick, score) VALUES('foo', 40)"); executeSQLCommand( - "INSERT INTO EMPLOYEE (first_name, last_name, salary) VALUES('foo', 'bar', 100)"); + "INSERT INTO EMPLOYEE (first_name, last_name, salary) VALUES('foo', 'bar', 34567)"); conn.commit(); } catch (Exception e1) { System.out.println("Problem with database init/reset: " + e1.getMessage()); @@ -171,10 +169,8 @@ public static java.sql.Connection getSqlConnection() { return conn; } - public static void executeSQLCommand(String sql) throws Exception { - if (stmt == null) { - getSqlStatement(); - } + private static void executeSQLCommand(String sql) throws Exception { + Statement stmt = getSqlStatement(); stmt.executeUpdate(sql); } diff --git a/src/main/java/org/owasp/benchmark/helpers/LDAPManager.java b/src/main/java/org/owasp/benchmark/helpers/LDAPManager.java index 80f963ad82..a07b00c24d 100644 --- a/src/main/java/org/owasp/benchmark/helpers/LDAPManager.java +++ b/src/main/java/org/owasp/benchmark/helpers/LDAPManager.java @@ -34,7 +34,7 @@ import org.owasp.esapi.reference.DefaultEncoder; /** - * A simple example exposing how to embed Apache Directory Server version 1.5.7 into an application. + * A simple example exposing how to embed Apache Directory Server into an application. * * @author Apache Directory Project * @version $Rev$, $Date$ @@ -48,13 +48,18 @@ public LDAPManager() { try { ctx = getDirContext(); } catch (NamingException e) { + // FIXME: Don't eat exceptions! System.out.println("Failed to get Directory Context: " + e.getMessage()); + e.printStackTrace(); } } protected Hashtable createEnv() { Hashtable env = new Hashtable(); env.put(Context.PROVIDER_URL, "ldap://localhost:10389"); + env.put(Context.SECURITY_AUTHENTICATION, "simple"); + env.put(Context.SECURITY_PRINCIPAL, "uid=admin,ou=system"); + env.put(Context.SECURITY_CREDENTIALS, "secret"); env.put(Context.INITIAL_CONTEXT_FACTORY, "com.sun.jndi.ldap.LdapCtxFactory"); return env; } @@ -107,19 +112,20 @@ private boolean search(LDAPPerson person) { NamingEnumeration results = ctx.search(base, filter, sc); + boolean foundUser = results.hasMore(); + while (results.hasMore()) { SearchResult sr = (SearchResult) results.next(); Attributes attrs = sr.getAttributes(); Attribute attr = attrs.get("uid"); if (attr != null) { - // logger.debug("record found " + attr.get()); // System.out.println("record found " + attr.get()); } } ctx.close(); - return true; + return foundUser; } catch (Exception e) { System.out.println("LDAP error search: "); e.printStackTrace(); diff --git a/src/main/java/org/owasp/benchmark/helpers/LDAPServer.java b/src/main/java/org/owasp/benchmark/helpers/LDAPServer.java index e05df1f7e9..ef356a0720 100644 --- a/src/main/java/org/owasp/benchmark/helpers/LDAPServer.java +++ b/src/main/java/org/owasp/benchmark/helpers/LDAPServer.java @@ -1,84 +1,107 @@ -/** - * OWASP Benchmark Project +/*- + * Licensed to the Apache Software Foundation (ASF) under one or more + * contributor license agreements. See the NOTICE file distributed with + * this work for additional information regarding copyright ownership. The + * ASF licenses this file to you under the Apache License, Version 2.0 (the + * "License"); you may not use this file except in compliance with the + * License. You may obtain a copy of the License at * - *

This file is part of the Open Web Application Security Project (OWASP) Benchmark Project For - * details, please see https://owasp.org/www-project-benchmark/. + * http://www.apache.org/licenses/LICENSE-2.0 * - *

The OWASP Benchmark is free software: you can redistribute it and/or modify it under the terms - * of the GNU General Public License as published by the Free Software Foundation, version 2. - * - *

The OWASP Benchmark is distributed in the hope that it will be useful, but WITHOUT ANY - * WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR - * PURPOSE. See the GNU General Public License for more details - * - * @author Juan GaMa - * @created 2015 + * Unless required by applicable law or agreed to in writing, software + * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT + * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the + * License for the specific language governing permissions and limitations + * under the License. */ + package org.owasp.benchmark.helpers; import java.io.File; -import java.util.HashSet; +import java.io.IOException; +import java.util.ArrayList; +import java.util.Arrays; +import java.util.Iterator; +import java.util.LinkedHashMap; import java.util.List; -import org.apache.directory.server.constants.ServerDNConstants; -import org.apache.directory.server.core.DefaultDirectoryService; -import org.apache.directory.server.core.DirectoryService; -import org.apache.directory.server.core.partition.Partition; +import java.util.Map; +import org.apache.commons.io.FileUtils; +import org.apache.directory.api.ldap.model.entry.Entry; +import org.apache.directory.api.ldap.model.exception.LdapException; +import org.apache.directory.api.ldap.model.schema.registries.DefaultSchema; +import org.apache.directory.api.ldap.model.schema.registries.Schema; +import org.apache.directory.api.ldap.schema.loader.JarLdifSchemaLoader; +import org.apache.directory.api.ldap.schema.loader.LdifSchemaLoader; +import org.apache.directory.server.core.api.CoreSession; +import org.apache.directory.server.core.api.DirectoryService; +import org.apache.directory.server.core.factory.DefaultDirectoryServiceFactory; +import org.apache.directory.server.core.factory.JdbmPartitionFactory; import org.apache.directory.server.core.partition.impl.btree.jdbm.JdbmIndex; import org.apache.directory.server.core.partition.impl.btree.jdbm.JdbmPartition; -import org.apache.directory.server.core.partition.ldif.LdifPartition; -import org.apache.directory.server.core.schema.SchemaPartition; import org.apache.directory.server.ldap.LdapServer; import org.apache.directory.server.protocol.shared.transport.TcpTransport; import org.apache.directory.server.xdbm.Index; -import org.apache.directory.shared.ldap.entry.ServerEntry; -import org.apache.directory.shared.ldap.name.DN; -import org.apache.directory.shared.ldap.schema.SchemaManager; -import org.apache.directory.shared.ldap.schema.ldif.extractor.SchemaLdifExtractor; -import org.apache.directory.shared.ldap.schema.ldif.extractor.impl.DefaultSchemaLdifExtractor; -import org.apache.directory.shared.ldap.schema.loader.ldif.LdifSchemaLoader; -import org.apache.directory.shared.ldap.schema.manager.impl.DefaultSchemaManager; -import org.apache.directory.shared.ldap.schema.registries.SchemaLoader; +import org.apache.directory.server.xdbm.IndexNotFoundException; +/** Call init() to start the server and destroy() to shut it down. */ public class LDAPServer { - /** The directory service */ - private DirectoryService service; + // API References: + // https://nightlies.apache.org/directory/apacheds/2.0.0.AM27/apidocs/ + // https://nightlies.apache.org/directory/api/2.2.3/ + + private static String BASE_PARTITION_NAME = "mydomain"; + private static String BASE_DOMAIN = "org"; + private static String BASE_STRUCTURE = "dc=" + BASE_PARTITION_NAME + ",dc=" + BASE_DOMAIN; + + private static int LDAP_SERVER_PORT = 10389; + private static int BASE_CACHE_SIZE = 1000; + private static List ATTR_NAMES_TO_INDEX = new ArrayList(Arrays.asList("uid")); + + private DirectoryService _directoryService; + private LdapServer _ldapServer; + private JdbmPartition _basePartition; + private boolean _deleteInstanceDirectoryOnStartup = true; + private boolean _deleteInstanceDirectoryOnShutdown = true; + + public String getBasePartitionName() { + return BASE_PARTITION_NAME; + } - /** The LDAP server */ - private LdapServer server; + public String getBaseStructure() { + return BASE_STRUCTURE; + } - public LDAPServer() { - String dir = - Utils.getFileFromClasspath( - "benchmark.properties", LDAPManager.class.getClassLoader()) - .getParent(); - File workDir = new File(dir + "/../ldap"); - workDir.mkdirs(); - - // Create the server - try { - initDirectoryService(workDir); - } catch (Exception e) { - System.out.println("Error creating LDAP Server: " + e.getMessage()); - } + public int getBaseCacheSize() { + return BASE_CACHE_SIZE; + } - // Read an entry - // Entry result = null; - try { - // result = - service.getAdminSession().lookup(new DN("dc=apache,dc=org")); - } catch (Exception e) { - System.out.println("Error creating LDAP Server: " + e.getMessage()); - } + public int getLdapServerPort() { + return LDAP_SERVER_PORT; + } + + public List getAttrNamesToIndex() { + return ATTR_NAMES_TO_INDEX; + } - // And print it if available - // System.out.println("Found entry : " + result); + protected void addSchemaExtensions() throws LdapException, IOException { + // override to add custom attributes to the schema + } - // optionally we can start a server too + public LDAPServer() { + // BEGIN HACK try { - startServer(); + String dir = + Utils.getFileFromClasspath( + "benchmark.properties", LDAPServer.class.getClassLoader()) + .getParent(); + File workDir = new File(dir + "/../ldap"); + workDir.mkdirs(); + System.setProperty("workingDiretory", workDir.getPath()); + + init(); } catch (Exception e) { - System.out.println("Error creating LDAP Server: " + e.getMessage()); + System.out.println("Error initializing LDAP Server: " + e.getMessage()); + e.printStackTrace(); } LDAPManager emd = new LDAPManager(); @@ -102,247 +125,251 @@ public LDAPServer() { ldapP.setAddress("Whe home is #678"); emd.insert(ldapP); + // END HACK } - /** - * Initialize the server. It creates the partition, adds the index, and injects the context - * entries for the created partitions. - * - * @param workDir the directory to be used for storing the data - * @throws Exception if there were some problems while initializing the system - */ - private void initDirectoryService(File workDir) { - // Initialize the LDAP service - try { - service = new DefaultDirectoryService(); - } catch (Exception e1) { - System.out.println("Error creating DefaultDirectoryService. " + e1.getMessage()); - e1.printStackTrace(); - } - service.setWorkingDirectory(workDir); + public void init() throws Exception { + if (getDirectoryService() == null) { + if (getDeleteInstanceDirectoryOnStartup()) { + deleteDirectory(getGuessedInstanceDirectory()); + } - // first load the schema - initSchemaPartition(); + DefaultDirectoryServiceFactory serviceFactory = new DefaultDirectoryServiceFactory(); + serviceFactory.init(getDirectoryServiceName()); + setDirectoryService(serviceFactory.getDirectoryService()); - // then the system partition - // this is a MANDATORY partition - Partition systemPartition = null; - try { - systemPartition = addPartition("system", ServerDNConstants.SYSTEM_DN); - } catch (Exception e1) { - System.out.println("Error addPartition system. " + e1.getMessage()); - e1.printStackTrace(); - } - service.setSystemPartition(systemPartition); + getDirectoryService().getChangeLog().setEnabled(false); + getDirectoryService().setDenormalizeOpAttrsEnabled(true); - // Disable the ChangeLog system - service.getChangeLog().setEnabled(false); - service.setDenormalizeOpAttrsEnabled(true); + createBasePartition(); - // Now we can create as many partitions as we need - // Create some new partitions named 'foo', 'bar' and 'apache'. - Partition fooPartition = null; - try { - fooPartition = addPartition("foo", "dc=foo,dc=com"); - } catch (Exception e1) { - System.out.println("Error addPartition foo. " + e1.getMessage()); - e1.printStackTrace(); + getDirectoryService().startup(); + + createRootEntry(); } - Partition barPartition = null; - try { - barPartition = addPartition("bar", "dc=bar,dc=com"); - } catch (Exception e1) { - System.out.println("Error addPartition bar. " + e1.getMessage()); - e1.printStackTrace(); + if (getLdapServer() == null) { + setLdapServer(new LdapServer()); + getLdapServer().setDirectoryService(getDirectoryService()); + getLdapServer().setTransports(new TcpTransport(getLdapServerPort())); + getLdapServer().start(); } + } - Partition apachePartition = null; - try { - apachePartition = addPartition("apache", "dc=apache,dc=org"); - } catch (Exception e1) { - System.out.println("Error addPartition apache. " + e1.getMessage()); - e1.printStackTrace(); + public void destroy() throws Exception { + File instanceDirectory = getDirectoryService().getInstanceLayout().getInstanceDirectory(); + getLdapServer().stop(); + getDirectoryService().shutdown(); + setLdapServer(null); + setDirectoryService(null); + if (getDeleteInstanceDirectoryOnShutdown()) { + deleteDirectory(instanceDirectory); } + } - // Index some attributes on the apache partition - addIndex(apachePartition, "objectClass", "ou", "uid"); - try { - // And start the service - service.startup(); - } catch (Exception e) { - System.out.println("Error at LDAP startup: " + e.getMessage()); - e.printStackTrace(); + public String getDirectoryServiceName() { + return getBasePartitionName() + "DirectoryService"; + } + + private static void deleteDirectory(File path) throws IOException { + FileUtils.deleteDirectory(path); + } + + protected void createBasePartition() throws Exception { + JdbmPartitionFactory jdbmPartitionFactory = new JdbmPartitionFactory(); + setBasePartition( + jdbmPartitionFactory.createPartition( + getDirectoryService().getSchemaManager(), + getDirectoryService().getDnFactory(), + getBasePartitionName(), + getBaseStructure(), + getBaseCacheSize(), + getBasePartitionPath())); + addSchemaExtensions(); + createBaseIndices(); + getDirectoryService().addPartition(getBasePartition()); + } + + protected void createBaseIndices() throws Exception { + // + // Default indices, that can be seen with getSystemIndexMap() and + // getUserIndexMap(), are minimal. There are no user indices by + // default and the default system indices are: + // + // apacheOneAlias, entryCSN, apacheSubAlias, apacheAlias, + // objectClass, apachePresence, apacheRdn, administrativeRole + // + for (String attrName : getAttrNamesToIndex()) { + getBasePartition().addIndex(createIndexObjectForAttr(attrName)); } + } - // Inject the foo root entry if it does not already exist - try { - service.getAdminSession().lookup(fooPartition.getSuffixDn()); - } catch (Exception lnnfe) { - try { - DN dnFoo = new DN("dc=foo,dc=com"); - ServerEntry entryFoo = service.newEntry(dnFoo); - entryFoo.add("objectClass", "top", "domain", "extensibleObject"); - entryFoo.add("dc", "foo"); - service.getAdminSession().add(entryFoo); - } catch (Exception e) { - System.out.println("Error creating new DN."); - e.printStackTrace(); - } + protected JdbmIndex createIndexObjectForAttr(String attrName, boolean withReverse) + throws LdapException { + String oid = getOidByAttributeName(attrName); + if (oid == null) { + throw new RuntimeException("OID could not be found for attr " + attrName); } + return new JdbmIndex(oid, withReverse); + } + + protected JdbmIndex createIndexObjectForAttr(String attrName) throws LdapException { + return createIndexObjectForAttr(attrName, false); + } - // Inject the bar root entry + protected void createRootEntry() throws LdapException { + Entry entry = + getDirectoryService() + .newEntry(getDirectoryService().getDnFactory().create(getBaseStructure())); + entry.add("objectClass", "top", "domain", "extensibleObject"); + entry.add("dc", getBasePartitionName()); + CoreSession session = getDirectoryService().getAdminSession(); try { - service.getAdminSession().lookup(barPartition.getSuffixDn()); - } catch (Exception lnnfe) { - try { - DN dnBar = new DN("dc=bar,dc=com"); - ServerEntry entryBar = service.newEntry(dnBar); - entryBar.add("objectClass", "top", "domain", "extensibleObject"); - entryBar.add("dc", "bar"); - service.getAdminSession().add(entryBar); - } catch (Exception e) { - System.out.println("Error creating new DN."); - e.printStackTrace(); - } + session.add(entry); + } finally { + session.unbind(); } + } - // Inject the apache root entry - try { - if (!service.getAdminSession().exists(apachePartition.getSuffixDn())) { - try { - DN dnApache = new DN("dc=Apache,dc=Org"); - ServerEntry entryApache = service.newEntry(dnApache); - entryApache.add("objectClass", "top", "domain", "extensibleObject"); - entryApache.add("dc", "Apache"); - service.getAdminSession().add(entryApache); - } catch (Exception e) { - System.out.println("Error creating new DN."); - e.printStackTrace(); - } - } - } catch (Exception e) { - System.out.println("Error when checking if partition exists."); - e.printStackTrace(); + /** @return A map where the key is the attribute name the value is the oid. */ + public Map getSystemIndexMap() throws IndexNotFoundException { + Map result = new LinkedHashMap<>(); + Iterator it = getBasePartition().getSystemIndices(); + while (it.hasNext()) { + String oid = it.next(); + Index index = + getBasePartition() + .getSystemIndex( + getDirectoryService().getSchemaManager().getAttributeType(oid)); + result.put(index.getAttribute().getName(), index.getAttributeId()); } + return result; } - /** - * initialize the schema manager and add the schema partition to diectory service - * - * @throws Exception if the schema LDIF files are not found on the classpath - */ - private void initSchemaPartition() { - SchemaPartition schemaPartition = service.getSchemaService().getSchemaPartition(); - - // Init the LdifPartition - LdifPartition ldifPartition = new LdifPartition(); - String workingDirectory = service.getWorkingDirectory().getPath(); - ldifPartition.setWorkingDirectory(workingDirectory + "/schema"); - - // Extract the schema on disk (a brand new one) and load the registries - File schemaRepository = new File(workingDirectory, "schema"); - File wd = new File(workingDirectory); - SchemaLdifExtractor extractor = new DefaultSchemaLdifExtractor(wd); - try { - extractor.extractOrCopy(true); - // System.out.println("is Extracted: " + extractor.isExtracted()); - } catch (Exception e) { - System.out.println("ERROR: parsing LDAP schema"); - e.printStackTrace(); + /** @return A map where the key is the attribute name the value is the oid. */ + public Map getUserIndexMap() throws IndexNotFoundException { + Map result = new LinkedHashMap<>(); + Iterator it = getBasePartition().getUserIndices(); + while (it.hasNext()) { + String oid = it.next(); + Index index = + getBasePartition() + .getUserIndex( + getDirectoryService().getSchemaManager().getAttributeType(oid)); + result.put(index.getAttribute().getName(), index.getAttributeId()); } + return result; + } - schemaPartition.setWrappedPartition(ldifPartition); - try { - SchemaLoader loader = new LdifSchemaLoader(schemaRepository); - SchemaManager schemaManager = new DefaultSchemaManager(loader); - service.setSchemaManager(schemaManager); + public File getPartitionsDirectory() { + return getDirectoryService().getInstanceLayout().getPartitionsDirectory(); + } - // We have to load the schema now, otherwise we won't be able - // to initialize the Partitions, as we won't be able to parse - // and normalize their suffix DN - schemaManager.loadAllEnabled(); - schemaPartition.setSchemaManager(schemaManager); + public File getBasePartitionPath() { + return new File(getPartitionsDirectory(), getBasePartitionName()); + } - List errors = schemaManager.getErrors(); + /** Used at init time to clear out the likely instance directory before anything is created. */ + public File getGuessedInstanceDirectory() { + // See source code for DefaultDirectoryServiceFactory + // buildInstanceDirectory. ApacheDS looks at the workingDirectory + // system property first and then defers to the java.io.tmpdir + // system property. + final String property = System.getProperty("workingDirectory"); + return new File( + property != null + ? property + : System.getProperty("java.io.tmpdir") + + File.separator + + "server-work-" + + getDirectoryServiceName()); + } - if (errors.size() != 0) { - throw new Exception("Schema load failed : " + errors); - } - } catch (Exception e) { - System.out.println("ERROR: loading LDAP schema"); - e.printStackTrace(); - } + public String getOidByAttributeName(String attrName) throws LdapException { + return getDirectoryService() + .getSchemaManager() + .getAttributeTypeRegistry() + .getOidByName(attrName); } /** - * Add a new partition to the server + * Add additional schemas to the directory server. This takes a path to the schema directory and + * uses the LdifSchemaLoader. * - * @param partitionId The partition Id - * @param partitionDn The partition DN - * @return The newly added partition - * @throws Exception If the partition can't be added + * @param schemaLocation The path to the directory containing the "ou=schema" directory for an + * additional schema + * @param schemaName The name of the schema + * @return true if the schemas have been loaded and the registries is consistent */ - private Partition addPartition(String partitionId, String partitionDn) throws Exception { - // Create a new partition named 'foo'. - JdbmPartition partition = new JdbmPartition(); - partition.setId(partitionId); - partition.setPartitionDir(new File(service.getWorkingDirectory(), partitionId)); - partition.setSuffix(partitionDn); - service.addPartition(partition); - - return partition; + public boolean addSchemaFromPath(File schemaLocation, String schemaName) + throws LdapException, IOException { + LdifSchemaLoader schemaLoader = new LdifSchemaLoader(schemaLocation); + DefaultSchema schema = new DefaultSchema(schemaLoader, schemaName); + return getDirectoryService().getSchemaManager().load(schema); } /** - * Add a new set of index on the given attributes + * Add additional schemas to the directory server. This uses JarLdifSchemaLoader, which will + * search for the "ou=schema" directory within "/schema" on the classpath. If packaging the + * schema as part of a jar using Gradle or Maven, you'd probably want to put your "ou=schema" + * directory in src/main/resources/schema. + * + *

It's also required that a META-INF/apacheds-schema.index be present in your classpath that + * lists each LDIF file in your schema directory. * - * @param partition The partition on which we want to add index - * @param attrs The list of attributes to index + * @param schemaName The name of the schema + * @return true if the schemas have been loaded and the registries is consistent */ - private void addIndex(Partition partition, String... attrs) { - // Index some attributes on the apache partition - HashSet> indexedAttributes = - new HashSet>(); + public boolean addSchemaFromClasspath(String schemaName) throws LdapException, IOException { + // To debug if your apacheds-schema.index isn't found: + // Enumeration indexes = + // getClass().getClassLoader().getResources("META-INF/apacheds-schema.index"); + JarLdifSchemaLoader schemaLoader = new JarLdifSchemaLoader(); + Schema schema = schemaLoader.getSchema(schemaName); + return schema != null && getDirectoryService().getSchemaManager().load(schema); + } - for (String attribute : attrs) { - indexedAttributes.add(new JdbmIndex(attribute)); - } + public DirectoryService getDirectoryService() { + return _directoryService; + } - ((JdbmPartition) partition).setIndexedAttributes(indexedAttributes); + public void setDirectoryService(DirectoryService directoryService) { + this._directoryService = directoryService; } - /** - * starts the LdapServer - * - * @throws Exception - */ - public void startServer() throws Exception { - server = new LdapServer(); - int serverPort = 10389; - server.setTransports(new TcpTransport(serverPort)); - server.setDirectoryService(service); - server.start(); - } - - public void stopServer() throws Exception { - if (server != null) { - server.stop(); - if (server.getDirectoryService() != null) { - server.getDirectoryService().shutdown(); - } - } + public LdapServer getLdapServer() { + return _ldapServer; } - /** - * Main class. - * - * @param args Not used. - * @throws Exception - */ - public static void main(String[] args) throws Exception { - // LDAPServer ldap = + public void setLdapServer(LdapServer ldapServer) { + this._ldapServer = ldapServer; + } + + public JdbmPartition getBasePartition() { + return _basePartition; + } + + public void setBasePartition(JdbmPartition basePartition) { + this._basePartition = basePartition; + } + + public boolean getDeleteInstanceDirectoryOnStartup() { + return _deleteInstanceDirectoryOnStartup; + } + + public void setDeleteInstanceDirectoryOnStartup(boolean deleteInstanceDirectoryOnStartup) { + this._deleteInstanceDirectoryOnStartup = deleteInstanceDirectoryOnStartup; + } + + public boolean getDeleteInstanceDirectoryOnShutdown() { + return _deleteInstanceDirectoryOnShutdown; + } + + public void setDeleteInstanceDirectoryOnShutdown(boolean deleteInstanceDirectoryOnShutdown) { + this._deleteInstanceDirectoryOnShutdown = deleteInstanceDirectoryOnShutdown; + } + + public static void main(String[] args) { new LDAPServer(); - // ldap.stopServer(); } } diff --git a/src/main/java/org/owasp/benchmark/helpers/Utils.java b/src/main/java/org/owasp/benchmark/helpers/Utils.java index b1a260811c..b815cad859 100644 --- a/src/main/java/org/owasp/benchmark/helpers/Utils.java +++ b/src/main/java/org/owasp/benchmark/helpers/Utils.java @@ -236,8 +236,6 @@ public static void printOSCommandResults(java.lang.Process proc, HttpServletResp try { // read the output from the command - // System.out.println("Here is the standard output of the - // command:\n"); out.write("Here is the standard output of the command:
"); String s = null; while ((s = stdInput.readLine()) != null) { @@ -246,8 +244,6 @@ public static void printOSCommandResults(java.lang.Process proc, HttpServletResp } // read any errors from the attempted command - // System.out.println("Here is the standard error of the command (if - // any):\n"); out.write("
Here is the std err of the command (if any):
"); while ((s = stdError.readLine()) != null) { out.write(ESAPI.encoder().encodeForHTML(s)); diff --git a/src/main/java/org/owasp/benchmark/report/sonarqube/SonarReport.java b/src/main/java/org/owasp/benchmark/report/sonarqube/SonarReport.java new file mode 100644 index 0000000000..c9fb1459f9 --- /dev/null +++ b/src/main/java/org/owasp/benchmark/report/sonarqube/SonarReport.java @@ -0,0 +1,129 @@ +package org.owasp.benchmark.report.sonarqube; + +import static java.lang.String.join; +import static java.nio.charset.Charset.defaultCharset; +import static org.apache.commons.io.FileUtils.writeStringToFile; +import static org.apache.commons.io.IOUtils.readLines; + +import com.fasterxml.jackson.core.JsonProcessingException; +import com.fasterxml.jackson.databind.ObjectMapper; +import java.io.File; +import java.io.IOException; +import java.net.HttpURLConnection; +import java.net.URL; +import java.util.ArrayList; +import java.util.Base64; +import java.util.HashSet; +import java.util.List; +import java.util.Set; +import java.util.function.Consumer; +import javax.xml.parsers.DocumentBuilderFactory; +import org.owasp.benchmark.report.sonarqube.dto.SonarQubeResult; + +public class SonarReport { + private static final String SONAR_USER = "admin"; + private static final String SONAR_PASSWORD = "P4ssword!!!!"; + private static final String SONAR_PROJECT = "benchmark"; + public static final String SONAR_HOST = "localhost"; + public static final String SONAR_PORT = "9876"; + + private static final int PAGE_SIZE = 500; + + private static final String sonarAuth = + Base64.getEncoder().encodeToString((SONAR_USER + ":" + SONAR_PASSWORD).getBytes()); + + private static final ObjectMapper objectMapper = new ObjectMapper(); + + public static void main(String[] args) throws Exception { + String allJavaRules = String.join(",", allJavaRules()); + List issues = new ArrayList<>(); + List hotspots = new ArrayList<>(); + + forAllPagesAt( + "issues/search?componentKeys=" + + SONAR_PROJECT + + "&types=VULNERABILITY&&rules=" + + allJavaRules, + (result -> issues.addAll(result.issues))); + forAllPagesAt( + "hotspots/search?projectKey=" + SONAR_PROJECT, + (result -> hotspots.addAll(result.hotspots))); + + writeStringToFile( + new File("results/" + resultFilename() + ".json"), + formattedJson(issues, hotspots), + defaultCharset()); + } + + private static String resultFilename() throws Exception { + return "Benchmark_" + benchmarkVersion() + "-sonarqube-v" + apiCall("server/version"); + } + + private static String benchmarkVersion() throws Exception { + return DocumentBuilderFactory.newInstance() + .newDocumentBuilder() + .parse(new File("pom.xml")) + .getElementsByTagName("version") + .item(0) + .getTextContent(); + } + + private static Set allJavaRules() throws IOException { + Set javaRuleIds = new HashSet<>(); + + forAllPagesAt( + "rules/search", + (result) -> + result.rules.stream() + .filter(rule -> rule.ruleId.startsWith("java:")) + .forEach(rule -> javaRuleIds.add(rule.ruleId))); + + return javaRuleIds; + } + + private static void forAllPagesAt(String apiPath, Consumer pageHandlerCallback) + throws IOException { + int pages; + int page = 1; + + do { + SonarQubeResult result = + objectMapper.readValue( + apiCall(apiPath + pagingSuffix(page, apiPath)), SonarQubeResult.class); + + pages = (result.paging.resultCount / PAGE_SIZE) + 1; + + pageHandlerCallback.accept(result); + + page++; + } while ((page - 1) < pages); + } + + private static String pagingSuffix(int page, String apiPath) { + return (apiPath.contains("?") ? "&" : "?") + "p=" + page + "&ps=" + PAGE_SIZE; + } + + private static String apiCall(String apiPath) throws IOException { + URL url = new URL("http://" + SONAR_HOST + ":" + SONAR_PORT + "/api/" + apiPath); + HttpURLConnection connection = (HttpURLConnection) url.openConnection(); + connection.setRequestMethod("GET"); + connection.setDoOutput(true); + connection.setRequestProperty("Authorization", "Basic " + sonarAuth); + + return join("\n", readLines(connection.getInputStream(), defaultCharset())); + } + + private static String formattedJson(List issues, List hotspots) + throws JsonProcessingException { + String sb = + "{\"issues\":[" + + join(",", issues) + + "],\"hotspots\":[" + + join(",", hotspots) + + "]}"; + + return objectMapper + .writerWithDefaultPrettyPrinter() + .writeValueAsString(objectMapper.readValue(sb, Object.class)); + } +} diff --git a/src/main/java/org/owasp/benchmark/report/sonarqube/dto/KeepAsJsonDeserializer.java b/src/main/java/org/owasp/benchmark/report/sonarqube/dto/KeepAsJsonDeserializer.java new file mode 100644 index 0000000000..67678e9986 --- /dev/null +++ b/src/main/java/org/owasp/benchmark/report/sonarqube/dto/KeepAsJsonDeserializer.java @@ -0,0 +1,27 @@ +package org.owasp.benchmark.report.sonarqube.dto; + +import com.fasterxml.jackson.core.JsonParser; +import com.fasterxml.jackson.core.ObjectCodec; +import com.fasterxml.jackson.core.TreeNode; +import com.fasterxml.jackson.databind.DeserializationContext; +import com.fasterxml.jackson.databind.JsonDeserializer; +import java.io.IOException; +import java.util.ArrayList; +import java.util.List; + +/** Credits to Roy Truelove */ +public class KeepAsJsonDeserializer extends JsonDeserializer> { + + @Override + public List deserialize(JsonParser jp, DeserializationContext ctxt) throws IOException { + ObjectCodec codec = jp.getCodec(); + TreeNode entries = codec.readTree(jp); + List result = new ArrayList<>(); + + for (int i = 0; i < entries.size(); i++) { + result.add(codec.readTree(codec.treeAsTokens(entries.get(i))).toString()); + } + + return result; + } +} diff --git a/src/main/java/org/owasp/benchmark/report/sonarqube/dto/SonarQubeResult.java b/src/main/java/org/owasp/benchmark/report/sonarqube/dto/SonarQubeResult.java new file mode 100644 index 0000000000..39806b0fda --- /dev/null +++ b/src/main/java/org/owasp/benchmark/report/sonarqube/dto/SonarQubeResult.java @@ -0,0 +1,34 @@ +package org.owasp.benchmark.report.sonarqube.dto; + +import com.fasterxml.jackson.annotation.JsonAlias; +import com.fasterxml.jackson.annotation.JsonIgnoreProperties; +import com.fasterxml.jackson.databind.annotation.JsonDeserialize; +import java.util.List; + +@JsonIgnoreProperties(ignoreUnknown = true) +public class SonarQubeResult { + + public Paging paging; + + public List rules; + + @JsonDeserialize(using = KeepAsJsonDeserializer.class) + public List issues; + + @JsonDeserialize(using = KeepAsJsonDeserializer.class) + public List hotspots; + + @JsonIgnoreProperties(ignoreUnknown = true) + public static class Paging { + + @JsonAlias("total") + public int resultCount; + } + + @JsonIgnoreProperties(ignoreUnknown = true) + public static class Rule { + + @JsonAlias("key") + public String ruleId; + } +} diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00001.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00001.java index 34c82096ba..e73f446962 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00001.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00001.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00001", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00001.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00001.xml deleted file mode 100644 index 03b3252dbd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00001.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00001 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00002.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00002.java index b31b6a3343..dc77999076 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00002.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00002.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00002", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00002.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00002.xml deleted file mode 100644 index d5abcf9dcf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00002.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00002 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00003.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00003.java index 501535c874..d03cdc0c7a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00003.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00003.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00003", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00003.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00003.xml deleted file mode 100644 index fbb31799dd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00003.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00003 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00004.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00004.java index beaa3b25c7..5362abd6af 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00004.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00004.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00004", "color"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00004.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00004.xml deleted file mode 100644 index 6634a9f5a8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00004.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00004 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00005.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00005.xml deleted file mode 100644 index 4da2b174bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00005.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00005 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00006.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00006.xml deleted file mode 100644 index 04d909b3fc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00006.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00006 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00007.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00007.xml deleted file mode 100644 index da0f8c3f2f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00007.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00007 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00008.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00008.java index 3d2710eec4..ec11e1db1d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00008.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00008.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00008.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00008.xml deleted file mode 100644 index 24d6ca4269..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00008.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00008 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00009.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00009.xml deleted file mode 100644 index eb26437bf5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00009.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00009 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00010.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00010.xml deleted file mode 100644 index 3814ea196a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00010.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00010 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00011.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00011.xml deleted file mode 100644 index 3c977cbb83..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00011.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00011 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00012.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00012.java index 5be39e80f9..a2c8ea62d9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00012.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00012.java @@ -78,12 +78,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00012.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00012.xml deleted file mode 100644 index c192d37993..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00012.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00012 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00013.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00013.xml deleted file mode 100644 index 480a54c2d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00013.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00013 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00014.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00014.xml deleted file mode 100644 index 404dc5ab1b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00014.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00014 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00015.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00015.xml deleted file mode 100644 index db1853b87a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00015.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00015 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00016.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00016.xml deleted file mode 100644 index 65bca1f68c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00016.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00016 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00017.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00017.xml deleted file mode 100644 index 5a639a2e2a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00017.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00017 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00018.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00018.java index df9dae2ab5..570da1f4b2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00018.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00018.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00018.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00018.xml deleted file mode 100644 index 34d471e86f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00018.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00018 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00019.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00019.xml deleted file mode 100644 index ae149e599b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00019.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00019 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00020.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00020.xml deleted file mode 100644 index f68be40233..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00020.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00020 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00021.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00021.java index 0b469a363f..d8446f7a5b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00021.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00021.java @@ -53,7 +53,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + param + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -69,12 +68,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00021.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00021.xml deleted file mode 100644 index e641a04d7b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00021.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00021 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00022.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00022.xml deleted file mode 100644 index 65ab75d943..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00022.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00022 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00023.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00023.xml deleted file mode 100644 index 440bf01fdc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00023.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00023 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00024.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00024.java index a43678bea5..69dd949556 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00024.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00024.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00024.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00024.xml deleted file mode 100644 index f6b1ac5ce8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00024.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00024 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00025.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00025.xml deleted file mode 100644 index 452ab82a72..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00025.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00025 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00026.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00026.java index dcdda02691..f21b0f7e51 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00026.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00026.java @@ -50,7 +50,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -60,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00026.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00026.xml deleted file mode 100644 index f3c3ec3c64..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00026.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00026 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00027.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00027.java index 27344a048a..96584b94ac 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00027.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00027.java @@ -54,7 +54,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00027.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00027.xml deleted file mode 100644 index c1cedbb728..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00027.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00027 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00028.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00028.xml deleted file mode 100644 index 824772a4a8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00028.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00028 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00029.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00029.xml deleted file mode 100644 index 8714c42a8f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00029.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00029 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00030.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00030.xml deleted file mode 100644 index 9126faa35e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00030.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00030 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00031.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00031.xml deleted file mode 100644 index c1354ec57d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00031.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00031 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00032.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00032.xml deleted file mode 100644 index a74f0a77a5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00032.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00032 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00033.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00033.java index bcfa5d1d4f..9f0e81b955 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00033.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00033.java @@ -54,7 +54,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -64,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00033.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00033.xml deleted file mode 100644 index aa10e05a2b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00033.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00033 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00034.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00034.java index a4967179a2..2b2bf49380 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00034.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00034.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00034.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00034.xml deleted file mode 100644 index e83c332d17..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00034.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00034 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00035.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00035.xml deleted file mode 100644 index ca9ed7b253..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00035.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00035 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00036.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00036.xml deleted file mode 100644 index 5e6826b870..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00036.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00036 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00037.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00037.java index e3babd8a10..fa0c496939 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00037.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00037.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00037.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00037.xml deleted file mode 100644 index ec6b6ed64d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00037.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00037 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00038.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00038.xml deleted file mode 100644 index 1862db7159..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00038.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00038 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00039.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00039.java index d4fce4685b..bf84118b9b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00039.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00039.java @@ -65,10 +65,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00039.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00039.xml deleted file mode 100644 index a0b0f9b34b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00039.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00039 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00040.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00040.xml deleted file mode 100644 index 25be31ae02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00040.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00040 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00041.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00041.xml deleted file mode 100644 index eb5bc41f86..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00041.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00041 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00042.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00042.xml deleted file mode 100644 index f46c41ae16..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00042.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00042 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00043.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00043.java index e20d25a567..104933d89f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00043.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00043.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00043.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00043.xml deleted file mode 100644 index 064d7534ed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00043.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00043 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00044.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00044.java index 58d299d619..2ec3f16ba0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00044.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00044.java @@ -54,7 +54,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + param + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -70,12 +69,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00044.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00044.xml deleted file mode 100644 index 7b7694d031..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00044.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00044 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00045.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00045.xml deleted file mode 100644 index fa2489862d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00045.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00045 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00046.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00046.xml deleted file mode 100644 index 6d91df1f28..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00046.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00046 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00047.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00047.xml deleted file mode 100644 index 18005b23b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00047.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00047 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00048.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00048.xml deleted file mode 100644 index 9a286afd8b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00048.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00048 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00049.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00049.xml deleted file mode 100644 index b2e398eb88..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00049.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00049 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00050.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00050.xml deleted file mode 100644 index 49c2a1db24..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00050.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00050 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00051.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00051.xml deleted file mode 100644 index 5dbb6ea82b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00051.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00051 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00052.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00052.java index caa0f14615..59b2dadcfa 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00052.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00052.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00052.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00052.xml deleted file mode 100644 index b4cafbdd40..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00052.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00052 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00053.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00053.java index d2b0b30ed1..d81814939e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00053.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00053.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00053", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00053.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00053.xml deleted file mode 100644 index a347665aec..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00053.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00053 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00054.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00054.java index f768641462..863669de67 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00054.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00054.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00054", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00054.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00054.xml deleted file mode 100644 index c81063cde9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00054.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00054 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00055.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00055.java index 23bd9f8d49..a6a592295e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00055.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00055.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00055", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00055.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00055.xml deleted file mode 100644 index 3a11b6f186..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00055.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00055 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00056.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00056.java index 29390d6190..54a9fd69c3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00056.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00056.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00056", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00056.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00056.xml deleted file mode 100644 index 566383ceaf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00056.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00056 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00057.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00057.java index 4ef862d5ae..658e3f4ada 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00057.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00057.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00057", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00057.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00057.xml deleted file mode 100644 index 54eae91735..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00057.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00057 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00058.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00058.java index 7d03df2baf..ae85e972df 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00058.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00058.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00058", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00058.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00058.xml deleted file mode 100644 index 0418691081..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00058.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00058 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00059.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00059.java index 2a138ea63b..1cb4de6512 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00059.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00059.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00059", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00059.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00059.xml deleted file mode 100644 index 5b245594d2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00059.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00059 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00060.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00060.java index a64f933d3e..b820ede91e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00060.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00060.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00060", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00060.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00060.xml deleted file mode 100644 index f401fff603..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00060.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00060 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00061.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00061.java index e0d2e00369..593e2844c7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00061.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00061.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00061", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00061.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00061.xml deleted file mode 100644 index 184e7e431e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00061.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00061 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00062.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00062.java index 44f0ea70b7..5b5635ef84 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00062.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00062.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00062", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00062.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00062.xml deleted file mode 100644 index b89a229dd1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00062.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00062 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00063.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00063.java index 3e9550a7ea..101c2ec7b1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00063.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00063.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00063", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00063.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00063.xml deleted file mode 100644 index 5fb67f8c68..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00063.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00063 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00064.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00064.java index 79a829e3b4..e410c7dcc8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00064.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00064.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00064", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00064.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00064.xml deleted file mode 100644 index 2285a45420..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00064.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00064 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00065.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00065.java index 483faac90e..39332e749e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00065.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00065.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00065", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00065.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00065.xml deleted file mode 100644 index 9d5cea9dce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00065.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00065 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00066.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00066.java index 81f632e646..acc55ddbc8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00066.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00066.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00066", "anything"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00066.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00066.xml deleted file mode 100644 index 5bfd5a452c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00066.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00066 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00067.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00067.java index 625cb93271..d88b5cef0b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00067.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00067.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00067", "anything"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00067.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00067.xml deleted file mode 100644 index 447e5a7bcd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00067.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00067 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00068.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00068.java index a767d4fed3..67f221bf7a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00068.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00068.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00068", "anything"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00068.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00068.xml deleted file mode 100644 index fd356997d4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00068.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00068 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00069.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00069.java index 508d372969..1ab7819ded 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00069.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00069.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00069", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00069.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00069.xml deleted file mode 100644 index f5b846823a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00069.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00069 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00070.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00070.java index 594071e2b8..de85692a69 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00070.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00070.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00070", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00070.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00070.xml deleted file mode 100644 index 4d7380573e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00070.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00070 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00071.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00071.java index a2400b31c9..ed35f855d5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00071.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00071.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00071", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00071.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00071.xml deleted file mode 100644 index f5073c204f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00071.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00071 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00072.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00072.java index afa3284c57..3e7494cac0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00072.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00072.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00072", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00072.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00072.xml deleted file mode 100644 index 2c178b8cb9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00072.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00072 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00073.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00073.java index 6aa740440a..3649bc54f7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00073.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00073.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00073", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00073.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00073.xml deleted file mode 100644 index 40259a0c39..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00073.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00073 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00074.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00074.java index b1cc4ddfc2..8bd31f4615 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00074.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00074.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00074", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00074.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00074.xml deleted file mode 100644 index 4637d8fe4f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00074.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00074 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00075.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00075.java index 5722b0bc4c..933dcd41df 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00075.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00075.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00075", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00075.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00075.xml deleted file mode 100644 index f159ca826a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00075.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00075 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00076.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00076.java index 3b38ebb83c..63d04920bf 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00076.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00076.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00076", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00076.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00076.xml deleted file mode 100644 index 3bcd6641a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00076.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00076 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00077.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00077.java index d929ba6934..4207a3a51b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00077.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00077.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00077", "ECHOOO"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00077.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00077.xml deleted file mode 100644 index 7d8cea978c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00077.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00077 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00078.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00078.java index 5773c9d2a4..d06382a80b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00078.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00078.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00078", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00078.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00078.xml deleted file mode 100644 index c0514ea610..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00078.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00078 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00079.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00079.java index 0cc7c196d8..2e59caf4c0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00079.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00079.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00079", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00079.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00079.xml deleted file mode 100644 index 9ba60a0623..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00079.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00079 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00080.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00080.java index b39fc2434f..8ae7030d82 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00080.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00080.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00080", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00080.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00080.xml deleted file mode 100644 index 3af5fde760..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00080.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00080 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00081.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00081.java index a0b486ee75..6c1dfadc82 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00081.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00081.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00081", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00081.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00081.xml deleted file mode 100644 index e55c702513..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00081.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00081 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00082.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00082.java index c0de01c39c..df3b3fe6d7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00082.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00082.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00082", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00082.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00082.xml deleted file mode 100644 index 21be874488..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00082.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00082 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00083.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00083.java index 6f509bf5de..f39a343b82 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00083.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00083.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00083", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00083.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00083.xml deleted file mode 100644 index 91ac15698a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00083.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00083 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00084.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00084.java index 03c3eb0cb3..960571150e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00084.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00084.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00084", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00084.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00084.xml deleted file mode 100644 index 61371bd5c5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00084.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00084 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00085.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00085.java index 3cd977db9e..91087125dc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00085.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00085.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00085", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00085.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00085.xml deleted file mode 100644 index e911cbf6a8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00085.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00085 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00086.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00086.java index cd31ec9742..9c4560b01d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00086.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00086.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00086", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00086.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00086.xml deleted file mode 100644 index 6cfb533c46..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00086.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00086 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00087.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00087.java index 460086f96c..ac652c09a9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00087.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00087.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00087", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00087.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00087.xml deleted file mode 100644 index e6facb5636..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00087.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00087 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00088.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00088.java index 4da3391033..70b9ee5894 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00088.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00088.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00088", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00088.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00088.xml deleted file mode 100644 index 4f21971206..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00088.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00088 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00089.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00089.java index ff09d01f11..0516ed95eb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00089.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00089.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00089", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00089.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00089.xml deleted file mode 100644 index 2aa66745c9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00089.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00089 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00090.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00090.java index 6f045cb9f0..a75acdf76c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00090.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00090.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00090", "ls"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00090.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00090.xml deleted file mode 100644 index 2b7a0965d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00090.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00090 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00091.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00091.java index 4a983d3ca6..4bda8e8318 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00091.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00091.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00091", "FOO%3Decho+Injection"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00091.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00091.xml deleted file mode 100644 index 603cce9843..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00091.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00091 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00092.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00092.java index 9421950e43..17c051e6ff 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00092.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00092.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00092", "FOO%3Decho+Injection"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00092.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00092.xml deleted file mode 100644 index 0d2b65a512..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00092.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00092 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00093.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00093.java index 56372b8c82..92a1d76790 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00093.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00093.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00093", "ls"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00093.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00093.xml deleted file mode 100644 index 04207d6f6e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00093.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00093 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00094.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00094.java index f6e2b83b29..5def6e3b17 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00094.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00094.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00094", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00094.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00094.xml deleted file mode 100644 index 50502193fd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00094.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00094 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00095.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00095.java index d817be4a47..2ed886d0eb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00095.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00095.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00095", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00095.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00095.xml deleted file mode 100644 index 4b10b3cd68..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00095.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00095 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00096.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00096.java index 53537aea13..cae48fe1b9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00096.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00096.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00096", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00096.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00096.xml deleted file mode 100644 index 0b0089e379..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00096.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00096 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00097.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00097.java index 10fe45f85c..71dbfb01f7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00097.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00097.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00097", "color"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00097.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00097.xml deleted file mode 100644 index 87195c1db8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00097.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00097 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00098.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00098.java index daeadc40ef..3ebab68e6a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00098.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00098.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00098", "my_user_id"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00098.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00098.xml deleted file mode 100644 index aadda88c3e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00098.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00098 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00099.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00099.java index bc8c41f140..dd7ff9c11b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00099.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00099.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00099", "my_userid"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00099.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00099.xml deleted file mode 100644 index dccc277ff7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00099.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00099 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00100.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00100.java index 9e8349062c..053f64f9d2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00100.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00100.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00100", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -86,7 +87,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00100.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00100.xml deleted file mode 100644 index 99ad90aab5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00100.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00100 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00101.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00101.java index 3ed4c9a6a4..b68525bb83 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00101.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00101.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00101", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -87,7 +88,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00101.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00101.xml deleted file mode 100644 index 3ec7b95b1d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00101.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00101 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00102.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00102.java index f1b552dd7f..1f8c43448b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00102.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00102.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00102", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -73,10 +74,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00102.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00102.xml deleted file mode 100644 index c67488cf42..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00102.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00102 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00103.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00103.java index d3845ed61d..475722d2d0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00103.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00103.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00103", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -77,10 +78,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00103.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00103.xml deleted file mode 100644 index d1cd9224fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00103.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00103 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00104.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00104.java index 2794ec8e11..90121f9dc6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00104.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00104.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00104", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00104.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00104.xml deleted file mode 100644 index 30aea4ce65..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00104.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00104 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00105.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00105.java index 6d5d0f5b5f..36d79d7f59 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00105.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00105.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00105", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -80,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00105.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00105.xml deleted file mode 100644 index 5e593c3f8d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00105.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00105 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00106.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00106.java index e844eb8d45..4efb36d365 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00106.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00106.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00106", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -84,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00106.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00106.xml deleted file mode 100644 index 6f8ceac731..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00106.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00106 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00107.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00107.java index 37994ba345..c2264363b2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00107.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00107.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00107", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -95,7 +96,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00107.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00107.xml deleted file mode 100644 index e7434b0fb4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00107.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00107 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00108.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00108.java index 936abe8572..dae1e43878 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00108.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00108.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00108", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -93,7 +94,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00108.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00108.xml deleted file mode 100644 index 7a02a0f843..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00108.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00108 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00109.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00109.java index 2816bc4edc..75a07e02f1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00109.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00109.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00109", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -81,7 +82,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00109.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00109.xml deleted file mode 100644 index b6a664e5ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00109.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00109 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00110.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00110.java index 3bb8262098..830d54cd06 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00110.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00110.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00110", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -95,7 +96,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00110.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00110.xml deleted file mode 100644 index 85a9c9673d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00110.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00110 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00111.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00111.java index 70ff23ca68..b92ec2b24f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00111.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00111.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00111", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -84,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00111.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00111.xml deleted file mode 100644 index e980a6407a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00111.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00111 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00112.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00112.java index fdef001896..9c5e5cea8f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00112.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00112.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00112", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -76,7 +77,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00112.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00112.xml deleted file mode 100644 index 143215440b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00112.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00112 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00113.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00113.java index fb9bc79c7c..6cd16cd6e0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00113.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00113.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00113", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -80,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00113.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00113.xml deleted file mode 100644 index 09839cf5df..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00113.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00113 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00114.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00114.java index 996189bce3..50ba62e19b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00114.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00114.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00114", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -79,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00114.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00114.xml deleted file mode 100644 index 48b733ea96..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00114.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00114 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00115.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00115.java index 677548bb40..d1e117c2cc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00115.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00115.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00115", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -79,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00115.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00115.xml deleted file mode 100644 index b19b2ff2f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00115.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00115 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00116.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00116.java index 6ffcc0b757..52780ea198 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00116.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00116.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00116", "2222"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00116.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00116.xml deleted file mode 100644 index 0b47e5b5e2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00116.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00116 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00117.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00117.java index 9829ccc8a1..306bed91e5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00117.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00117.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00117", "2222"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00117.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00117.xml deleted file mode 100644 index 8bc6659488..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00117.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00117 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00118.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00118.java index c768c2a1c8..0620c992a8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00118.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00118.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00118", "2222"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00118.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00118.xml deleted file mode 100644 index 8291a47487..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00118.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00118 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00119.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00119.xml deleted file mode 100644 index f761d3a1f4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00119.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00119 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00120.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00120.xml deleted file mode 100644 index 2c6c3aff00..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00120.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00120 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00121.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00121.xml deleted file mode 100644 index 8f1d995880..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00121.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00121 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00122.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00122.xml deleted file mode 100644 index 94f3cb8f9f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00122.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00122 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00123.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00123.xml deleted file mode 100644 index d61a2c1ea8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00123.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00123 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00124.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00124.xml deleted file mode 100644 index 6cdfaed235..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00124.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00124 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00125.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00125.xml deleted file mode 100644 index 31c6eef21f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00125.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00125 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00126.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00126.xml deleted file mode 100644 index 2b3975bd58..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00126.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00126 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00127.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00127.xml deleted file mode 100644 index 714d02be7f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00127.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00127 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00128.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00128.xml deleted file mode 100644 index ed63367aaf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00128.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00128 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00129.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00129.xml deleted file mode 100644 index 02b8c9b623..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00129.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00129 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00130.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00130.xml deleted file mode 100644 index 8fb77f577c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00130.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00130 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00131.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00131.xml deleted file mode 100644 index 6b4898b2b8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00131.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00131 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00132.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00132.xml deleted file mode 100644 index 4e0c02076d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00132.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00132 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00133.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00133.xml deleted file mode 100644 index 0b4051532e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00133.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00133 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00134.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00134.xml deleted file mode 100644 index fcb220ee09..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00134.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00134 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00135.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00135.xml deleted file mode 100644 index 944bc5ce97..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00135.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00135 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00136.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00136.xml deleted file mode 100644 index d6abe00c4a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00136.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00136 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00137.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00137.xml deleted file mode 100644 index 870ee36177..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00137.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00137 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00138.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00138.java index 04d28e6ef7..1f37a44ee3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00138.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00138.java @@ -82,12 +82,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00138.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00138.xml deleted file mode 100644 index 5484cc39d7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00138.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00138 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00139.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00139.java index 06f78927f9..bd479db1b3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00139.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00139.java @@ -98,12 +98,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00139.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00139.xml deleted file mode 100644 index 013ec2c1cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00139.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00139 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00140.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00140.xml deleted file mode 100644 index 961ebfde1f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00140.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00140 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00141.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00141.xml deleted file mode 100644 index e84d63c35e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00141.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00141 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00142.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00142.xml deleted file mode 100644 index 9db1bfd906..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00142.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00142 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00143.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00143.xml deleted file mode 100644 index 51425fa753..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00143.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00143 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00144.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00144.xml deleted file mode 100644 index 9d505bd135..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00144.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00144 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00145.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00145.xml deleted file mode 100644 index 5a78e13da9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00145.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00145 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00146.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00146.xml deleted file mode 100644 index 980424c744..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00146.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00146 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00147.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00147.xml deleted file mode 100644 index faa938ee31..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00147.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00147 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00148.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00148.xml deleted file mode 100644 index 901c46da9e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00148.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00148 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00149.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00149.xml deleted file mode 100644 index 47e6f0263b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00149.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00149 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00150.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00150.xml deleted file mode 100644 index 46a3f5f121..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00150.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00150 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00151.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00151.xml deleted file mode 100644 index fee2155021..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00151.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00151 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00152.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00152.xml deleted file mode 100644 index 6da6a7b2c5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00152.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00152 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00153.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00153.xml deleted file mode 100644 index 59a23f559e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00153.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00153 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00154.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00154.xml deleted file mode 100644 index 2f65dad561..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00154.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00154 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00155.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00155.xml deleted file mode 100644 index dafa7c273e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00155.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00155 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00156.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00156.xml deleted file mode 100644 index dc873f8d30..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00156.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00156 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00157.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00157.xml deleted file mode 100644 index f786a1efeb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00157.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00157 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00158.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00158.xml deleted file mode 100644 index 7a8a9f552b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00158.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00158 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00159.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00159.xml deleted file mode 100644 index 8c756c6d71..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00159.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00159 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00160.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00160.xml deleted file mode 100644 index 2e7e989415..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00160.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00160 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00161.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00161.xml deleted file mode 100644 index 0d03ecc7a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00161.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00161 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00162.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00162.xml deleted file mode 100644 index 32a6b1c37b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00162.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00162 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00163.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00163.xml deleted file mode 100644 index 1e4a3d5c64..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00163.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00163 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00164.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00164.xml deleted file mode 100644 index ae4836138a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00164.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00164 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00165.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00165.xml deleted file mode 100644 index 24491e73f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00165.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00165 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00166.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00166.xml deleted file mode 100644 index 604f39f767..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00166.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00166 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00167.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00167.xml deleted file mode 100644 index 39fa41643a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00167.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00167 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00168.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00168.xml deleted file mode 100644 index 86c753b4db..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00168.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00168 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00169.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00169.xml deleted file mode 100644 index b204408c37..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00169.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00169 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00170.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00170.xml deleted file mode 100644 index b17d24df56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00170.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00170 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00171.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00171.xml deleted file mode 100644 index 28e65ed02e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00171.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00171 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00172.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00172.xml deleted file mode 100644 index 5f5c07f581..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00172.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00172 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00173.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00173.xml deleted file mode 100644 index 2f05498ba1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00173.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00173 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00174.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00174.xml deleted file mode 100644 index fb7730f42f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00174.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00174 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00175.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00175.xml deleted file mode 100644 index 2bc98b6c45..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00175.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00175 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00176.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00176.xml deleted file mode 100644 index b304590a5b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00176.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00176 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00177.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00177.xml deleted file mode 100644 index 6b7af347a9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00177.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00177 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00178.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00178.xml deleted file mode 100644 index fed80ba5b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00178.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00178 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00179.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00179.xml deleted file mode 100644 index e2e813b4c6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00179.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00179 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00180.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00180.xml deleted file mode 100644 index 2843ff32ac..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00180.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00180 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00181.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00181.xml deleted file mode 100644 index 3051e22f20..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00181.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00181 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00182.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00182.xml deleted file mode 100644 index df399b6a2f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00182.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00182 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00183.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00183.xml deleted file mode 100644 index 43ce40c20b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00183.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00183 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00184.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00184.xml deleted file mode 100644 index 3f6dbe39b8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00184.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00184 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00185.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00185.xml deleted file mode 100644 index 1497eda0ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00185.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00185 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00186.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00186.xml deleted file mode 100644 index 37cef318f3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00186.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00186 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00187.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00187.xml deleted file mode 100644 index 7210f70cb9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00187.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00187 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00188.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00188.xml deleted file mode 100644 index 71f96817f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00188.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00188 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00189.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00189.xml deleted file mode 100644 index 0f5ac378d2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00189.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00189 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00190.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00190.java index a30e0c9b4a..30e5bb6445 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00190.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00190.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00190.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00190.xml deleted file mode 100644 index 5e09a8ea13..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00190.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00190 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00191.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00191.java index 9be0c09e50..ab07adda29 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00191.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00191.java @@ -84,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00191.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00191.xml deleted file mode 100644 index 85c2b94e67..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00191.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00191 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00192.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00192.java index 605094f65b..a3ae33a0e3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00192.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00192.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00192.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00192.xml deleted file mode 100644 index 0dee1de6c9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00192.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00192 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00193.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00193.java index f8930ef516..4e78da6a4c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00193.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00193.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00193.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00193.xml deleted file mode 100644 index a281b626d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00193.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00193 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00194.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00194.xml deleted file mode 100644 index 5aefdd8e5b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00194.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00194 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00195.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00195.xml deleted file mode 100644 index 94434a9c32..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00195.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00195 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00196.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00196.xml deleted file mode 100644 index e62b0805ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00196.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00196 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00197.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00197.xml deleted file mode 100644 index e3a7dba2d5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00197.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00197 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00198.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00198.java index 52d3c7cd36..dfaec5529c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00198.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00198.java @@ -53,6 +53,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = thing.doSomething(param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -60,7 +61,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00198.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00198.xml deleted file mode 100644 index a9213dd29f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00198.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00198 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00199.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00199.java index b0239488b1..6415a33187 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00199.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00199.java @@ -56,6 +56,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) else bar = "This should never happen"; String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -63,7 +64,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00199.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00199.xml deleted file mode 100644 index 4ae9641dd7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00199.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00199 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00200.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00200.xml deleted file mode 100644 index fc9901665f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00200.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00200 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00201.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00201.xml deleted file mode 100644 index 90025e61b7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00201.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00201 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00202.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00202.java index c0f68de0fe..ea4a46c8e8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00202.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00202.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00202.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00202.xml deleted file mode 100644 index 5ab898b5f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00202.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00202 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00203.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00203.java index 2af476ffab..f2873cc0a5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00203.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00203.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00203.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00203.xml deleted file mode 100644 index 430efc06e5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00203.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00203 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00204.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00204.java index 0c57cef4ad..8a3fffd4b6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00204.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00204.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00204.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00204.xml deleted file mode 100644 index 20d3a60fff..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00204.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00204 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00205.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00205.java index 354f00c304..49f62bf973 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00205.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00205.java @@ -70,7 +70,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00205.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00205.xml deleted file mode 100644 index 9a879f4332..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00205.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00205 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00206.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00206.java index 95014bc39f..921125b708 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00206.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00206.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00206.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00206.xml deleted file mode 100644 index c12f3f0ea8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00206.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00206 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00207.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00207.xml deleted file mode 100644 index c62ac0c4d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00207.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00207 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00208.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00208.xml deleted file mode 100644 index d3ed466a6d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00208.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00208 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00209.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00209.xml deleted file mode 100644 index 0079147404..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00209.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00209 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00210.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00210.xml deleted file mode 100644 index 14e97b4805..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00210.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00210 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00211.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00211.xml deleted file mode 100644 index f7ed1e8441..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00211.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00211 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00212.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00212.xml deleted file mode 100644 index f7bcf32e8c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00212.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00212 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00213.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00213.xml deleted file mode 100644 index 194eb32ac7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00213.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00213 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00214.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00214.xml deleted file mode 100644 index 0ca7e65ad9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00214.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00214 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00215.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00215.xml deleted file mode 100644 index 625c508c02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00215.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00215 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00216.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00216.xml deleted file mode 100644 index 88ad747f70..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00216.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00216 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00217.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00217.xml deleted file mode 100644 index 984b2e44f9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00217.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00217 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00218.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00218.xml deleted file mode 100644 index f1445cf654..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00218.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00218 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00219.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00219.xml deleted file mode 100644 index 002ff83cfc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00219.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00219 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00220.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00220.xml deleted file mode 100644 index d06be37e7f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00220.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00220 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00221.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00221.xml deleted file mode 100644 index 692c6b1bf0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00221.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00221 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00222.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00222.xml deleted file mode 100644 index f51836134d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00222.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00222 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00223.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00223.xml deleted file mode 100644 index e7607f99c5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00223.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00223 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00224.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00224.xml deleted file mode 100644 index 796ef0d832..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00224.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00224 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00225.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00225.xml deleted file mode 100644 index fb4620ad84..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00225.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00225 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00226.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00226.xml deleted file mode 100644 index 405676a7dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00226.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00226 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00227.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00227.xml deleted file mode 100644 index b16cfce308..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00227.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00227 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00228.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00228.xml deleted file mode 100644 index 4053f88411..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00228.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00228 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00229.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00229.xml deleted file mode 100644 index 326f452473..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00229.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00229 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00230.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00230.xml deleted file mode 100644 index 3577dffc17..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00230.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00230 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00231.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00231.xml deleted file mode 100644 index f1beb934bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00231.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00231 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00232.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00232.xml deleted file mode 100644 index d4e093effb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00232.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00232 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00233.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00233.xml deleted file mode 100644 index 545c3690b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00233.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00233 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00234.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00234.xml deleted file mode 100644 index 3351d654c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00234.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00234 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00235.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00235.xml deleted file mode 100644 index 0a2aa3fae0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00235.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00235 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00236.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00236.xml deleted file mode 100644 index 4ff8af5e72..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00236.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00236 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00237.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00237.xml deleted file mode 100644 index 7d53aba2ec..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00237.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00237 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00238.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00238.xml deleted file mode 100644 index 2e49f14b63..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00238.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00238 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00239.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00239.xml deleted file mode 100644 index d20cc2870b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00239.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00239 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00240.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00240.xml deleted file mode 100644 index bcc44d1eb3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00240.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00240 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00241.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00241.xml deleted file mode 100644 index ebcfd4da0f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00241.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00241 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00242.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00242.xml deleted file mode 100644 index 9e3ae741c9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00242.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00242 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00243.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00243.xml deleted file mode 100644 index 56b77a3c4d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00243.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00243 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00244.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00244.xml deleted file mode 100644 index a59d886462..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00244.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00244 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00245.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00245.xml deleted file mode 100644 index b0cf81a331..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00245.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00245 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00246.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00246.xml deleted file mode 100644 index 678878efdd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00246.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00246 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00247.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00247.xml deleted file mode 100644 index 71de4d7a27..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00247.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00247 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00248.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00248.xml deleted file mode 100644 index 781ea8b390..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00248.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00248 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00249.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00249.xml deleted file mode 100644 index 7cc548ca5d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00249.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00249 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00250.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00250.xml deleted file mode 100644 index 140f9dc84e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00250.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00250 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00251.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00251.xml deleted file mode 100644 index f6d295f5be..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00251.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00251 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00252.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00252.xml deleted file mode 100644 index ec2c7aa674..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00252.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00252 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00253.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00253.xml deleted file mode 100644 index 6f385bc072..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00253.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00253 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00254.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00254.xml deleted file mode 100644 index b6e56e061b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00254.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00254 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00255.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00255.xml deleted file mode 100644 index c17999bf43..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00255.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00255 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00256.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00256.xml deleted file mode 100644 index d5577bc6f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00256.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00256 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00257.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00257.xml deleted file mode 100644 index 824c4eade2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00257.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00257 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00258.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00258.xml deleted file mode 100644 index 08a234b8e2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00258.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00258 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00259.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00259.xml deleted file mode 100644 index 0e9092a9f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00259.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00259 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00260.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00260.xml deleted file mode 100644 index 5760dea21f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00260.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00260 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00261.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00261.xml deleted file mode 100644 index 8dacb18c06..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00261.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00261 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00262.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00262.xml deleted file mode 100644 index 7212429e92..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00262.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00262 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00263.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00263.xml deleted file mode 100644 index a32fda9a0e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00263.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00263 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00264.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00264.xml deleted file mode 100644 index 54eaca90c1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00264.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00264 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00265.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00265.xml deleted file mode 100644 index d484c7dd95..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00265.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00265 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00266.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00266.xml deleted file mode 100644 index bac32d6386..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00266.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00266 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00267.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00267.xml deleted file mode 100644 index 8670e767b1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00267.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00267 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00268.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00268.xml deleted file mode 100644 index 545ba2e6be..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00268.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00268 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00269.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00269.xml deleted file mode 100644 index 00aa5aa3ac..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00269.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00269 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00270.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00270.xml deleted file mode 100644 index 5644ae83ae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00270.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00270 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00271.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00271.xml deleted file mode 100644 index 9111927925..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00271.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00271 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00272.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00272.xml deleted file mode 100644 index 61bc1e71bd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00272.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00272 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00273.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00273.xml deleted file mode 100644 index d9dba96dea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00273.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00273 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00274.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00274.xml deleted file mode 100644 index 5789f881b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00274.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00274 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00275.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00275.xml deleted file mode 100644 index 35f608209e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00275.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00275 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00276.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00276.xml deleted file mode 100644 index fd8e3f964e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00276.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00276 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00277.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00277.xml deleted file mode 100644 index 026c127fe8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00277.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00277 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00278.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00278.xml deleted file mode 100644 index d6ca7fac0c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00278.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00278 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00279.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00279.xml deleted file mode 100644 index f8d719acd6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00279.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00279 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00280.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00280.xml deleted file mode 100644 index 15cb6f619e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00280.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00280 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00281.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00281.xml deleted file mode 100644 index 5ec1722efe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00281.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00281 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00282.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00282.xml deleted file mode 100644 index 6100d9d38d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00282.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00282 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00283.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00283.xml deleted file mode 100644 index fd88b31be2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00283.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00283 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00284.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00284.xml deleted file mode 100644 index d5b071a03e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00284.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00284 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00285.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00285.xml deleted file mode 100644 index a6d3811117..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00285.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00285 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00286.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00286.xml deleted file mode 100644 index f59458866e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00286.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00286 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00287.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00287.xml deleted file mode 100644 index ff3f6d8568..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00287.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00287 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00288.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00288.xml deleted file mode 100644 index e021e6649e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00288.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00288 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00289.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00289.xml deleted file mode 100644 index 80a98fcb1e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00289.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00289 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00290.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00290.xml deleted file mode 100644 index 7503c862ce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00290.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00290 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00291.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00291.xml deleted file mode 100644 index 21894ee556..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00291.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00291 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00292.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00292.xml deleted file mode 100644 index 8ded501bc8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00292.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00292 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00293.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00293.xml deleted file mode 100644 index 916cd21ba8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00293.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00293 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00294.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00294.xml deleted file mode 100644 index 40cd19c8b4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00294.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00294 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00295.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00295.xml deleted file mode 100644 index 8caae9f51d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00295.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00295 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00296.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00296.xml deleted file mode 100644 index 07f969f33d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00296.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00296 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00297.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00297.xml deleted file mode 100644 index 9cf6d770bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00297.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00297 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00298.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00298.xml deleted file mode 100644 index 6129139b65..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00298.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00298 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00299.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00299.xml deleted file mode 100644 index de621b9d25..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00299.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00299 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00300.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00300.xml deleted file mode 100644 index 6653fff36f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00300.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00300 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00301.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00301.xml deleted file mode 100644 index b15f7534f0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00301.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00301 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00302.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00302.xml deleted file mode 100644 index 4945b70236..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00302.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00302 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00303.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00303.xml deleted file mode 100644 index a1b91ef239..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00303.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00303 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00304.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00304.xml deleted file mode 100644 index 03f738e5bd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00304.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00304 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00305.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00305.xml deleted file mode 100644 index 8f0b39cbbd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00305.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00305 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00306.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00306.xml deleted file mode 100644 index 32cce6e3d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00306.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00306 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00307.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00307.xml deleted file mode 100644 index fa081ed382..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00307.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00307 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00308.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00308.xml deleted file mode 100644 index 7fc8108484..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00308.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00308 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00309.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00309.xml deleted file mode 100644 index 7085d5e55a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00309.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00309 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00310.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00310.xml deleted file mode 100644 index 636983f867..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00310.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00310 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00311.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00311.xml deleted file mode 100644 index 6f581396c0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00311.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00311 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00312.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00312.xml deleted file mode 100644 index 3b6cba7cc9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00312.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00312 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00313.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00313.xml deleted file mode 100644 index bc03a311a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00313.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00313 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00314.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00314.xml deleted file mode 100644 index 2df7081653..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00314.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00314 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00315.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00315.xml deleted file mode 100644 index 67cab5a25d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00315.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00315 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00316.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00316.xml deleted file mode 100644 index 7d8d81ee15..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00316.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00316 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00317.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00317.xml deleted file mode 100644 index 1812a13aba..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00317.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00317 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00318.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00318.xml deleted file mode 100644 index 04e494755a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00318.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00318 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00319.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00319.xml deleted file mode 100644 index 8b02e2e12b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00319.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00319 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00320.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00320.xml deleted file mode 100644 index f65cbc5a11..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00320.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00320 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00321.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00321.xml deleted file mode 100644 index c7ff6cd08f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00321.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00321 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00322.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00322.xml deleted file mode 100644 index c3216e6709..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00322.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00322 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00323.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00323.xml deleted file mode 100644 index dd21b2394b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00323.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00323 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00324.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00324.xml deleted file mode 100644 index 9efeb016d4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00324.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00324 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00325.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00325.xml deleted file mode 100644 index 9fc48c9b7e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00325.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00325 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00326.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00326.xml deleted file mode 100644 index e66b0fbbc5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00326.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00326 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00327.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00327.xml deleted file mode 100644 index e55d48a6b6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00327.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00327 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00328.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00328.java index 0e8575bac4..3f56613e8b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00328.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00328.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00328.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00328.xml deleted file mode 100644 index c90b15ba2b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00328.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00328 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00329.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00329.java index f4eeac6869..1e14a770df 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00329.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00329.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00329.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00329.xml deleted file mode 100644 index ce17293e56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00329.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00329 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00330.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00330.java index 6f2ead7d31..6949444e45 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00330.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00330.java @@ -85,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00330.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00330.xml deleted file mode 100644 index 074f7675c5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00330.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00330 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00331.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00331.java index d52c5e8d0a..8d6bce2455 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00331.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00331.java @@ -70,7 +70,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00331.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00331.xml deleted file mode 100644 index dd36ffe778..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00331.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00331 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00332.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00332.java index 4fd8885bbc..7914380525 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00332.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00332.java @@ -85,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00332.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00332.xml deleted file mode 100644 index da8f4bc1be..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00332.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00332 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00333.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00333.java index 824bb8821f..ceea99496e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00333.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00333.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00333.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00333.xml deleted file mode 100644 index 9818b7c2aa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00333.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00333 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00334.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00334.java index f4719854a4..9b1ebea1a2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00334.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00334.java @@ -89,7 +89,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00334.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00334.xml deleted file mode 100644 index 38ba4e932a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00334.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00334 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00335.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00335.java index 20cbf10540..8446dcb9b5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00335.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00335.java @@ -70,7 +70,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00335.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00335.xml deleted file mode 100644 index e916674f7b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00335.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00335 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00336.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00336.xml deleted file mode 100644 index ca9ad534e2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00336.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00336 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00337.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00337.java index dc77a80c7d..055e61e8de 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00337.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00337.java @@ -70,10 +70,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00337.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00337.xml deleted file mode 100644 index 0aadb000ad..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00337.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00337 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00338.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00338.java index 8c8d683c2e..43a5214d5e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00338.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00338.java @@ -65,10 +65,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00338.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00338.xml deleted file mode 100644 index 40f6061328..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00338.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00338 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00339.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00339.java index b68d701771..e0854a9e47 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00339.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00339.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -73,7 +72,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00339.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00339.xml deleted file mode 100644 index 60f8b039a0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00339.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00339 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00340.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00340.xml deleted file mode 100644 index 6048802905..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00340.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00340 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00341.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00341.xml deleted file mode 100644 index 0c12f68ea5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00341.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00341 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00342.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00342.java index 172e6cf835..48c0275c02 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00342.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00342.java @@ -72,7 +72,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00342.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00342.xml deleted file mode 100644 index 2a228dd96d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00342.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00342 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00343.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00343.java index d472983b4b..e6cb3d4ac9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00343.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00343.java @@ -67,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00343.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00343.xml deleted file mode 100644 index 8cd0a5c682..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00343.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00343 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00344.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00344.java index 1054524937..42a9bb6e45 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00344.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00344.java @@ -67,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00344.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00344.xml deleted file mode 100644 index 48d0bae680..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00344.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00344 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00345.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00345.xml deleted file mode 100644 index d8bb9a7238..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00345.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00345 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00346.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00346.xml deleted file mode 100644 index 5c2de7a22f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00346.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00346 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00347.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00347.xml deleted file mode 100644 index dc8e728908..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00347.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00347 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00348.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00348.xml deleted file mode 100644 index db1cfe10ae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00348.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00348 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00349.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00349.xml deleted file mode 100644 index 3f6ded47f6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00349.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00349 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00350.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00350.xml deleted file mode 100644 index a6340d7b19..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00350.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00350 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00351.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00351.xml deleted file mode 100644 index 5e04766a08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00351.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00351 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00352.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00352.xml deleted file mode 100644 index 0910e311d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00352.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00352 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00353.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00353.xml deleted file mode 100644 index 9bc52184b1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00353.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00353 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00354.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00354.xml deleted file mode 100644 index b63af39b1e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00354.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00354 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00355.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00355.xml deleted file mode 100644 index 7463490cc7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00355.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00355 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00356.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00356.xml deleted file mode 100644 index a9d5b0c240..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00356.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00356 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00357.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00357.xml deleted file mode 100644 index db8f004bd2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00357.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00357 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00358.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00358.xml deleted file mode 100644 index f86b75d559..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00358.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00358 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00359.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00359.xml deleted file mode 100644 index 5556bf5ca6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00359.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00359 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00360.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00360.xml deleted file mode 100644 index 565aa4dc54..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00360.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00360 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00361.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00361.xml deleted file mode 100644 index 968a709e3d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00361.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00361 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00362.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00362.xml deleted file mode 100644 index 0d6ad2c444..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00362.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00362 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00363.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00363.xml deleted file mode 100644 index 1f188c17fa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00363.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00363 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00364.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00364.xml deleted file mode 100644 index c070773dc2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00364.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00364 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00365.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00365.xml deleted file mode 100644 index c2c9434ebb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00365.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00365 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00366.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00366.xml deleted file mode 100644 index 50140ef822..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00366.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00366 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00367.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00367.java index 5e765997fc..3229e5ab0e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00367.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00367.java @@ -93,12 +93,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00367.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00367.xml deleted file mode 100644 index 432d5343dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00367.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00367 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00368.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00368.xml deleted file mode 100644 index b57a5f00af..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00368.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00368 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00369.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00369.xml deleted file mode 100644 index 142f6eca0b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00369.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00369 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00370.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00370.xml deleted file mode 100644 index cd26d856ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00370.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00370 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00371.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00371.xml deleted file mode 100644 index 6cd107daa2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00371.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00371 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00372.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00372.xml deleted file mode 100644 index f8e21e7ee3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00372.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00372 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00373.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00373.xml deleted file mode 100644 index fe475fd98e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00373.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00373 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00374.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00374.xml deleted file mode 100644 index c9f5d2ef29..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00374.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00374 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00375.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00375.xml deleted file mode 100644 index 1d8d58155d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00375.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00375 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00376.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00376.xml deleted file mode 100644 index 76a641e584..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00376.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00376 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00377.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00377.xml deleted file mode 100644 index 4bfbd93538..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00377.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00377 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00378.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00378.xml deleted file mode 100644 index f90823b50a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00378.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00378 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00379.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00379.xml deleted file mode 100644 index d4fb214cbf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00379.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00379 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00380.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00380.xml deleted file mode 100644 index 4c6d86b292..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00380.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00380 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00381.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00381.xml deleted file mode 100644 index 8682b409bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00381.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00381 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00382.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00382.xml deleted file mode 100644 index 2ab8eb2bd8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00382.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00382 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00383.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00383.xml deleted file mode 100644 index 973f5341e1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00383.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00383 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00384.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00384.xml deleted file mode 100644 index cf74d901bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00384.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00384 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00385.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00385.xml deleted file mode 100644 index e74e92d709..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00385.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00385 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00386.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00386.xml deleted file mode 100644 index 5d5a6f3cac..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00386.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00386 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00387.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00387.xml deleted file mode 100644 index ba22608e8d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00387.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00387 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00388.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00388.xml deleted file mode 100644 index f775e31a38..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00388.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00388 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00389.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00389.xml deleted file mode 100644 index 3a50fb0203..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00389.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00389 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00390.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00390.xml deleted file mode 100644 index d56acb3cd4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00390.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00390 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00391.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00391.xml deleted file mode 100644 index 434b4c8e73..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00391.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00391 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00392.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00392.xml deleted file mode 100644 index 86c2c6aa6b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00392.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00392 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00393.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00393.xml deleted file mode 100644 index dec93f9ff3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00393.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00393 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00394.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00394.xml deleted file mode 100644 index c0e6c3e2db..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00394.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00394 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00395.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00395.xml deleted file mode 100644 index 45f9af0f6c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00395.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00395 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00396.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00396.xml deleted file mode 100644 index 3985f00422..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00396.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00396 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00397.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00397.xml deleted file mode 100644 index c36654f779..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00397.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00397 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00398.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00398.xml deleted file mode 100644 index 5af0df83b9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00398.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00398 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00399.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00399.xml deleted file mode 100644 index 85b4132931..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00399.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00399 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00400.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00400.xml deleted file mode 100644 index eef2273342..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00400.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00400 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00401.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00401.xml deleted file mode 100644 index 835492520b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00401.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00401 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00402.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00402.xml deleted file mode 100644 index 7641988fc4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00402.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00402 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00403.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00403.xml deleted file mode 100644 index 6a9758d109..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00403.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00403 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00404.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00404.xml deleted file mode 100644 index 528fae0c2e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00404.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00404 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00405.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00405.xml deleted file mode 100644 index e4d95dbe6f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00405.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00405 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00406.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00406.xml deleted file mode 100644 index 8fcfbec479..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00406.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00406 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00407.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00407.xml deleted file mode 100644 index e390dc0c37..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00407.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00407 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00408.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00408.xml deleted file mode 100644 index 3463b973a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00408.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00408 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00409.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00409.xml deleted file mode 100644 index 340bcd2cbd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00409.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00409 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00410.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00410.xml deleted file mode 100644 index c7ae79a39f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00410.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00410 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00411.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00411.xml deleted file mode 100644 index fa7efeae39..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00411.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00411 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00412.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00412.xml deleted file mode 100644 index 6d273b79b9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00412.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00412 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00413.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00413.xml deleted file mode 100644 index eccb328a80..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00413.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00413 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00414.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00414.xml deleted file mode 100644 index b244b5a8cb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00414.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00414 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00415.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00415.xml deleted file mode 100644 index 9514023f63..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00415.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00415 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00416.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00416.xml deleted file mode 100644 index 90fdf9fe46..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00416.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00416 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00417.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00417.xml deleted file mode 100644 index 63a4071e98..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00417.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00417 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00418.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00418.xml deleted file mode 100644 index 402ecc6872..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00418.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00418 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00419.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00419.xml deleted file mode 100644 index ea8f3cfd71..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00419.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00419 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00420.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00420.xml deleted file mode 100644 index f49126d0c0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00420.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00420 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00421.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00421.xml deleted file mode 100644 index c383627589..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00421.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00421 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00422.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00422.xml deleted file mode 100644 index 76a07b4789..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00422.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00422 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00423.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00423.xml deleted file mode 100644 index 75d0b04b70..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00423.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00423 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00424.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00424.xml deleted file mode 100644 index 86539a0936..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00424.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00424 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00425.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00425.xml deleted file mode 100644 index ccdc124d68..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00425.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00425 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00426.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00426.xml deleted file mode 100644 index 94c78ae99f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00426.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00426 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00427.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00427.xml deleted file mode 100644 index 3296ebd524..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00427.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00427 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00428.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00428.java index ee8e851de3..15dee91bd3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00428.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00428.java @@ -67,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00428.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00428.xml deleted file mode 100644 index 7f658a76a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00428.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00428 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00429.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00429.java index c502ca7fc8..d0e4c03018 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00429.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00429.java @@ -67,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00429.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00429.xml deleted file mode 100644 index 7dd027cdf9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00429.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00429 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00430.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00430.java index 76a7ed5a7f..29a7872b79 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00430.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00430.java @@ -67,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00430.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00430.xml deleted file mode 100644 index 3d1b869137..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00430.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00430 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00431.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00431.xml deleted file mode 100644 index 556016599e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00431.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00431 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00432.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00432.java index 10616e4729..dcd77e95a6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00432.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00432.java @@ -56,19 +56,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -78,7 +76,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00432.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00432.xml deleted file mode 100644 index 03fbf1fe9c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00432.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00432 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00433.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00433.java index d9f3d917ac..96d38ee6bd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00433.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00433.java @@ -51,19 +51,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) else bar = "This should never happen"; String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -73,7 +71,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00433.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00433.xml deleted file mode 100644 index 4ac8cf2689..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00433.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00433 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00434.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00434.xml deleted file mode 100644 index cf8236c8aa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00434.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00434 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00435.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00435.java index 8426d4b26f..b45bf24139 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00435.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00435.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00435.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00435.xml deleted file mode 100644 index 2ca651ab4b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00435.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00435 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00436.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00436.java index 96437dcf62..436f1bdfba 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00436.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00436.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00436.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00436.xml deleted file mode 100644 index f9180c743d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00436.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00436 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00437.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00437.java index f162be3075..200e197dd5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00437.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00437.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00437.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00437.xml deleted file mode 100644 index 67a62e5632..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00437.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00437 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00438.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00438.java index e50b930ea8..f8f5a54dd6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00438.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00438.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00438.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00438.xml deleted file mode 100644 index 7989cc7d65..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00438.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00438 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00439.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00439.java index 2cd2a49663..d4e9b0319d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00439.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00439.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00439.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00439.xml deleted file mode 100644 index 527ab4a1b1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00439.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00439 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00440.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00440.java index cc06f332ec..468f783ea8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00440.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00440.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00440.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00440.xml deleted file mode 100644 index 6aeb1a3105..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00440.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00440 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00441.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00441.java index 630664e61e..694a3cb3b9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00441.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00441.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00441.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00441.xml deleted file mode 100644 index 719b24aca8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00441.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00441 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00442.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00442.xml deleted file mode 100644 index 707ddd24a4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00442.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00442 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00443.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00443.xml deleted file mode 100644 index 9d38d41231..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00443.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00443 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00444.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00444.xml deleted file mode 100644 index 5aa1396205..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00444.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00444 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00445.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00445.xml deleted file mode 100644 index 32d92bfc0c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00445.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00445 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00446.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00446.xml deleted file mode 100644 index 9c4da93239..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00446.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00446 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00447.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00447.xml deleted file mode 100644 index a5b26323f6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00447.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00447 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00448.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00448.xml deleted file mode 100644 index 65a7adaade..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00448.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00448 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00449.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00449.xml deleted file mode 100644 index bdd00f7f86..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00449.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00449 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00450.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00450.xml deleted file mode 100644 index 5005f5d0b6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00450.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00450 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00451.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00451.xml deleted file mode 100644 index 4107410289..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00451.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00451 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00452.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00452.xml deleted file mode 100644 index c294b8c94f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00452.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00452 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00453.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00453.xml deleted file mode 100644 index 6102defe17..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00453.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00453 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00454.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00454.xml deleted file mode 100644 index 39a9a642e5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00454.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00454 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00455.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00455.xml deleted file mode 100644 index f3aa49c417..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00455.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00455 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00456.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00456.xml deleted file mode 100644 index 9dcc4074c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00456.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00456 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00457.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00457.xml deleted file mode 100644 index dbf8959740..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00457.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00457 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00458.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00458.xml deleted file mode 100644 index d9a2e1a156..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00458.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00458 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00459.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00459.xml deleted file mode 100644 index af82f152a0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00459.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00459 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00460.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00460.xml deleted file mode 100644 index 37b3e79c36..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00460.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00460 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00461.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00461.xml deleted file mode 100644 index 420b3ae050..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00461.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00461 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00462.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00462.xml deleted file mode 100644 index c21cc870d9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00462.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00462 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00463.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00463.xml deleted file mode 100644 index f191c65884..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00463.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00463 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00464.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00464.xml deleted file mode 100644 index 39ca66e4d6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00464.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00464 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00465.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00465.xml deleted file mode 100644 index 3bd72555ea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00465.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00465 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00466.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00466.xml deleted file mode 100644 index 099628786f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00466.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00466 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00467.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00467.xml deleted file mode 100644 index 4762d6e96c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00467.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00467 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00468.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00468.xml deleted file mode 100644 index 062c1c4161..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00468.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00468 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00469.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00469.xml deleted file mode 100644 index 8bd6ac8363..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00469.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00469 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00470.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00470.xml deleted file mode 100644 index 898fc95b3f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00470.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00470 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00471.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00471.xml deleted file mode 100644 index 9e74624f34..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00471.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00471 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00472.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00472.xml deleted file mode 100644 index cbadf407fc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00472.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00472 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00473.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00473.xml deleted file mode 100644 index c026207824..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00473.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00473 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00474.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00474.xml deleted file mode 100644 index f7819dfc21..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00474.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00474 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00475.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00475.xml deleted file mode 100644 index 8ffd8a8cf7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00475.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00475 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00476.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00476.xml deleted file mode 100644 index edfe9f3cc8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00476.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00476 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00477.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00477.xml deleted file mode 100644 index d169ea6e1a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00477.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00477 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00478.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00478.xml deleted file mode 100644 index 19c41b309c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00478.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00478 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00479.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00479.xml deleted file mode 100644 index 514f3879f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00479.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00479 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00480.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00480.xml deleted file mode 100644 index 51766e058a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00480.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00480 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00481.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00481.xml deleted file mode 100644 index 89b41a2ab4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00481.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00481 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00482.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00482.xml deleted file mode 100644 index 8168a87f9f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00482.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00482 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00483.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00483.xml deleted file mode 100644 index d76b49ed84..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00483.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00483 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00484.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00484.xml deleted file mode 100644 index 71f0f3ccab..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00484.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00484 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00485.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00485.xml deleted file mode 100644 index 1e817ee01c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00485.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00485 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00486.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00486.xml deleted file mode 100644 index 2cda2323e7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00486.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00486 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00487.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00487.xml deleted file mode 100644 index 7abd6b03e5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00487.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00487 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00488.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00488.xml deleted file mode 100644 index a4ff9a63bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00488.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00488 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00489.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00489.xml deleted file mode 100644 index 9b27efa2f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00489.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00489 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00490.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00490.xml deleted file mode 100644 index dc1a9c0974..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00490.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00490 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00491.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00491.xml deleted file mode 100644 index c654c41581..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00491.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00491 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00492.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00492.xml deleted file mode 100644 index 86933ba79d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00492.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00492 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00493.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00493.xml deleted file mode 100644 index 61031f1105..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00493.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00493 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00494.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00494.xml deleted file mode 100644 index c5854b1877..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00494.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00494 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00495.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00495.xml deleted file mode 100644 index 3e5e06a1e4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00495.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00495 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00496.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00496.xml deleted file mode 100644 index f5f1a390f0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00496.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00496 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00497.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00497.xml deleted file mode 100644 index d7ed66a9d4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00497.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00497 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00498.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00498.xml deleted file mode 100644 index 7620bf6df7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00498.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00498 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00499.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00499.xml deleted file mode 100644 index e037270ac6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00499.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00499 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00500.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00500.xml deleted file mode 100644 index fe737a0c24..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00500.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00500 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00501.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00501.xml deleted file mode 100644 index afc20ac392..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00501.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00501 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00502.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00502.xml deleted file mode 100644 index 86380a5036..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00502.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00502 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00503.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00503.xml deleted file mode 100644 index f8cdd5d16b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00503.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00503 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00504.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00504.xml deleted file mode 100644 index 984f712f6f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00504.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00504 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00505.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00505.xml deleted file mode 100644 index 062bacdc5a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00505.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00505 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00506.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00506.xml deleted file mode 100644 index 01346b3f85..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00506.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00506 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00507.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00507.xml deleted file mode 100644 index d9f8c0004a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00507.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00507 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00508.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00508.xml deleted file mode 100644 index aa0e353a79..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00508.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00508 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00509.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00509.java index 4e452ae0f7..9b536ee6a0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00509.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00509.java @@ -70,7 +70,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00509.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00509.xml deleted file mode 100644 index e0a9fb3783..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00509.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00509 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00510.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00510.java index 7267eabd86..556d054291 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00510.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00510.java @@ -84,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00510.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00510.xml deleted file mode 100644 index 6342647b4f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00510.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00510 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00511.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00511.xml deleted file mode 100644 index 8e8f0bb950..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00511.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00511 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00512.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00512.java index 60b0cb34dd..8d2037f613 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00512.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00512.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00512.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00512.xml deleted file mode 100644 index 43f7b20ba9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00512.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00512 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00513.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00513.java index 75bcc00159..b0b0b901c2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00513.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00513.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00513.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00513.xml deleted file mode 100644 index 117986926b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00513.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00513 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00514.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00514.java index 773c7280d5..5d20a87141 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00514.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00514.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00514.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00514.xml deleted file mode 100644 index 04f2c5135d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00514.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00514 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00515.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00515.java index 72806247f3..54e5a142bb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00515.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00515.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00515.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00515.xml deleted file mode 100644 index f2bfed9c3d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00515.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00515 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00516.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00516.java index f9091b05ac..006e227aec 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00516.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00516.java @@ -78,7 +78,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00516.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00516.xml deleted file mode 100644 index 9da8bc852a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00516.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00516 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00517.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00517.java index 192af9e3a3..c54f64070f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00517.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00517.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00517.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00517.xml deleted file mode 100644 index 95bd57eb71..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00517.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00517 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00518.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00518.java index da6da56bd6..d3b690a3c0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00518.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00518.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00518.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00518.xml deleted file mode 100644 index 3a2a8bc3c3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00518.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00518 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00519.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00519.java index 1f3cd3dd59..6ca23df21f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00519.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00519.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00519.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00519.xml deleted file mode 100644 index b1a641ccd6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00519.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00519 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00520.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00520.xml deleted file mode 100644 index 370c7d1dc6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00520.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00520 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00521.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00521.xml deleted file mode 100644 index 520cfc9194..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00521.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00521 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00522.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00522.xml deleted file mode 100644 index 32ad920442..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00522.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00522 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00523.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00523.xml deleted file mode 100644 index 9d4db3743e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00523.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00523 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00524.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00524.xml deleted file mode 100644 index ff443b50ad..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00524.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00524 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00525.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00525.xml deleted file mode 100644 index 187a8e7a40..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00525.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00525 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00526.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00526.xml deleted file mode 100644 index a2efa88c5b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00526.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00526 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00527.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00527.xml deleted file mode 100644 index 50c5a26267..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00527.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00527 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00528.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00528.xml deleted file mode 100644 index f53635d1da..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00528.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00528 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00529.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00529.xml deleted file mode 100644 index 9658e21ef7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00529.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00529 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00530.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00530.java index 88b7a2f88b..f8dfebafa7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00530.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00530.java @@ -105,12 +105,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00530.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00530.xml deleted file mode 100644 index 6200c86580..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00530.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00530 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00531.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00531.xml deleted file mode 100644 index af998b8225..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00531.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00531 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00532.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00532.xml deleted file mode 100644 index 68730d2c3a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00532.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00532 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00533.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00533.xml deleted file mode 100644 index 805dc3a9b6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00533.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00533 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00534.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00534.xml deleted file mode 100644 index 2b59d27801..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00534.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00534 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00535.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00535.xml deleted file mode 100644 index c5371781fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00535.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00535 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00536.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00536.xml deleted file mode 100644 index bcd634e6d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00536.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00536 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00537.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00537.xml deleted file mode 100644 index e04a1fed03..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00537.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00537 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00538.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00538.xml deleted file mode 100644 index 4d297f794c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00538.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00538 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00539.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00539.xml deleted file mode 100644 index c291debc8a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00539.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00539 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00540.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00540.xml deleted file mode 100644 index 3d734f6dfd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00540.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00540 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00541.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00541.xml deleted file mode 100644 index a6bd5519b2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00541.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00541 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00542.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00542.xml deleted file mode 100644 index 036f238de0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00542.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00542 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00543.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00543.xml deleted file mode 100644 index c5a6388870..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00543.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00543 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00544.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00544.xml deleted file mode 100644 index 31d15d096c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00544.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00544 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00545.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00545.xml deleted file mode 100644 index e15c6585f8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00545.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00545 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00546.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00546.xml deleted file mode 100644 index 13621fab18..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00546.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00546 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00547.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00547.xml deleted file mode 100644 index f06a59e24e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00547.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00547 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00548.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00548.xml deleted file mode 100644 index 76f4970af1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00548.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00548 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00549.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00549.xml deleted file mode 100644 index 20496ef3ff..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00549.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00549 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00550.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00550.xml deleted file mode 100644 index 7549b8040a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00550.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00550 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00551.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00551.xml deleted file mode 100644 index 9ab6958c83..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00551.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00551 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00552.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00552.xml deleted file mode 100644 index 51f4eaa172..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00552.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00552 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00553.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00553.xml deleted file mode 100644 index 093e6520fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00553.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00553 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00554.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00554.xml deleted file mode 100644 index f8a17fdb63..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00554.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00554 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00555.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00555.xml deleted file mode 100644 index 86ad5f4f37..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00555.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00555 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00556.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00556.xml deleted file mode 100644 index d802a5b5bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00556.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00556 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00557.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00557.xml deleted file mode 100644 index c002f86b50..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00557.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00557 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00558.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00558.xml deleted file mode 100644 index 34838b4ed0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00558.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00558 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00559.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00559.xml deleted file mode 100644 index 97f9df44b6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00559.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00559 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00560.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00560.xml deleted file mode 100644 index 457eacdb2a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00560.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00560 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00561.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00561.xml deleted file mode 100644 index 896baa440d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00561.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00561 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00562.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00562.xml deleted file mode 100644 index 24a982d28e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00562.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00562 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00563.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00563.xml deleted file mode 100644 index 6e51e69e4e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00563.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00563 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00564.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00564.xml deleted file mode 100644 index 0d07d07aba..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00564.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00564 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00565.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00565.xml deleted file mode 100644 index 2f8d282911..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00565.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00565 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00566.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00566.xml deleted file mode 100644 index 14649df2ab..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00566.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00566 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00567.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00567.xml deleted file mode 100644 index 0bb1e384a4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00567.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00567 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00568.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00568.xml deleted file mode 100644 index dd98ca7a30..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00568.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00568 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00569.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00569.xml deleted file mode 100644 index 17ccce7b3a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00569.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00569 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00570.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00570.xml deleted file mode 100644 index e133cfc25b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00570.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00570 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00571.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00571.xml deleted file mode 100644 index 1cedfc03bb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00571.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00571 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00572.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00572.xml deleted file mode 100644 index dba302ac5c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00572.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00572 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00573.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00573.xml deleted file mode 100644 index 221e765942..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00573.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00573 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00574.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00574.xml deleted file mode 100644 index 5f05b945fd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00574.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00574 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00575.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00575.xml deleted file mode 100644 index fa14a3392c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00575.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00575 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00576.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00576.xml deleted file mode 100644 index 9103f66b2c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00576.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00576 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00577.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00577.xml deleted file mode 100644 index a29708a9ca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00577.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00577 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00578.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00578.xml deleted file mode 100644 index 1643d1ed7a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00578.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00578 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00579.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00579.xml deleted file mode 100644 index 6b5874cba3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00579.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00579 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00580.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00580.xml deleted file mode 100644 index 345391333d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00580.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00580 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00581.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00581.xml deleted file mode 100644 index cbeb41a0e1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00581.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00581 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00582.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00582.xml deleted file mode 100644 index ae70d1db2c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00582.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00582 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00583.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00583.xml deleted file mode 100644 index f30b38e759..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00583.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00583 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00584.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00584.xml deleted file mode 100644 index 8f37314080..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00584.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00584 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00585.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00585.xml deleted file mode 100644 index ab309491e4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00585.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00585 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00586.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00586.xml deleted file mode 100644 index 0560fa09cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00586.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00586 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00587.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00587.xml deleted file mode 100644 index bff2e4a7c8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00587.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00587 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00588.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00588.xml deleted file mode 100644 index 8495010b1a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00588.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00588 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00589.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00589.java index 9952780baa..153841e15e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00589.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00589.java @@ -85,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00589.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00589.xml deleted file mode 100644 index d059cbc200..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00589.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00589 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00590.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00590.java index cba00d5b4d..e03d7d0fa4 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00590.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00590.java @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00590.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00590.xml deleted file mode 100644 index 0387f58916..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00590.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00590 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00591.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00591.java index b9e3d544a6..474697882c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00591.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00591.java @@ -74,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00591.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00591.xml deleted file mode 100644 index 06d21260fc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00591.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00591 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00592.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00592.java index 15b267edc6..1b97a30552 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00592.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00592.java @@ -97,7 +97,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00592.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00592.xml deleted file mode 100644 index 8615635e6a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00592.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00592 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00593.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00593.java index d0b3de8ed2..b24aeb3ac5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00593.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00593.java @@ -95,7 +95,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00593.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00593.xml deleted file mode 100644 index 7197e5e76d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00593.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00593 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00594.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00594.java index a6f8dda124..7385de0a6e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00594.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00594.java @@ -77,7 +77,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00594.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00594.xml deleted file mode 100644 index 02f484175c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00594.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00594 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00595.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00595.java index b21eaad7e2..c51c29e2e1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00595.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00595.java @@ -77,7 +77,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00595.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00595.xml deleted file mode 100644 index 40d73622ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00595.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00595 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00596.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00596.java index 510dd017d8..1f1a66fd27 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00596.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00596.java @@ -70,19 +70,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -92,7 +90,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00596.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00596.xml deleted file mode 100644 index d31f6a44ce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00596.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00596 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00597.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00597.java index aa5589e0c3..f3828f86ab 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00597.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00597.java @@ -62,19 +62,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = thing.doSomething(param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -84,7 +82,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00597.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00597.xml deleted file mode 100644 index bfd88f09a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00597.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00597 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00598.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00598.java index 0141f393fd..890bdd2c8c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00598.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00598.java @@ -73,10 +73,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00598.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00598.xml deleted file mode 100644 index 9b777bb972..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00598.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00598 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00599.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00599.xml deleted file mode 100644 index dbe289b940..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00599.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00599 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00600.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00600.xml deleted file mode 100644 index df458b89cd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00600.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00600 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00601.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00601.java index 63b72dc4b5..2e28994a37 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00601.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00601.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00601.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00601.xml deleted file mode 100644 index 83ae246ca1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00601.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00601 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00602.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00602.java index 1442ed6d36..00174efe89 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00602.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00602.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00602.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00602.xml deleted file mode 100644 index 8d23c97a0a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00602.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00602 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00603.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00603.java index ab62901520..d13d03cf3e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00603.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00603.java @@ -71,7 +71,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00603.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00603.xml deleted file mode 100644 index ac83c8696c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00603.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00603 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00604.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00604.java index 362b07436c..ed75dc6065 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00604.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00604.java @@ -76,7 +76,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00604.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00604.xml deleted file mode 100644 index a3a00384e4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00604.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00604 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00605.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00605.java index 8cedb8b166..7c83ef19b8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00605.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00605.java @@ -74,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00605.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00605.xml deleted file mode 100644 index 413c47b515..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00605.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00605 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00606.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00606.java index 0a8aba5f62..660dd6f9bf 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00606.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00606.java @@ -74,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00606.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00606.xml deleted file mode 100644 index f0a54ad94d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00606.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00606 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00607.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00607.xml deleted file mode 100644 index 0aa3f07207..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00607.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00607 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00608.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00608.xml deleted file mode 100644 index c657532cef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00608.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00608 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00609.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00609.xml deleted file mode 100644 index 9cdfb108c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00609.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00609 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00610.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00610.xml deleted file mode 100644 index 0919e8e8fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00610.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00610 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00611.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00611.xml deleted file mode 100644 index cd7313b993..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00611.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00611 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00612.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00612.xml deleted file mode 100644 index ab3a355d20..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00612.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00612 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00613.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00613.xml deleted file mode 100644 index 70e997253a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00613.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00613 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00614.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00614.xml deleted file mode 100644 index 30c453e03e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00614.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00614 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00615.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00615.xml deleted file mode 100644 index 03547e3515..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00615.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00615 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00616.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00616.xml deleted file mode 100644 index a1d09faee7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00616.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00616 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00617.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00617.xml deleted file mode 100644 index e90ab8da1c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00617.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00617 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00618.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00618.xml deleted file mode 100644 index 66eac2448b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00618.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00618 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00619.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00619.xml deleted file mode 100644 index cca51335d4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00619.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00619 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00620.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00620.xml deleted file mode 100644 index 4b6bf05c8f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00620.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00620 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00621.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00621.xml deleted file mode 100644 index 05eabf1b8a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00621.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00621 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00622.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00622.xml deleted file mode 100644 index 1da54d2af7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00622.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00622 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00623.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00623.xml deleted file mode 100644 index a4f44d03e3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00623.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00623 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00624.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00624.xml deleted file mode 100644 index 9ede021719..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00624.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00624 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00625.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00625.xml deleted file mode 100644 index 154af16b46..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00625.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00625 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00626.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00626.xml deleted file mode 100644 index 0c30c908e8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00626.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00626 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00627.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00627.xml deleted file mode 100644 index 16b22290e4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00627.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00627 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00628.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00628.xml deleted file mode 100644 index 699ddc9320..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00628.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00628 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00629.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00629.xml deleted file mode 100644 index 1fc023d087..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00629.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00629 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00630.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00630.java index 8ab20cfcad..6992294b25 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00630.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00630.java @@ -93,12 +93,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00630.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00630.xml deleted file mode 100644 index ae36d65ca2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00630.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00630 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00631.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00631.xml deleted file mode 100644 index 59eef4eaeb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00631.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00631 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00632.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00632.xml deleted file mode 100644 index 766c284ccd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00632.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00632 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00633.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00633.xml deleted file mode 100644 index dbffdc4b46..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00633.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00633 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00634.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00634.xml deleted file mode 100644 index 180cedc6b7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00634.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00634 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00635.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00635.xml deleted file mode 100644 index cc92765bed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00635.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00635 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00636.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00636.xml deleted file mode 100644 index 1dbab6d3c8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00636.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00636 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00637.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00637.xml deleted file mode 100644 index 5473602912..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00637.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00637 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00638.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00638.xml deleted file mode 100644 index f76950df89..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00638.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00638 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00639.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00639.xml deleted file mode 100644 index ed905fde51..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00639.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00639 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00640.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00640.xml deleted file mode 100644 index 52d0ff03ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00640.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00640 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00641.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00641.xml deleted file mode 100644 index 586a162084..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00641.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00641 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00642.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00642.xml deleted file mode 100644 index 8d65de6861..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00642.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00642 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00643.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00643.xml deleted file mode 100644 index 86a7de93c2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00643.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00643 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00644.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00644.xml deleted file mode 100644 index c9011806c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00644.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00644 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00645.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00645.xml deleted file mode 100644 index 563791d707..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00645.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00645 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00646.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00646.xml deleted file mode 100644 index 19269c033b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00646.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00646 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00647.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00647.xml deleted file mode 100644 index a50fc3db31..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00647.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00647 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00648.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00648.xml deleted file mode 100644 index b6ed8ab395..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00648.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00648 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00649.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00649.xml deleted file mode 100644 index e879b73df3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00649.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00649 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00650.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00650.xml deleted file mode 100644 index 002aa440b9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00650.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00650 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00651.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00651.xml deleted file mode 100644 index 0eec5ff46a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00651.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00651 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00652.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00652.xml deleted file mode 100644 index b1daee5962..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00652.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00652 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00653.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00653.xml deleted file mode 100644 index 27134b7597..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00653.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00653 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00654.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00654.xml deleted file mode 100644 index d8fab4ba57..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00654.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00654 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00655.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00655.xml deleted file mode 100644 index 4ffd3e4216..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00655.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00655 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00656.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00656.xml deleted file mode 100644 index 706919696f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00656.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00656 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00657.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00657.xml deleted file mode 100644 index 3b3e56e771..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00657.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00657 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00658.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00658.xml deleted file mode 100644 index 0d303d9f73..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00658.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00658 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00659.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00659.xml deleted file mode 100644 index e4774e4124..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00659.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00659 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00660.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00660.xml deleted file mode 100644 index c9eeb3d1e4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00660.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00660 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00661.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00661.xml deleted file mode 100644 index 9cfb0881f4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00661.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00661 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00662.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00662.xml deleted file mode 100644 index cd29af686a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00662.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00662 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00663.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00663.xml deleted file mode 100644 index 99e28f9b99..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00663.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00663 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00664.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00664.xml deleted file mode 100644 index 49dcac4f50..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00664.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00664 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00665.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00665.xml deleted file mode 100644 index e2ef5fdae8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00665.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00665 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00666.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00666.xml deleted file mode 100644 index 26a22ac8dd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00666.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00666 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00667.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00667.xml deleted file mode 100644 index d69650a5a5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00667.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00667 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00668.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00668.xml deleted file mode 100644 index 22115a6ef6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00668.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00668 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00669.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00669.xml deleted file mode 100644 index 4733d17ad1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00669.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00669 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00670.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00670.xml deleted file mode 100644 index e2c880b74d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00670.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00670 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00671.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00671.xml deleted file mode 100644 index 4ae9a5ea8a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00671.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00671 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00672.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00672.java index efb70eb5e0..54317ac09b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00672.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00672.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00672.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00672.xml deleted file mode 100644 index 4374893bd5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00672.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00672 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00673.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00673.java index 2e79baf50e..0dc425a95c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00673.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00673.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00673.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00673.xml deleted file mode 100644 index fb0302a182..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00673.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00673 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00674.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00674.java index 3bcbdac135..099405a49f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00674.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00674.java @@ -84,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00674.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00674.xml deleted file mode 100644 index 71bfdfbd99..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00674.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00674 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00675.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00675.java index 54d39e3b38..99ec115f85 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00675.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00675.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00675.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00675.xml deleted file mode 100644 index d289f1f2db..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00675.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00675 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00676.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00676.java index 251f9353b1..1c4e62fe3f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00676.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00676.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00676.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00676.xml deleted file mode 100644 index df39668b25..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00676.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00676 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00677.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00677.xml deleted file mode 100644 index ef47cb1a5e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00677.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00677 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00678.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00678.xml deleted file mode 100644 index ca4e606305..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00678.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00678 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00679.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00679.java index 017e8358f5..6b5bceb51d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00679.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00679.java @@ -56,10 +56,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00679.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00679.xml deleted file mode 100644 index 27fdaf36c0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00679.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00679 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00680.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00680.java index 3d6c32aab5..8f83eb6e8d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00680.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00680.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00680.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00680.xml deleted file mode 100644 index 47ea9aaec3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00680.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00680 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00681.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00681.java index 49e5fa693e..319c980688 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00681.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00681.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00681.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00681.xml deleted file mode 100644 index e8735474c8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00681.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00681 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00682.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00682.java index a67b602fb5..c44945425c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00682.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00682.java @@ -76,7 +76,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00682.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00682.xml deleted file mode 100644 index 0a0ab8a55d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00682.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00682 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00683.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00683.xml deleted file mode 100644 index 9d8c23508f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00683.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00683 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00684.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00684.xml deleted file mode 100644 index be90824e47..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00684.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00684 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00685.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00685.xml deleted file mode 100644 index 70a73c882f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00685.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00685 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00686.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00686.xml deleted file mode 100644 index 544f69bef2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00686.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00686 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00687.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00687.xml deleted file mode 100644 index 4a12970c36..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00687.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00687 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00688.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00688.xml deleted file mode 100644 index 8ec76f8635..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00688.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00688 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00689.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00689.xml deleted file mode 100644 index fe0fa042a9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00689.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00689 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00690.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00690.xml deleted file mode 100644 index 5a4ccb50e8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00690.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00690 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00691.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00691.xml deleted file mode 100644 index e5ce3596e3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00691.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00691 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00692.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00692.xml deleted file mode 100644 index e02354081e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00692.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00692 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00693.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00693.xml deleted file mode 100644 index e17040ed68..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00693.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00693 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00694.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00694.java index 92eeeb0cf2..7f834dc8c9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00694.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00694.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -71,12 +70,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00694.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00694.xml deleted file mode 100644 index f4d41bb954..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00694.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00694 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00695.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00695.java index 02b814e3d5..6acfed0393 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00695.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00695.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -76,12 +75,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00695.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00695.xml deleted file mode 100644 index 8416ab50fd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00695.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00695 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00696.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00696.xml deleted file mode 100644 index fcc903b647..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00696.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00696 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00697.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00697.xml deleted file mode 100644 index 27d9949562..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00697.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00697 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00698.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00698.xml deleted file mode 100644 index 23e381855e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00698.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00698 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00699.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00699.xml deleted file mode 100644 index ce3a211fc2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00699.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00699 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00700.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00700.xml deleted file mode 100644 index 3907a06d1c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00700.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00700 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00701.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00701.java index 872835ece4..602714e608 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00701.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00701.java @@ -95,12 +95,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00701.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00701.xml deleted file mode 100644 index 07b2900128..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00701.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00701 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00702.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00702.xml deleted file mode 100644 index fed1a63edc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00702.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00702 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00703.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00703.xml deleted file mode 100644 index 3db08a9016..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00703.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00703 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00704.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00704.xml deleted file mode 100644 index 7c35331ee7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00704.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00704 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00705.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00705.xml deleted file mode 100644 index 50b79e391d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00705.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00705 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00706.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00706.xml deleted file mode 100644 index 7b89ee78fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00706.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00706 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00707.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00707.xml deleted file mode 100644 index 5ef1d7cf77..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00707.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00707 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00708.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00708.xml deleted file mode 100644 index e7c9e20ae6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00708.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00708 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00709.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00709.xml deleted file mode 100644 index 81a4b50b4f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00709.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00709 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00710.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00710.xml deleted file mode 100644 index e2f76e456a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00710.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00710 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00711.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00711.xml deleted file mode 100644 index 5c53d19f58..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00711.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00711 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00712.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00712.xml deleted file mode 100644 index 24ad1450a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00712.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00712 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00713.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00713.xml deleted file mode 100644 index 403c67a223..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00713.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00713 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00714.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00714.xml deleted file mode 100644 index 4b21faedea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00714.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00714 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00715.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00715.xml deleted file mode 100644 index 1eff6cb28e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00715.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00715 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00716.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00716.xml deleted file mode 100644 index 3a5fb97cc8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00716.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00716 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00717.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00717.xml deleted file mode 100644 index efb593ab00..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00717.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00717 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00718.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00718.xml deleted file mode 100644 index bb77109329..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00718.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00718 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00719.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00719.xml deleted file mode 100644 index 63d4651e3b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00719.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00719 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00720.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00720.xml deleted file mode 100644 index 7a67c927d6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00720.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00720 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00721.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00721.xml deleted file mode 100644 index 79ab6534ca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00721.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00721 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00722.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00722.xml deleted file mode 100644 index 81e42d8b8e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00722.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00722 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00723.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00723.xml deleted file mode 100644 index 69adfad5a9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00723.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00723 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00724.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00724.xml deleted file mode 100644 index abcda056a1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00724.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00724 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00725.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00725.xml deleted file mode 100644 index 96c0b14fd3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00725.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00725 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00726.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00726.xml deleted file mode 100644 index 45209542cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00726.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00726 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00727.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00727.xml deleted file mode 100644 index a494eb2d1d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00727.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00727 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00728.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00728.xml deleted file mode 100644 index f21727ee3b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00728.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00728 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00729.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00729.xml deleted file mode 100644 index bc15ceda17..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00729.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00729 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00730.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00730.xml deleted file mode 100644 index c9e45a9fa7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00730.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00730 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00731.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00731.xml deleted file mode 100644 index f5f7b408f9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00731.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00731 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00732.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00732.xml deleted file mode 100644 index fcb4f9be48..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00732.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00732 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00733.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00733.xml deleted file mode 100644 index 794da6d65f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00733.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00733 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00734.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00734.xml deleted file mode 100644 index 03b6b6c0c1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00734.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00734 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00735.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00735.xml deleted file mode 100644 index f1e192431e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00735.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00735 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00736.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00736.xml deleted file mode 100644 index 699c323aea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00736.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00736 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00737.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00737.xml deleted file mode 100644 index 8bdba77bd7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00737.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00737 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00738.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00738.xml deleted file mode 100644 index 71901b44f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00738.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00738 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00739.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00739.xml deleted file mode 100644 index 5d5379d793..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00739.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00739 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00740.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00740.xml deleted file mode 100644 index 91228d579c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00740.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00740 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00741.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00741.xml deleted file mode 100644 index 3d94aa66a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00741.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00741 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00742.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00742.xml deleted file mode 100644 index 438820f836..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00742.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00742 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00743.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00743.xml deleted file mode 100644 index 22563915dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00743.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00743 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00744.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00744.xml deleted file mode 100644 index 3bc6cbf0a6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00744.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00744 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00745.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00745.xml deleted file mode 100644 index 87b6366986..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00745.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00745 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00746.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00746.xml deleted file mode 100644 index 4a9d15bcd4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00746.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00746 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00747.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00747.xml deleted file mode 100644 index 942c34662d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00747.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00747 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00748.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00748.xml deleted file mode 100644 index ca829382da..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00748.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00748 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00749.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00749.xml deleted file mode 100644 index cc980d26da..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00749.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00749 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00750.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00750.xml deleted file mode 100644 index 62582b8255..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00750.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00750 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00751.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00751.xml deleted file mode 100644 index ea85cc2442..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00751.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00751 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00752.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00752.xml deleted file mode 100644 index 3a321ea3e1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00752.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00752 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00753.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00753.xml deleted file mode 100644 index 5b8aeb7e71..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00753.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00753 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00754.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00754.xml deleted file mode 100644 index 79c9c096ca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00754.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00754 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00755.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00755.xml deleted file mode 100644 index eac892f500..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00755.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00755 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00756.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00756.xml deleted file mode 100644 index 31fa1612d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00756.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00756 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00757.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00757.xml deleted file mode 100644 index 666f420af2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00757.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00757 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00758.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00758.xml deleted file mode 100644 index af9bb9cd54..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00758.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00758 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00759.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00759.xml deleted file mode 100644 index 80519474a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00759.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00759 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00760.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00760.java index bd35513af1..577024f844 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00760.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00760.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00760.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00760.xml deleted file mode 100644 index 315b7b2b15..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00760.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00760 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00761.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00761.java index c9be8a0291..5721fabf0d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00761.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00761.java @@ -78,7 +78,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00761.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00761.xml deleted file mode 100644 index b29542f9ba..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00761.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00761 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00762.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00762.java index 74259017a8..9cea0ea1b3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00762.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00762.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00762.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00762.xml deleted file mode 100644 index b1ee52c28c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00762.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00762 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00763.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00763.java index c415740406..25df60cb44 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00763.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00763.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00763.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00763.xml deleted file mode 100644 index 5514895ee0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00763.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00763 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00764.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00764.xml deleted file mode 100644 index 04aeda82b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00764.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00764 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00765.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00765.xml deleted file mode 100644 index 509576aeee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00765.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00765 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00766.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00766.xml deleted file mode 100644 index 592ef77445..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00766.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00766 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00767.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00767.xml deleted file mode 100644 index c9494207e9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00767.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00767 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00768.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00768.java index b0acb740be..8fd2e73f13 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00768.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00768.java @@ -56,10 +56,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00768.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00768.xml deleted file mode 100644 index 1a91c7e508..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00768.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00768 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00769.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00769.xml deleted file mode 100644 index f1d4c510f6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00769.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00769 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00770.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00770.java index 8a01f04368..61856844dc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00770.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00770.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00770.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00770.xml deleted file mode 100644 index 0d4dc3e7f3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00770.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00770 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00771.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00771.java index fd8d7c3f42..6379479e3c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00771.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00771.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00771.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00771.xml deleted file mode 100644 index 9eafb458bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00771.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00771 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00772.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00772.java index e119ad0711..e0a56267b0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00772.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00772.java @@ -76,7 +76,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00772.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00772.xml deleted file mode 100644 index 53cc8b5671..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00772.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00772 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00773.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00773.java index 0968a1c073..bf0f04cae4 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00773.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00773.java @@ -67,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00773.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00773.xml deleted file mode 100644 index 84e1d9cce8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00773.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00773 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00774.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00774.java index 6b9f44e6b9..e33efc1b17 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00774.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00774.java @@ -76,7 +76,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00774.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00774.xml deleted file mode 100644 index 758cf952e5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00774.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00774 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00775.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00775.xml deleted file mode 100644 index 71c3aae911..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00775.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00775 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00776.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00776.xml deleted file mode 100644 index eb1190f80d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00776.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00776 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00777.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00777.xml deleted file mode 100644 index 8e1d20d616..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00777.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00777 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00778.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00778.xml deleted file mode 100644 index 92200f196c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00778.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00778 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00779.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00779.xml deleted file mode 100644 index 2eb5cf6310..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00779.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00779 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00780.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00780.xml deleted file mode 100644 index 22fd80e0ad..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00780.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00780 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00781.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00781.xml deleted file mode 100644 index 05728b4804..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00781.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00781 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00782.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00782.xml deleted file mode 100644 index 993ee2fc5d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00782.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00782 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00783.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00783.xml deleted file mode 100644 index 03c9aa1265..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00783.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00783 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00784.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00784.xml deleted file mode 100644 index e30e51b72d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00784.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00784 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00785.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00785.xml deleted file mode 100644 index ea0b830de1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00785.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00785 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00786.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00786.xml deleted file mode 100644 index 005ff29924..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00786.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00786 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00787.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00787.xml deleted file mode 100644 index 0a1bf92825..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00787.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00787 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00788.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00788.xml deleted file mode 100644 index 98f9f97721..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00788.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00788 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00789.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00789.xml deleted file mode 100644 index 8ee07d2629..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00789.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00789 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00790.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00790.xml deleted file mode 100644 index fa11b6eee8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00790.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00790 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00791.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00791.xml deleted file mode 100644 index 8b435ebbda..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00791.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00791 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00792.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00792.xml deleted file mode 100644 index 5dab0d0ac6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00792.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00792 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00793.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00793.xml deleted file mode 100644 index b158e7f8f1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00793.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00793 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00794.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00794.xml deleted file mode 100644 index 11568b2a1d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00794.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00794 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00795.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00795.xml deleted file mode 100644 index 2b69596c8f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00795.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00795 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00796.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00796.xml deleted file mode 100644 index 55329ce15f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00796.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00796 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00797.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00797.xml deleted file mode 100644 index e80bf42a18..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00797.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00797 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00798.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00798.xml deleted file mode 100644 index 01f31559b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00798.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00798 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00799.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00799.xml deleted file mode 100644 index 22affda878..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00799.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00799 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00800.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00800.xml deleted file mode 100644 index c68d802f61..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00800.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00800 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00801.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00801.xml deleted file mode 100644 index 1c17ed7cc7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00801.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00801 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00802.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00802.xml deleted file mode 100644 index 33e07e8e06..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00802.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00802 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00803.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00803.xml deleted file mode 100644 index d121d210f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00803.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00803 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00804.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00804.xml deleted file mode 100644 index 778ac00392..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00804.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00804 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00805.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00805.xml deleted file mode 100644 index 7bf13447d6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00805.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00805 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00806.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00806.xml deleted file mode 100644 index b1984331d9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00806.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00806 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00807.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00807.xml deleted file mode 100644 index aac33c430f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00807.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00807 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00808.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00808.xml deleted file mode 100644 index d6709c593b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00808.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00808 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00809.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00809.xml deleted file mode 100644 index 2877b0f1c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00809.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00809 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00810.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00810.xml deleted file mode 100644 index 666c6fc38e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00810.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00810 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00811.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00811.xml deleted file mode 100644 index c991478230..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00811.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00811 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00812.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00812.xml deleted file mode 100644 index ef5f82698b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00812.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00812 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00813.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00813.xml deleted file mode 100644 index 4b6f955b5f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00813.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00813 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00814.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00814.xml deleted file mode 100644 index af62bae51d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00814.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00814 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00815.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00815.xml deleted file mode 100644 index 0c184f7f57..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00815.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00815 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00816.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00816.xml deleted file mode 100644 index 505eaa3f2d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00816.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00816 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00817.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00817.xml deleted file mode 100644 index a7cd945167..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00817.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00817 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00818.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00818.xml deleted file mode 100644 index b1f6b62105..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00818.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00818 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00819.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00819.xml deleted file mode 100644 index 5366bb4393..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00819.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00819 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00820.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00820.xml deleted file mode 100644 index cc8f488d2b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00820.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00820 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00821.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00821.xml deleted file mode 100644 index 49ba5235f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00821.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00821 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00822.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00822.xml deleted file mode 100644 index 2de8d0c329..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00822.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00822 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00823.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00823.xml deleted file mode 100644 index 17c6c451ba..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00823.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00823 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00824.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00824.xml deleted file mode 100644 index 270878690e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00824.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00824 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00825.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00825.xml deleted file mode 100644 index a49b29cb7a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00825.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00825 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00826.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00826.xml deleted file mode 100644 index 7e133931eb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00826.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00826 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00827.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00827.xml deleted file mode 100644 index cd737fa989..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00827.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00827 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00828.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00828.xml deleted file mode 100644 index 6bea299156..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00828.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00828 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00829.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00829.xml deleted file mode 100644 index 7e4c2107dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00829.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00829 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00830.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00830.xml deleted file mode 100644 index 076e5c16a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00830.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00830 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00831.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00831.xml deleted file mode 100644 index 562dc08806..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00831.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00831 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00832.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00832.xml deleted file mode 100644 index 98b06f7fb0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00832.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00832 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00833.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00833.xml deleted file mode 100644 index 51c015500f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00833.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00833 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00834.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00834.xml deleted file mode 100644 index 54161280f2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00834.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00834 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00835.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00835.xml deleted file mode 100644 index 311259e553..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00835.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00835 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00836.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00836.xml deleted file mode 100644 index 74a6b724a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00836.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00836 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00837.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00837.java index bebe5de008..5ef381482f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00837.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00837.java @@ -91,7 +91,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00837.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00837.xml deleted file mode 100644 index a3e117b6af..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00837.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00837 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00838.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00838.java index fdb384be59..c00ae7e734 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00838.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00838.java @@ -105,7 +105,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00838.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00838.xml deleted file mode 100644 index 4b1d626ef4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00838.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00838 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00839.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00839.java index 513c5cc655..edeb349417 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00839.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00839.java @@ -87,7 +87,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00839.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00839.xml deleted file mode 100644 index 331cd8f22c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00839.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00839 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00840.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00840.xml deleted file mode 100644 index 68773159ea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00840.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00840 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00841.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00841.xml deleted file mode 100644 index 383f162f68..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00841.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00841 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00842.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00842.java index cc11768ee6..93cf792940 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00842.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00842.java @@ -80,6 +80,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -87,7 +88,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00842.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00842.xml deleted file mode 100644 index 5d431d0a6d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00842.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00842 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00843.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00843.xml deleted file mode 100644 index 32d787e9dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00843.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00843 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00844.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00844.java index ea003ae318..fe6274bb23 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00844.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00844.java @@ -87,10 +87,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00844.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00844.xml deleted file mode 100644 index 6e7b91aab9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00844.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00844 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00845.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00845.java index 69a8ea505f..8618e97693 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00845.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00845.java @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -90,7 +89,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00845.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00845.xml deleted file mode 100644 index aca0dd39b9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00845.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00845 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00846.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00846.xml deleted file mode 100644 index e69c93b599..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00846.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00846 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00847.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00847.java index cbbcd334f9..2c0b141377 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00847.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00847.java @@ -90,7 +90,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00847.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00847.xml deleted file mode 100644 index a5d1d2bc4d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00847.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00847 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00848.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00848.java index 2f7827d649..fffc4a9912 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00848.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00848.java @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00848.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00848.xml deleted file mode 100644 index 656f0e4a77..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00848.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00848 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00849.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00849.java index f30a871195..e13afbd590 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00849.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00849.java @@ -89,7 +89,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00849.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00849.xml deleted file mode 100644 index 37326e3c08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00849.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00849 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00850.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00850.java index 2620b83b73..1812add89e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00850.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00850.java @@ -89,7 +89,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00850.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00850.xml deleted file mode 100644 index c05eea9b02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00850.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00850 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00851.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00851.java index ba5bfe682c..e7bd30756c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00851.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00851.java @@ -84,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00851.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00851.xml deleted file mode 100644 index 5e98a3ca71..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00851.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00851 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00852.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00852.xml deleted file mode 100644 index aea02a29bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00852.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00852 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00853.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00853.xml deleted file mode 100644 index ac1e963ea1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00853.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00853 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00854.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00854.xml deleted file mode 100644 index 3c29e9eb0e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00854.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00854 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00855.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00855.xml deleted file mode 100644 index 157159904e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00855.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00855 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00856.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00856.xml deleted file mode 100644 index c6d5090ff9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00856.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00856 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00857.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00857.xml deleted file mode 100644 index 1416d6ee4a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00857.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00857 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00858.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00858.xml deleted file mode 100644 index 3aeebd69d2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00858.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00858 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00859.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00859.xml deleted file mode 100644 index f7e0db5d10..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00859.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00859 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00860.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00860.java index 626151d82f..0532d16779 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00860.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00860.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -81,12 +80,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00860.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00860.xml deleted file mode 100644 index 9658899a66..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00860.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00860 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00861.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00861.java index 880591d514..3ad390a16c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00861.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00861.java @@ -73,7 +73,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -89,12 +88,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00861.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00861.xml deleted file mode 100644 index daa1937513..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00861.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00861 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00862.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00862.xml deleted file mode 100644 index a75c8c8ef2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00862.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00862 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00863.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00863.xml deleted file mode 100644 index 03add98de6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00863.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00863 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00864.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00864.xml deleted file mode 100644 index 97a796c000..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00864.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00864 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00865.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00865.xml deleted file mode 100644 index 513df6212d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00865.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00865 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00866.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00866.xml deleted file mode 100644 index 8bfd16b2d4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00866.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00866 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00867.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00867.xml deleted file mode 100644 index 858216b3d2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00867.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00867 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00868.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00868.xml deleted file mode 100644 index 48ba5441a4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00868.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00868 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00869.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00869.xml deleted file mode 100644 index 1a282d4822..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00869.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00869 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00870.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00870.xml deleted file mode 100644 index 20d0e1816a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00870.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00870 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00871.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00871.xml deleted file mode 100644 index 6aac859d57..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00871.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00871 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00872.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00872.xml deleted file mode 100644 index 9b7b95ac2b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00872.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00872 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00873.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00873.xml deleted file mode 100644 index 5793f7d3c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00873.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00873 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00874.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00874.xml deleted file mode 100644 index 5c4e19db14..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00874.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00874 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00875.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00875.xml deleted file mode 100644 index 39d97be82c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00875.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00875 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00876.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00876.xml deleted file mode 100644 index 05e9825ca0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00876.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00876 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00877.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00877.xml deleted file mode 100644 index 42f596f538..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00877.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00877 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00878.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00878.xml deleted file mode 100644 index 289ebaba6f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00878.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00878 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00879.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00879.xml deleted file mode 100644 index 3e92efb8a5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00879.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00879 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00880.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00880.xml deleted file mode 100644 index 757f6432a8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00880.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00880 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00881.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00881.xml deleted file mode 100644 index 60fc661716..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00881.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00881 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00882.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00882.xml deleted file mode 100644 index 15d736e6fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00882.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00882 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00883.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00883.xml deleted file mode 100644 index 267f8025fa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00883.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00883 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00884.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00884.xml deleted file mode 100644 index 3b89ebcafb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00884.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00884 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00885.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00885.xml deleted file mode 100644 index 07091c477c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00885.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00885 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00886.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00886.xml deleted file mode 100644 index a494f0b1b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00886.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00886 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00887.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00887.xml deleted file mode 100644 index 4984c3ffdf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00887.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00887 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00888.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00888.xml deleted file mode 100644 index cfd2d7910b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00888.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00888 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00889.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00889.xml deleted file mode 100644 index 8472135319..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00889.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00889 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00890.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00890.xml deleted file mode 100644 index e376f28016..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00890.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00890 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00891.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00891.xml deleted file mode 100644 index c5ec0ac971..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00891.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00891 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00892.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00892.xml deleted file mode 100644 index 5c9d0a287e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00892.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00892 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00893.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00893.xml deleted file mode 100644 index 9ddc8e596a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00893.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00893 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00894.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00894.xml deleted file mode 100644 index 312b2fe52a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00894.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 00894 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00895.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00895.xml deleted file mode 100644 index 543bc16e54..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00895.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00895 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00896.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00896.xml deleted file mode 100644 index c4b73ccbb3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00896.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00896 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00897.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00897.xml deleted file mode 100644 index 01b5c0d8ed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00897.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00897 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00898.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00898.xml deleted file mode 100644 index 87b9e83d2d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00898.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00898 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00899.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00899.xml deleted file mode 100644 index 757a3f0f9e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00899.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00899 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00900.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00900.xml deleted file mode 100644 index 8ad426e927..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00900.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00900 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00901.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00901.xml deleted file mode 100644 index 2cb4e05326..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00901.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00901 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00902.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00902.xml deleted file mode 100644 index 218cd877ce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00902.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00902 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00903.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00903.xml deleted file mode 100644 index f58f6eeff3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00903.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00903 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00904.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00904.xml deleted file mode 100644 index b6d775ad70..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00904.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00904 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00905.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00905.xml deleted file mode 100644 index 1a382855f4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00905.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00905 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00906.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00906.xml deleted file mode 100644 index 82a3e4177a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00906.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00906 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00907.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00907.xml deleted file mode 100644 index 66519e0443..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00907.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00907 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00908.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00908.xml deleted file mode 100644 index ead2b16f1c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00908.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00908 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00909.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00909.xml deleted file mode 100644 index 16c48202cc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00909.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00909 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00910.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00910.xml deleted file mode 100644 index 37187ae291..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00910.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00910 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00911.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00911.xml deleted file mode 100644 index db7f3b71d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00911.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00911 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00912.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00912.xml deleted file mode 100644 index f0ccbf56f8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00912.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00912 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00913.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00913.xml deleted file mode 100644 index f2a57545f3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00913.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00913 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00914.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00914.xml deleted file mode 100644 index 3fd07c7d6e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00914.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00914 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00915.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00915.xml deleted file mode 100644 index 3ff5169082..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00915.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00915 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00916.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00916.xml deleted file mode 100644 index 28d76d6d19..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00916.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00916 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00917.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00917.xml deleted file mode 100644 index 988d5e2eb3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00917.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00917 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00918.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00918.xml deleted file mode 100644 index 4ebf0492bb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00918.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00918 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00919.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00919.xml deleted file mode 100644 index 298c674269..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00919.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00919 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00920.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00920.xml deleted file mode 100644 index ddd051b5d5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00920.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00920 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00921.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00921.xml deleted file mode 100644 index 6440d1709d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00921.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00921 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00922.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00922.xml deleted file mode 100644 index 4eab2344de..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00922.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00922 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00923.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00923.xml deleted file mode 100644 index a3f67bd1e4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00923.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00923 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00924.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00924.java index d0664cb51e..6ce3fe6850 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00924.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00924.java @@ -71,7 +71,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00924.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00924.xml deleted file mode 100644 index 7a8ea74526..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00924.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00924 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00925.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00925.java index 988638bb98..cf69de7834 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00925.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00925.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00925.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00925.xml deleted file mode 100644 index 166598bcdf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00925.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00925 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00926.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00926.java index 30e8fd41cb..3c6f5521fc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00926.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00926.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00926.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00926.xml deleted file mode 100644 index e85183bc3f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00926.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00926 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00927.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00927.java index 27b2f2c443..e1fc774dbc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00927.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00927.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00927.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00927.xml deleted file mode 100644 index e75a4b0a7c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00927.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00927 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00928.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00928.java index 248fc78c23..5cd232408c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00928.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00928.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00928.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00928.xml deleted file mode 100644 index 4c1dc1ba1c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00928.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00928 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00929.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00929.java index 5781c5c28f..ea0a08f435 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00929.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00929.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00929.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00929.xml deleted file mode 100644 index a7ba2e6a73..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00929.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00929 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00930.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00930.xml deleted file mode 100644 index 8120ede03e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00930.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00930 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00931.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00931.xml deleted file mode 100644 index 6a2cac268b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00931.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00931 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00932.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00932.xml deleted file mode 100644 index 331e36a2bb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00932.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00932 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00933.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00933.java index 40757c3adf..2e939815ca 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00933.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00933.java @@ -49,19 +49,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = thing.doSomething(param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -71,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00933.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00933.xml deleted file mode 100644 index 6f544525c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00933.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00933 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00934.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00934.xml deleted file mode 100644 index d4174d8d5e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00934.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00934 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00935.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00935.java index 9b877a80f7..2820d57c44 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00935.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00935.java @@ -72,10 +72,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00935.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00935.xml deleted file mode 100644 index 5bebc5d157..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00935.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00935 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00936.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00936.xml deleted file mode 100644 index 7e551c3d9d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00936.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00936 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00937.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00937.java index 0c42e52899..51d04b5acb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00937.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00937.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00937.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00937.xml deleted file mode 100644 index 9c961d6a18..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00937.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00937 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00938.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00938.java index eb94dd760f..3e920d1bba 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00938.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00938.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00938.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00938.xml deleted file mode 100644 index 5aeb9be7c0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00938.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00938 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00939.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00939.java index 5e50ed325a..b4a59c6f9b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00939.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00939.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00939.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00939.xml deleted file mode 100644 index 2e0ce561ff..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00939.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00939 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00940.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00940.java index 8c6ee2a8ab..5ec756c3e5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00940.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00940.java @@ -66,7 +66,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00940.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00940.xml deleted file mode 100644 index 374082ae60..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00940.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00940 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00941.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00941.xml deleted file mode 100644 index fabd944e84..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00941.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 00941 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00942.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00942.java index edabdd9766..4b87f37fa0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00942.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00942.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00942", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00942.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00942.xml deleted file mode 100644 index 17ab8b8283..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00942.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00942 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00943.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00943.java index 7ea33e0c3f..dd52ce869d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00943.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00943.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00943", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00943.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00943.xml deleted file mode 100644 index d5d2dfcc72..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00943.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00943 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00944.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00944.java index a96c19cb02..3293ee524d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00944.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00944.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00944", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00944.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00944.xml deleted file mode 100644 index cb51f4e2a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00944.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00944 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00945.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00945.java index 69b502d954..7dad5a5c94 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00945.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00945.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00945", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00945.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00945.xml deleted file mode 100644 index 8c6e972eb0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00945.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00945 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00946.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00946.java index 8a48761126..900df70176 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00946.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00946.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00946", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00946.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00946.xml deleted file mode 100644 index 293a981539..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00946.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 00946 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00947.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00947.java index abe6252c57..102e26d991 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00947.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00947.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00947", "Ms+Bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -73,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -89,12 +89,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00947.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00947.xml deleted file mode 100644 index 885dff686f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00947.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00947 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00948.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00948.java index be08aa50e1..356249c699 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00948.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00948.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00948", "Ms+Bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -72,7 +73,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -88,12 +88,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00948.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00948.xml deleted file mode 100644 index a4ee440344..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00948.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00948 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00949.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00949.java index 0e393f0819..401699151f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00949.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00949.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00949", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00949.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00949.xml deleted file mode 100644 index 929555b22c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00949.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00949 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00950.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00950.java index 21b522e836..fd50b82f43 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00950.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00950.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00950", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00950.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00950.xml deleted file mode 100644 index ffcd1023a6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00950.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00950 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00951.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00951.java index 07bb305764..d89cc55769 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00951.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00951.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00951", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00951.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00951.xml deleted file mode 100644 index c12923c259..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00951.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00951 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00952.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00952.java index 194f107ef2..694a1f67c0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00952.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00952.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00952", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00952.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00952.xml deleted file mode 100644 index dec77e1131..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00952.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00952 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00953.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00953.java index 24f827ae47..4c11f04537 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00953.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00953.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00953", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00953.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00953.xml deleted file mode 100644 index f9ce5020dd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00953.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00953 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00954.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00954.java index 68d7409940..eb3b36d2d9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00954.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00954.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00954", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00954.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00954.xml deleted file mode 100644 index d5d4cb49a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00954.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00954 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00955.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00955.java index c84ef7cb2a..3633298bc2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00955.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00955.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00955", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00955.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00955.xml deleted file mode 100644 index 933eb7b74d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00955.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00955 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00956.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00956.java index 875d0ccbb3..f4e788b397 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00956.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00956.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00956", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00956.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00956.xml deleted file mode 100644 index eb11cef8d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00956.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00956 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00957.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00957.java index 55f1406de6..1f1c4f72cb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00957.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00957.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00957", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00957.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00957.xml deleted file mode 100644 index fc76a45060..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00957.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00957 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00958.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00958.java index d520eaa57c..74f0c0849d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00958.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00958.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00958", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00958.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00958.xml deleted file mode 100644 index 4dd1a7cd89..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00958.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 00958 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00959.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00959.java index e2fe46e453..149cabe35a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00959.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00959.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00959", "Ms+Bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -91,12 +92,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00959.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00959.xml deleted file mode 100644 index 1763a6ab1f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00959.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 00959 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00960.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00960.java index cf958884b5..d47c6c9a2f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00960.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00960.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00960", "anything"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00960.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00960.xml deleted file mode 100644 index 64a0b12afd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00960.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00960 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00961.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00961.java index 29ba414037..ecc6d76aa8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00961.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00961.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00961", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00961.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00961.xml deleted file mode 100644 index 71425aef16..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00961.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00961 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00962.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00962.java index ca328b4764..c188e5056c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00962.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00962.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00962", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00962.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00962.xml deleted file mode 100644 index 340e4de0fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00962.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00962 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00963.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00963.java index 92d5597e26..b27fad7b06 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00963.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00963.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00963", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00963.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00963.xml deleted file mode 100644 index 961f036d64..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00963.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00963 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00964.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00964.java index 921bceab52..db66eca7c9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00964.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00964.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00964", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00964.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00964.xml deleted file mode 100644 index bfda5bddf2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00964.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00964 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00965.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00965.java index cb36981d2f..d266791a08 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00965.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00965.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00965", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00965.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00965.xml deleted file mode 100644 index ca850873ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00965.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00965 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00966.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00966.java index f384468ec0..a1eb5b2e4c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00966.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00966.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00966", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00966.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00966.xml deleted file mode 100644 index 2955fbaff4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00966.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00966 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00967.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00967.java index 7293356639..31babc6519 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00967.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00967.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00967", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00967.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00967.xml deleted file mode 100644 index 49017c6b56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00967.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 00967 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00968.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00968.java index 8f08cb3fcd..a62c969f02 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00968.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00968.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00968", "ECHOOO"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00968.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00968.xml deleted file mode 100644 index a0e4542dd0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00968.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00968 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00969.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00969.java index 7f22d1c2d3..0a62b0f3c4 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00969.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00969.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00969", "ECHOOO"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00969.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00969.xml deleted file mode 100644 index e0a086388a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00969.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00969 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00970.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00970.java index 85aa5e1837..c9594801d3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00970.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00970.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00970", "ECHOOO"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00970.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00970.xml deleted file mode 100644 index 553c7e8db9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00970.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00970 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00971.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00971.java index e150eb0ab2..c516fa23d6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00971.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00971.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00971", "does_not_matter"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00971.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00971.xml deleted file mode 100644 index 49e124c54a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00971.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00971 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00972.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00972.java index cd955a1bee..841e66e3ed 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00972.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00972.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00972", "does_not_matter"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00972.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00972.xml deleted file mode 100644 index 1f9ffeaaba..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00972.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00972 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00973.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00973.java index 792c74c173..6c78b04b86 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00973.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00973.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00973", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00973.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00973.xml deleted file mode 100644 index a47ca69246..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00973.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00973 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00974.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00974.java index 6ae56d14bb..7c231a9d66 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00974.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00974.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00974", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00974.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00974.xml deleted file mode 100644 index 4056983dd6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00974.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00974 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00975.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00975.java index 25275cf1ba..98ad757df6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00975.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00975.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00975", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00975.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00975.xml deleted file mode 100644 index a7f56aad2c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00975.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00975 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00976.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00976.java index e71cdac3e6..53738b2c7c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00976.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00976.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00976", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00976.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00976.xml deleted file mode 100644 index 87ce1616ae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00976.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00976 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00977.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00977.java index 6cfc9bd8cd..615e2c1528 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00977.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00977.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00977", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00977.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00977.xml deleted file mode 100644 index bc1f011b44..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00977.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 00977 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00978.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00978.java index e0c51eb64c..facab6dffc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00978.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00978.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00978", "localhost"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00978.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00978.xml deleted file mode 100644 index 37861d8b05..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00978.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00978 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00979.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00979.java index ebf6fdd539..8cd4c23bbf 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00979.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00979.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00979", "."); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00979.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00979.xml deleted file mode 100644 index 1d6382dd80..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00979.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00979 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00980.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00980.java index 89212fae69..85e920e512 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00980.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00980.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00980", "FOO%3Decho+Injection"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00980.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00980.xml deleted file mode 100644 index aa2c5acedc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00980.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00980 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00981.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00981.java index c5d2ae0c16..da1d5b0414 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00981.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00981.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00981", "."); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00981.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00981.xml deleted file mode 100644 index 8f1e1f4cff..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00981.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00981 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00982.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00982.java index a7fdbec671..76ed3f4e51 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00982.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00982.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00982", "FOO%3Decho+Injection"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00982.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00982.xml deleted file mode 100644 index 8fb77fec5b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00982.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00982 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00983.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00983.java index 039fd35eab..5261de7114 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00983.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00983.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00983", "FOO%3Decho+Injection"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00983.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00983.xml deleted file mode 100644 index 80cb8c7b1b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00983.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 00983 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00984.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00984.java index 80770adc19..65dc6b2be7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00984.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00984.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00984", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00984.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00984.xml deleted file mode 100644 index 2de2aceb2d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00984.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00984 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00985.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00985.java index f1afe3457a..20669d47a6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00985.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00985.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00985", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00985.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00985.xml deleted file mode 100644 index fe68617e47..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00985.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00985 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00986.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00986.java index 35e7aec7ef..e1d412e539 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00986.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00986.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00986", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00986.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00986.xml deleted file mode 100644 index d2fcc058bd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00986.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00986 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00987.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00987.java index 5a112527cd..a5e4d96fff 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00987.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00987.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00987", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00987.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00987.xml deleted file mode 100644 index e4d7048055..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00987.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00987 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00988.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00988.java index a1af647dd0..42796d82b8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00988.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00988.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00988", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00988.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00988.xml deleted file mode 100644 index b72868be0d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00988.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00988 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00989.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00989.java index a1f592860e..efdd1b6fbb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00989.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00989.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00989", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00989.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00989.xml deleted file mode 100644 index 0f7c4ee234..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00989.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00989 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00990.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00990.java index ada688ffb3..07b22f614c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00990.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00990.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00990", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00990.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00990.xml deleted file mode 100644 index d77171e4d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00990.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 00990 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00991.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00991.java index 1594460d8e..b45f31f759 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00991.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00991.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00991", "color"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00991.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00991.xml deleted file mode 100644 index 50beb660de..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00991.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00991 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00992.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00992.java index 15fa167ba5..67081747fe 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00992.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00992.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00992", "color"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00992.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00992.xml deleted file mode 100644 index 841d78e088..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00992.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00992 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00993.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00993.java index b4fd61317b..3639a04f3f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00993.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00993.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00993", "my_user_id"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00993.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00993.xml deleted file mode 100644 index ff7dfca7ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00993.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00993 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00994.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00994.java index 59ae632276..31938e4a00 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00994.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00994.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00994", "my_user_id"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00994.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00994.xml deleted file mode 100644 index 866505529c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00994.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00994 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00995.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00995.java index c25441aff9..e36686f391 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00995.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00995.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest00995", "color"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00995.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00995.xml deleted file mode 100644 index c6d179e876..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00995.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 00995 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00996.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00996.java index 2b9e41e14e..4f5f2a5e13 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00996.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00996.java @@ -38,6 +38,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) "BenchmarkTest00996", "verifyUserPassword%28%27foo%27%2C%27bar%27%29"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -77,7 +78,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00996.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00996.xml deleted file mode 100644 index 530b4aedca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00996.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00996 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00997.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00997.java index 6c7b31f6e1..b6fd32cc53 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00997.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00997.java @@ -38,6 +38,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) "BenchmarkTest00997", "verifyUserPassword%28%27foo%27%2C%27bar%27%29"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -80,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00997.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00997.xml deleted file mode 100644 index 1b96c58373..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00997.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00997 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00998.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00998.java index 73c26ad083..f218e47e14 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00998.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00998.java @@ -38,6 +38,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) "BenchmarkTest00998", "verifyUserPassword%28%27foo%27%2C%27bar%27%29"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -80,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00998.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00998.xml deleted file mode 100644 index 920ed3a566..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00998.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00998 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00999.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00999.java index 94a7b8b61e..c69c13a553 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00999.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00999.java @@ -38,6 +38,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) "BenchmarkTest00999", "verifyUserPassword%28%27foo%27%2C%27bar%27%29"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -80,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00999.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00999.xml deleted file mode 100644 index d5904c5522..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest00999.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 00999 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01000.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01000.java index d964166002..f75c026c2d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01000.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01000.java @@ -38,6 +38,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) "BenchmarkTest01000", "verifyUserPassword%28%27foo%27%2C%27bar%27%29"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -81,7 +82,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01000.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01000.xml deleted file mode 100644 index 7df67ff1d7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01000.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01000 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01001.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01001.java index b3024e606a..6848523539 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01001.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01001.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01001", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -76,7 +77,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01001.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01001.xml deleted file mode 100644 index 9a8c03e7d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01001.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01001 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01002.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01002.java index eee25d4fec..9ece781e61 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01002.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01002.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01002", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -77,7 +78,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01002.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01002.xml deleted file mode 100644 index c7112a6920..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01002.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01002 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01003.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01003.java index 79e20c2eb5..ef9efd2a35 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01003.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01003.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01003", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -77,7 +78,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01003.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01003.xml deleted file mode 100644 index 04c8d712c9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01003.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01003 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01004.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01004.java index 771de318a9..3ce2110c12 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01004.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01004.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01004", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -77,7 +78,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01004.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01004.xml deleted file mode 100644 index 6059959e9d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01004.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01004 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01005.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01005.java index 0889432362..3094c7e92f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01005.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01005.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01005", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01005.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01005.xml deleted file mode 100644 index 6ee4664127..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01005.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01005 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01006.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01006.java index cd63247e71..f67b16c8b7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01006.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01006.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01006", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01006.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01006.xml deleted file mode 100644 index 58ab62928b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01006.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01006 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01007.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01007.java index 7174b1aa41..7016af7056 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01007.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01007.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01007", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -71,10 +72,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01007.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01007.xml deleted file mode 100644 index a9e8b71a83..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01007.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01007 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01008.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01008.java index c5ab84f61e..f3cd36e7e3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01008.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01008.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01008", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -70,7 +71,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01008.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01008.xml deleted file mode 100644 index 21ebad0b5d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01008.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01008 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01009.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01009.java index c70a6b7bfc..e34fd6dd48 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01009.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01009.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01009", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -70,7 +71,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01009.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01009.xml deleted file mode 100644 index aea4346fcf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01009.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01009 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01010.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01010.java index 9e29c5f81e..4147e74f5d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01010.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01010.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01010", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01010.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01010.xml deleted file mode 100644 index e6528f0a22..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01010.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01010 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01011.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01011.java index 9d4e34dab2..336e3f8b46 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01011.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01011.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01011", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -75,7 +76,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01011.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01011.xml deleted file mode 100644 index e375a487d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01011.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01011 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01012.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01012.java index cf46c411d8..33295bc646 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01012.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01012.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01012", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -74,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01012.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01012.xml deleted file mode 100644 index fa53919496..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01012.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01012 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01013.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01013.java index d768a1066a..e6302607a2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01013.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01013.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01013", "2222"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01013.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01013.xml deleted file mode 100644 index 7057a102fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01013.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01013 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01014.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01014.java index 1ea8bdfd14..f629d16da2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01014.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01014.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01014", "2222"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01014.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01014.xml deleted file mode 100644 index 6e90a24cc3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01014.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01014 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01015.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01015.xml deleted file mode 100644 index 4d1e9250f3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01015.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01015 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01016.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01016.xml deleted file mode 100644 index 8cb4d43b1f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01016.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01016 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01017.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01017.xml deleted file mode 100644 index 1125d4df75..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01017.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01017 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01018.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01018.xml deleted file mode 100644 index 0f338cae35..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01018.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01018 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01019.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01019.xml deleted file mode 100644 index 2f6f282ee2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01019.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01019 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01020.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01020.xml deleted file mode 100644 index ef0f95f67f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01020.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01020 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01021.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01021.xml deleted file mode 100644 index 37bb388eeb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01021.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01021 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01022.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01022.xml deleted file mode 100644 index c497222f37..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01022.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01022 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01023.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01023.java index 3947635705..0e705a24db 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01023.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01023.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -75,12 +74,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01023.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01023.xml deleted file mode 100644 index cfaad2e25f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01023.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01023 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01024.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01024.java index 1847b41a26..cb021559e1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01024.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01024.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -75,12 +74,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01024.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01024.xml deleted file mode 100644 index 90e890fdc6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01024.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01024 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01025.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01025.xml deleted file mode 100644 index a475559ddf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01025.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01025 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01026.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01026.xml deleted file mode 100644 index f0a43bf01f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01026.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01026 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01027.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01027.xml deleted file mode 100644 index f6bafc1b36..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01027.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01027 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01028.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01028.xml deleted file mode 100644 index e20c6060e9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01028.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01028 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01029.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01029.xml deleted file mode 100644 index 8eda2efd56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01029.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01029 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01030.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01030.xml deleted file mode 100644 index 8b8c3648b7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01030.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01030 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01031.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01031.xml deleted file mode 100644 index b2918078d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01031.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01031 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01032.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01032.xml deleted file mode 100644 index 5def34a3cc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01032.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01032 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01033.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01033.xml deleted file mode 100644 index 4a3b722f1c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01033.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01033 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01034.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01034.xml deleted file mode 100644 index a157d34b99..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01034.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01034 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01035.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01035.xml deleted file mode 100644 index 2c5d647346..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01035.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01035 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01036.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01036.xml deleted file mode 100644 index d8692838fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01036.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01036 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01037.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01037.xml deleted file mode 100644 index 164dafc976..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01037.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01037 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01038.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01038.xml deleted file mode 100644 index 3da1983665..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01038.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01038 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01039.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01039.xml deleted file mode 100644 index 5ad28d5046..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01039.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01039 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01040.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01040.xml deleted file mode 100644 index c4792d6911..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01040.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01040 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01041.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01041.xml deleted file mode 100644 index f3d6d3e1ab..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01041.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01041 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01042.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01042.xml deleted file mode 100644 index 19f5c318ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01042.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01042 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01043.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01043.xml deleted file mode 100644 index a56e832bbe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01043.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01043 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01044.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01044.xml deleted file mode 100644 index 8b532fd870..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01044.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01044 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01045.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01045.xml deleted file mode 100644 index 895dead427..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01045.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01045 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01046.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01046.xml deleted file mode 100644 index 158957d76c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01046.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01046 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01047.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01047.xml deleted file mode 100644 index d54be5953c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01047.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01047 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01048.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01048.xml deleted file mode 100644 index 01f4970e6e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01048.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01048 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01049.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01049.xml deleted file mode 100644 index 13c07a9cfa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01049.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01049 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01050.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01050.xml deleted file mode 100644 index c75c51b187..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01050.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01050 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01051.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01051.xml deleted file mode 100644 index 98d6dc0c93..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01051.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01051 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01052.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01052.xml deleted file mode 100644 index 8576c41a42..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01052.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01052 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01053.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01053.xml deleted file mode 100644 index a334fffb2f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01053.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01053 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01054.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01054.xml deleted file mode 100644 index 1104375689..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01054.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01054 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01055.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01055.xml deleted file mode 100644 index 3e2fc0d610..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01055.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01055 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01056.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01056.xml deleted file mode 100644 index e86150ea77..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01056.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01056 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01057.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01057.xml deleted file mode 100644 index 7bd6aced1f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01057.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01057 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01058.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01058.xml deleted file mode 100644 index ade2980c08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01058.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01058 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01059.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01059.xml deleted file mode 100644 index 6effe87b6a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01059.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01059 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01060.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01060.xml deleted file mode 100644 index cc7791f702..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01060.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01060 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01061.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01061.xml deleted file mode 100644 index b0018b2deb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01061.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01061 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01062.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01062.xml deleted file mode 100644 index 702a88b516..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01062.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01062 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01063.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01063.xml deleted file mode 100644 index afc91f93e0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01063.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01063 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01064.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01064.xml deleted file mode 100644 index 470d0beb5f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01064.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01064 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01065.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01065.xml deleted file mode 100644 index 326451131f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01065.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01065 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01066.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01066.xml deleted file mode 100644 index 2b332d8575..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01066.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01066 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01067.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01067.xml deleted file mode 100644 index ba78765fa3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01067.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01067 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01068.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01068.xml deleted file mode 100644 index 95536b1da2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01068.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01068 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01069.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01069.xml deleted file mode 100644 index 0745c45c56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01069.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01069 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01070.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01070.xml deleted file mode 100644 index 295c56f41f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01070.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01070 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01071.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01071.xml deleted file mode 100644 index 4872ed04e7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01071.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01071 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01072.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01072.xml deleted file mode 100644 index b2d34e98c1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01072.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01072 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01073.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01073.xml deleted file mode 100644 index 51ddb3169a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01073.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01073 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01074.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01074.xml deleted file mode 100644 index fa3ccf05c3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01074.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01074 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01075.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01075.xml deleted file mode 100644 index d7320ea3b1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01075.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01075 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01076.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01076.xml deleted file mode 100644 index 71d9f0f982..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01076.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01076 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01077.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01077.xml deleted file mode 100644 index f6240ca3b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01077.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01077 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01078.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01078.xml deleted file mode 100644 index 0caae9d414..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01078.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01078 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01079.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01079.xml deleted file mode 100644 index a1f9522380..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01079.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01079 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01080.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01080.xml deleted file mode 100644 index 8f9d4cdacb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01080.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01080 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01081.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01081.xml deleted file mode 100644 index a2bcb1df41..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01081.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01081 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01082.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01082.xml deleted file mode 100644 index 63154355a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01082.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01082 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01083.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01083.java index 8c35a3c0f4..ade27aa607 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01083.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01083.java @@ -66,7 +66,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01083.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01083.xml deleted file mode 100644 index 1cc81b7939..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01083.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01083 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01084.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01084.java index 39bc262d46..3f0cfc00d4 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01084.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01084.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01084.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01084.xml deleted file mode 100644 index ca5f7d04b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01084.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01084 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01085.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01085.xml deleted file mode 100644 index 71e73120a5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01085.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01085 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01086.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01086.xml deleted file mode 100644 index f16100a595..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01086.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01086 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01087.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01087.java index 2dd40979a6..d373df9f3d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01087.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01087.java @@ -51,6 +51,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -58,7 +59,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01087.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01087.xml deleted file mode 100644 index 3a8bb6f34a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01087.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01087 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01088.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01088.xml deleted file mode 100644 index 93c147effe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01088.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01088 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01089.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01089.java index e9a7614edd..80b86ba50c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01089.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01089.java @@ -58,10 +58,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01089.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01089.xml deleted file mode 100644 index bde853513c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01089.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01089 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01090.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01090.java index d32c576efb..884395d987 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01090.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01090.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01090.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01090.xml deleted file mode 100644 index 79049d879a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01090.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01090 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01091.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01091.java index 742b793533..5b4425c587 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01091.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01091.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01091.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01091.xml deleted file mode 100644 index 63215bba05..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01091.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01091 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01092.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01092.java index ed043e74d7..abc9f5ef22 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01092.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01092.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01092.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01092.xml deleted file mode 100644 index e48bb6328f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01092.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01092 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01093.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01093.java index f73991dd7b..a2d3947486 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01093.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01093.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01093.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01093.xml deleted file mode 100644 index d7945b7c11..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01093.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01093 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01094.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01094.java index dd9b0be9f2..d7c68e192a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01094.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01094.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01094.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01094.xml deleted file mode 100644 index ea4d0d6cea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01094.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01094 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01095.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01095.java index 82b0497b36..fc7c0f5035 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01095.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01095.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01095.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01095.xml deleted file mode 100644 index 1fcfd3212f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01095.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01095 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01096.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01096.java index 04df2c0a13..8d608f8e7e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01096.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01096.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01096.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01096.xml deleted file mode 100644 index a33a797dde..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01096.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01096 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01097.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01097.java index a7b174be36..dcde862442 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01097.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01097.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01097.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01097.xml deleted file mode 100644 index a562377477..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01097.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01097 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01098.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01098.java index 7a6c3c44c7..bd29526a66 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01098.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01098.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01098.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01098.xml deleted file mode 100644 index ce35637151..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01098.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01098 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01099.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01099.xml deleted file mode 100644 index 6dabac3f34..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01099.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01099 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01100.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01100.xml deleted file mode 100644 index 01cc3cc6f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01100.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01100 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01101.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01101.xml deleted file mode 100644 index ef52187197..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01101.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01101 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01102.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01102.xml deleted file mode 100644 index 31f837906d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01102.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01102 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01103.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01103.xml deleted file mode 100644 index d1b55c7140..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01103.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01103 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01104.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01104.xml deleted file mode 100644 index 3e4d6fb2cb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01104.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01104 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01105.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01105.xml deleted file mode 100644 index 9eb8dc29c6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01105.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01105 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01106.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01106.xml deleted file mode 100644 index 0e2b8ee4ac..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01106.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01106 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01107.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01107.xml deleted file mode 100644 index 96fa7e699d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01107.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01107 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01108.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01108.xml deleted file mode 100644 index b75d81e289..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01108.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01108 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01109.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01109.xml deleted file mode 100644 index e1b9aafd19..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01109.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01109 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01110.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01110.xml deleted file mode 100644 index 336fd60daf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01110.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01110 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01111.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01111.xml deleted file mode 100644 index 86fad24141..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01111.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01111 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01112.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01112.xml deleted file mode 100644 index fffa8fffde..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01112.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01112 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01113.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01113.xml deleted file mode 100644 index db10f132fa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01113.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01113 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01114.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01114.xml deleted file mode 100644 index c0bc15594d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01114.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01114 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01115.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01115.xml deleted file mode 100644 index 78dcfd9216..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01115.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01115 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01116.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01116.xml deleted file mode 100644 index ad677fffb5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01116.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01116 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01117.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01117.xml deleted file mode 100644 index ddf60bb4ae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01117.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01117 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01118.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01118.xml deleted file mode 100644 index 477586d7c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01118.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01118 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01119.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01119.xml deleted file mode 100644 index fcf4b06df0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01119.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01119 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01120.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01120.xml deleted file mode 100644 index 01621ba3cb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01120.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01120 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01121.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01121.xml deleted file mode 100644 index 1f5aaaa2e2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01121.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01121 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01122.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01122.xml deleted file mode 100644 index f0f46c7383..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01122.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01122 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01123.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01123.xml deleted file mode 100644 index b331b4da5a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01123.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01123 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01124.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01124.xml deleted file mode 100644 index 2a519eec79..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01124.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01124 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01125.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01125.xml deleted file mode 100644 index fd74ff2ca8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01125.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01125 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01126.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01126.xml deleted file mode 100644 index 8889df2d3c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01126.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01126 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01127.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01127.xml deleted file mode 100644 index 3264eaa955..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01127.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01127 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01128.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01128.xml deleted file mode 100644 index f7dbe14964..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01128.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01128 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01129.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01129.xml deleted file mode 100644 index 2367225037..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01129.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01129 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01130.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01130.xml deleted file mode 100644 index 51236767cb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01130.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01130 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01131.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01131.xml deleted file mode 100644 index 19e8681542..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01131.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01131 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01132.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01132.xml deleted file mode 100644 index 5bd919e203..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01132.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01132 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01133.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01133.xml deleted file mode 100644 index 87b0721417..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01133.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01133 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01134.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01134.xml deleted file mode 100644 index 06e1540876..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01134.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01134 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01135.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01135.xml deleted file mode 100644 index a32398c16f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01135.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01135 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01136.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01136.xml deleted file mode 100644 index 07d3e39232..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01136.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01136 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01137.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01137.xml deleted file mode 100644 index 4f68765bec..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01137.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01137 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01138.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01138.xml deleted file mode 100644 index 36c9679a9a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01138.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01138 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01139.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01139.xml deleted file mode 100644 index a9e700eff1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01139.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01139 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01140.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01140.xml deleted file mode 100644 index 3c192a5f5d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01140.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01140 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01141.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01141.xml deleted file mode 100644 index c69ff7a21e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01141.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01141 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01142.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01142.xml deleted file mode 100644 index f203495efe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01142.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01142 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01143.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01143.xml deleted file mode 100644 index 1144f3dc04..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01143.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01143 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01144.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01144.xml deleted file mode 100644 index 2b5968ca1b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01144.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01144 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01145.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01145.xml deleted file mode 100644 index 921f155ee8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01145.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01145 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01146.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01146.xml deleted file mode 100644 index 085e53784b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01146.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01146 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01147.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01147.xml deleted file mode 100644 index 18facfb99d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01147.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01147 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01148.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01148.xml deleted file mode 100644 index 29741f1c3b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01148.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01148 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01149.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01149.xml deleted file mode 100644 index c03e776fea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01149.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01149 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01150.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01150.xml deleted file mode 100644 index 898ed36775..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01150.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01150 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01151.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01151.xml deleted file mode 100644 index 27ede704b4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01151.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01151 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01152.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01152.xml deleted file mode 100644 index b083c9b6a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01152.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01152 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01153.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01153.xml deleted file mode 100644 index ba5579fc23..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01153.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01153 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01154.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01154.java index 1ef4bfffe7..27542130bd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01154.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01154.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -77,12 +76,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01154.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01154.xml deleted file mode 100644 index 387100177e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01154.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01154 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01155.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01155.xml deleted file mode 100644 index eb9ee58aa4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01155.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01155 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01156.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01156.xml deleted file mode 100644 index 55ad05d43e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01156.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01156 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01157.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01157.xml deleted file mode 100644 index 4c5fef4b4c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01157.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01157 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01158.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01158.xml deleted file mode 100644 index 13a41dff02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01158.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01158 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01159.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01159.xml deleted file mode 100644 index 92777fde80..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01159.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01159 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01160.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01160.xml deleted file mode 100644 index 384b56025b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01160.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01160 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01161.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01161.xml deleted file mode 100644 index d70a9da97a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01161.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01161 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01162.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01162.xml deleted file mode 100644 index 4c89577b4e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01162.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01162 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01163.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01163.xml deleted file mode 100644 index 02f9c34b6b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01163.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01163 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01164.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01164.xml deleted file mode 100644 index 70fe2f6890..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01164.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01164 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01165.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01165.xml deleted file mode 100644 index 907e6391db..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01165.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01165 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01166.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01166.xml deleted file mode 100644 index 1d0f6da93b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01166.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01166 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01167.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01167.xml deleted file mode 100644 index 32ccb3a23c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01167.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01167 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01168.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01168.xml deleted file mode 100644 index 228ce8df8c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01168.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01168 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01169.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01169.xml deleted file mode 100644 index 0a78704e51..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01169.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01169 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01170.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01170.xml deleted file mode 100644 index 2292acdfc0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01170.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01170 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01171.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01171.xml deleted file mode 100644 index 0e0e6779f2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01171.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01171 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01172.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01172.xml deleted file mode 100644 index 585bb64a93..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01172.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01172 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01173.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01173.xml deleted file mode 100644 index b3eb0ca959..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01173.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01173 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01174.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01174.xml deleted file mode 100644 index 46fd50c313..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01174.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01174 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01175.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01175.xml deleted file mode 100644 index d4df6e7f82..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01175.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01175 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01176.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01176.xml deleted file mode 100644 index 4f030fad8f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01176.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01176 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01177.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01177.xml deleted file mode 100644 index 3077d8ed5d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01177.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01177 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01178.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01178.xml deleted file mode 100644 index d83ce8d039..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01178.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01178 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01179.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01179.xml deleted file mode 100644 index bb5e086db9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01179.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01179 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01180.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01180.xml deleted file mode 100644 index b13842e666..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01180.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01180 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01181.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01181.xml deleted file mode 100644 index 0e7a49f6af..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01181.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01181 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01182.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01182.xml deleted file mode 100644 index 6a0108cef7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01182.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01182 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01183.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01183.xml deleted file mode 100644 index 6210b2b2ed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01183.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01183 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01184.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01184.xml deleted file mode 100644 index 132cbe16f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01184.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01184 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01185.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01185.xml deleted file mode 100644 index 15126d7414..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01185.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01185 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01186.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01186.xml deleted file mode 100644 index 8a7374b07c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01186.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01186 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01187.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01187.xml deleted file mode 100644 index 4adb599cc3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01187.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01187 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01188.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01188.xml deleted file mode 100644 index 2bfd35d970..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01188.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01188 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01189.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01189.xml deleted file mode 100644 index eff70d6c78..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01189.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01189 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01190.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01190.xml deleted file mode 100644 index f3ecbf7705..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01190.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01190 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01191.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01191.xml deleted file mode 100644 index e7dd45ce29..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01191.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01191 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01192.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01192.xml deleted file mode 100644 index 32a155bf7b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01192.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01192 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01193.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01193.xml deleted file mode 100644 index 1cdd3b0cd1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01193.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01193 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01194.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01194.xml deleted file mode 100644 index 91abf4b156..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01194.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01194 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01195.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01195.xml deleted file mode 100644 index 6d5514880d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01195.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01195 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01196.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01196.xml deleted file mode 100644 index 110b9ff0d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01196.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01196 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01197.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01197.xml deleted file mode 100644 index 1a219ef6d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01197.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01197 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01198.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01198.xml deleted file mode 100644 index c906730961..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01198.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01198 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01199.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01199.xml deleted file mode 100644 index 700ca707fd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01199.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01199 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01200.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01200.xml deleted file mode 100644 index d92322e331..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01200.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01200 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01201.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01201.xml deleted file mode 100644 index b05f85f40d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01201.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01201 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01202.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01202.xml deleted file mode 100644 index 1f5595d82a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01202.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01202 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01203.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01203.xml deleted file mode 100644 index 6f19425685..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01203.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01203 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01204.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01204.xml deleted file mode 100644 index 16e60a954c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01204.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01204 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01205.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01205.xml deleted file mode 100644 index 0a209e45af..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01205.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01205 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01206.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01206.xml deleted file mode 100644 index 4cba09233f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01206.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01206 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01207.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01207.xml deleted file mode 100644 index 39c82a4ee3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01207.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01207 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01208.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01208.java index ec6c59f264..eaa4d14dd1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01208.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01208.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01208.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01208.xml deleted file mode 100644 index 6ad670c67b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01208.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01208 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01209.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01209.java index ec84cdcafe..363944fec2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01209.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01209.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01209.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01209.xml deleted file mode 100644 index 4d45a09fb1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01209.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01209 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01210.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01210.java index 37470a27d4..b82cf65e8b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01210.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01210.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01210.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01210.xml deleted file mode 100644 index e9bf186fe6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01210.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01210 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01211.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01211.java index a20772cf94..83b173687a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01211.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01211.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01211.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01211.xml deleted file mode 100644 index 48281e1ded..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01211.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01211 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01212.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01212.java index 00f97fa3b0..d408ea2879 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01212.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01212.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01212.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01212.xml deleted file mode 100644 index c23450211e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01212.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01212 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01213.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01213.java index 408861e5e6..f155afd095 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01213.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01213.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01213.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01213.xml deleted file mode 100644 index c96715c3b6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01213.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01213 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01214.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01214.xml deleted file mode 100644 index 6efc56d6fa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01214.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01214 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01215.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01215.xml deleted file mode 100644 index 4272172008..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01215.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01215 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01216.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01216.java index f9bbfe9d9d..f22b290351 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01216.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01216.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01216.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01216.xml deleted file mode 100644 index f278462894..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01216.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01216 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01217.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01217.java index 0e73e684f8..1ecee50ffc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01217.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01217.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01217.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01217.xml deleted file mode 100644 index ccd8a81084..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01217.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01217 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01218.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01218.java index 81c5ad2ba3..e2f499fb01 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01218.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01218.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01218.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01218.xml deleted file mode 100644 index 8eed53ca8b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01218.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01218 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01219.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01219.java index 18ba13eb33..ad790c701c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01219.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01219.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01219.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01219.xml deleted file mode 100644 index 622d77eec7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01219.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01219 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01220.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01220.java index adad23ef0c..b0bb059fc6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01220.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01220.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01220.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01220.xml deleted file mode 100644 index 15441bb045..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01220.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01220 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01221.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01221.java index ab465982f4..1cc944e5bb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01221.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01221.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01221.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01221.xml deleted file mode 100644 index 89e0cda89b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01221.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01221 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01222.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01222.java index 6455a87a00..efa22040c5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01222.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01222.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01222.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01222.xml deleted file mode 100644 index ca20ab2719..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01222.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01222 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01223.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01223.xml deleted file mode 100644 index 7c855a84f1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01223.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01223 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01224.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01224.xml deleted file mode 100644 index 9f849f6337..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01224.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01224 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01225.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01225.xml deleted file mode 100644 index 946bd81ab7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01225.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01225 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01226.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01226.xml deleted file mode 100644 index 16e618fdf9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01226.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01226 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01227.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01227.xml deleted file mode 100644 index 6d6d13e09a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01227.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01227 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01228.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01228.xml deleted file mode 100644 index b7a0905823..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01228.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01228 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01229.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01229.xml deleted file mode 100644 index bd38c9b985..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01229.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01229 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01230.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01230.xml deleted file mode 100644 index 977fe60252..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01230.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01230 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01231.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01231.xml deleted file mode 100644 index e0116b35cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01231.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01231 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01232.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01232.xml deleted file mode 100644 index 73c5352c98..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01232.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01232 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01233.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01233.xml deleted file mode 100644 index 096182749a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01233.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01233 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01234.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01234.xml deleted file mode 100644 index e8fd1b618e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01234.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01234 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01235.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01235.xml deleted file mode 100644 index 0b0b3dce96..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01235.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01235 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01236.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01236.xml deleted file mode 100644 index a1fc07faa2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01236.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01236 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01237.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01237.xml deleted file mode 100644 index 7e8c6f6edb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01237.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01237 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01238.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01238.xml deleted file mode 100644 index c980f835bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01238.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01238 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01239.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01239.xml deleted file mode 100644 index ed0b8b1f05..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01239.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01239 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01240.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01240.xml deleted file mode 100644 index 1ab8f49a05..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01240.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01240 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01241.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01241.java index 2ff939b334..c0b4c4fa5e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01241.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01241.java @@ -72,12 +72,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01241.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01241.xml deleted file mode 100644 index a27ae442e3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01241.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01241 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01242.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01242.java index 9ff6d4ec9e..20fd643f79 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01242.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01242.java @@ -72,12 +72,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01242.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01242.xml deleted file mode 100644 index 10befcb875..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01242.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01242 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01243.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01243.java index 0ba48af860..03c4eeeaf9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01243.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01243.java @@ -72,12 +72,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01243.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01243.xml deleted file mode 100644 index 96cdcf724f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01243.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01243 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01244.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01244.xml deleted file mode 100644 index feea83680a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01244.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01244 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01245.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01245.xml deleted file mode 100644 index df64b52fdd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01245.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01245 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01246.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01246.xml deleted file mode 100644 index acb056d8a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01246.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01246 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01247.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01247.xml deleted file mode 100644 index 3cfa49d77a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01247.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01247 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01248.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01248.xml deleted file mode 100644 index c6080ea774..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01248.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01248 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01249.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01249.xml deleted file mode 100644 index 394474dad2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01249.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01249 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01250.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01250.xml deleted file mode 100644 index 4e8d9fb5d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01250.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01250 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01251.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01251.xml deleted file mode 100644 index f3c4893c7d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01251.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01251 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01252.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01252.xml deleted file mode 100644 index 53f4569fe4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01252.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01252 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01253.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01253.xml deleted file mode 100644 index e6c235bd6c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01253.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01253 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01254.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01254.xml deleted file mode 100644 index 24cfb4af83..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01254.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01254 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01255.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01255.xml deleted file mode 100644 index 9a1bc34175..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01255.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01255 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01256.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01256.xml deleted file mode 100644 index 77ec1608b6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01256.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01256 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01257.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01257.xml deleted file mode 100644 index d5fccc2f93..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01257.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01257 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01258.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01258.xml deleted file mode 100644 index b948902364..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01258.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01258 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01259.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01259.xml deleted file mode 100644 index 7968bb157a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01259.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01259 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01260.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01260.xml deleted file mode 100644 index 6c41cd0462..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01260.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01260 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01261.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01261.xml deleted file mode 100644 index 339a23a873..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01261.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01261 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01262.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01262.xml deleted file mode 100644 index 431af620ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01262.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01262 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01263.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01263.xml deleted file mode 100644 index 151e043b45..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01263.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01263 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01264.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01264.xml deleted file mode 100644 index 3f9185c4ad..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01264.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01264 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01265.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01265.xml deleted file mode 100644 index 5a8252f82f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01265.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01265 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01266.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01266.xml deleted file mode 100644 index 99b515de02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01266.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01266 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01267.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01267.xml deleted file mode 100644 index e616f51820..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01267.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01267 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01268.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01268.xml deleted file mode 100644 index 35653a4930..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01268.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01268 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01269.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01269.xml deleted file mode 100644 index c9690bcc63..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01269.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01269 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01270.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01270.xml deleted file mode 100644 index 31cb7c3bae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01270.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01270 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01271.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01271.xml deleted file mode 100644 index f68ecd0ecf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01271.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01271 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01272.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01272.xml deleted file mode 100644 index c5718a68a9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01272.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01272 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01273.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01273.xml deleted file mode 100644 index 261c922bde..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01273.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01273 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01274.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01274.xml deleted file mode 100644 index f88d8b46bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01274.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01274 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01275.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01275.xml deleted file mode 100644 index dbd49f9ddf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01275.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01275 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01276.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01276.xml deleted file mode 100644 index 700dc84627..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01276.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01276 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01277.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01277.xml deleted file mode 100644 index 0682524287..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01277.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01277 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01278.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01278.xml deleted file mode 100644 index 30efdb0074..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01278.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01278 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01279.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01279.xml deleted file mode 100644 index 27f2092cee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01279.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01279 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01280.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01280.xml deleted file mode 100644 index c7bad366da..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01280.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01280 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01281.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01281.xml deleted file mode 100644 index 861d206a75..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01281.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01281 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01282.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01282.xml deleted file mode 100644 index df5143ff89..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01282.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01282 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01283.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01283.xml deleted file mode 100644 index 8eb8ba9dcf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01283.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01283 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01284.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01284.xml deleted file mode 100644 index fb77b5a852..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01284.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01284 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01285.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01285.xml deleted file mode 100644 index 2c98d412f0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01285.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01285 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01286.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01286.xml deleted file mode 100644 index 2a2a26e26f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01286.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01286 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01287.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01287.xml deleted file mode 100644 index 8121576533..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01287.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01287 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01288.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01288.xml deleted file mode 100644 index 8febfa199e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01288.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01288 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01289.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01289.xml deleted file mode 100644 index c8304b7815..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01289.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01289 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01290.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01290.xml deleted file mode 100644 index 18da27c7af..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01290.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01290 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01291.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01291.xml deleted file mode 100644 index b84f4b439a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01291.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01291 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01292.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01292.xml deleted file mode 100644 index ace8e62f21..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01292.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01292 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01293.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01293.xml deleted file mode 100644 index 12dbfc57c1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01293.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01293 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01294.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01294.xml deleted file mode 100644 index b005b70f3e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01294.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01294 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01295.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01295.xml deleted file mode 100644 index 866cb0b3c1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01295.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01295 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01296.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01296.xml deleted file mode 100644 index bb1bf8f238..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01296.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01296 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01297.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01297.xml deleted file mode 100644 index 33012aff42..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01297.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01297 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01298.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01298.xml deleted file mode 100644 index fd3b627fbe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01298.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01298 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01299.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01299.xml deleted file mode 100644 index dd8d3496db..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01299.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01299 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01300.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01300.xml deleted file mode 100644 index 6b30e67f3c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01300.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01300 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01301.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01301.java index 42743c2a2d..ddc859ce62 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01301.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01301.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01301.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01301.xml deleted file mode 100644 index 75e82226f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01301.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01301 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01302.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01302.java index abeba745c0..d91b9e762f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01302.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01302.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01302.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01302.xml deleted file mode 100644 index 95c5b5c628..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01302.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01302 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01303.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01303.java index a9097e0ce1..e3d9c2f624 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01303.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01303.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01303.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01303.xml deleted file mode 100644 index 2009d02083..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01303.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01303 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01304.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01304.java index 81df696a91..c25e7067ed 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01304.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01304.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01304.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01304.xml deleted file mode 100644 index e68fe68e84..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01304.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01304 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01305.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01305.java index 1033c2afa2..f467e2893e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01305.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01305.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01305.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01305.xml deleted file mode 100644 index 44fb2e87f4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01305.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01305 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01306.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01306.java index 5ccf127dea..961fa572bd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01306.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01306.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01306.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01306.xml deleted file mode 100644 index 287255527b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01306.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01306 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01307.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01307.java index 9c6785d3ba..2c1f9c18ee 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01307.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01307.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01307.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01307.xml deleted file mode 100644 index fa15195b28..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01307.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01307 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01308.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01308.xml deleted file mode 100644 index 7a8d117ed9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01308.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01308 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01309.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01309.java index 95128e162b..668d72fa31 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01309.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01309.java @@ -53,10 +53,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01309.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01309.xml deleted file mode 100644 index 2a571e0f3b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01309.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01309 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01310.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01310.java index c7ea9ab13c..0d2bcdb827 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01310.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01310.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01310.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01310.xml deleted file mode 100644 index c7c2e7ea11..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01310.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01310 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01311.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01311.java index c0a9091848..7dcb9b0333 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01311.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01311.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01311.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01311.xml deleted file mode 100644 index 9ad86fb3c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01311.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01311 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01312.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01312.java index b073504092..75e68fd8c3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01312.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01312.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01312.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01312.xml deleted file mode 100644 index 01b1183745..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01312.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01312 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01313.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01313.java index a7960f6ce4..952fab1535 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01313.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01313.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01313.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01313.xml deleted file mode 100644 index e4c887a827..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01313.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01313 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01314.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01314.java index e3643925d0..9dfbd2c10d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01314.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01314.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01314.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01314.xml deleted file mode 100644 index 5b7852c781..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01314.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01314 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01315.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01315.java index 9aa8acbc72..79752892de 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01315.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01315.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01315.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01315.xml deleted file mode 100644 index c8783c23a1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01315.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01315 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01316.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01316.xml deleted file mode 100644 index 3fa6c24eeb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01316.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01316 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01317.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01317.xml deleted file mode 100644 index 46215c49e2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01317.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01317 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01318.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01318.xml deleted file mode 100644 index 9d49964219..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01318.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01318 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01319.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01319.xml deleted file mode 100644 index 3d451f0722..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01319.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01319 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01320.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01320.xml deleted file mode 100644 index dba32d7a7b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01320.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01320 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01321.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01321.xml deleted file mode 100644 index 8a1b824ee0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01321.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01321 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01322.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01322.xml deleted file mode 100644 index 3027b64e94..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01322.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01322 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01323.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01323.xml deleted file mode 100644 index be943d0889..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01323.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01323 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01324.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01324.xml deleted file mode 100644 index 286318d873..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01324.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01324 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01325.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01325.xml deleted file mode 100644 index 79e6e94353..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01325.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01325 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01326.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01326.java index 5190bcb65c..17b6a1d1fc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01326.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01326.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -74,12 +73,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01326.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01326.xml deleted file mode 100644 index 8b69a355ab..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01326.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01326 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01327.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01327.java index 8190031458..e22de227d2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01327.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01327.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -74,12 +73,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01327.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01327.xml deleted file mode 100644 index 09bead888d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01327.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01327 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01328.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01328.xml deleted file mode 100644 index 768ebb8a1e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01328.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01328 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01329.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01329.xml deleted file mode 100644 index 86d3e6bad6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01329.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01329 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01330.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01330.xml deleted file mode 100644 index 227c2fbd52..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01330.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01330 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01331.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01331.xml deleted file mode 100644 index 0e4af9d4c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01331.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01331 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01332.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01332.xml deleted file mode 100644 index 59db74e3d9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01332.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01332 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01333.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01333.xml deleted file mode 100644 index dd775c449d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01333.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01333 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01334.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01334.xml deleted file mode 100644 index c70cf1c1f2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01334.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01334 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01335.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01335.xml deleted file mode 100644 index 6727f22faa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01335.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01335 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01336.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01336.xml deleted file mode 100644 index e3e1122332..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01336.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01336 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01337.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01337.xml deleted file mode 100644 index 8a1af2211d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01337.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01337 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01338.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01338.xml deleted file mode 100644 index a743567826..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01338.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01338 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01339.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01339.xml deleted file mode 100644 index 43582f8df0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01339.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01339 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01340.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01340.xml deleted file mode 100644 index 27b8e376c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01340.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01340 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01341.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01341.xml deleted file mode 100644 index 77db2028b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01341.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01341 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01342.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01342.xml deleted file mode 100644 index 3d3880b450..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01342.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01342 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01343.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01343.xml deleted file mode 100644 index 5585f36a93..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01343.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01343 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01344.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01344.xml deleted file mode 100644 index a6aecd333d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01344.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01344 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01345.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01345.xml deleted file mode 100644 index cf0eea6daf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01345.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01345 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01346.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01346.xml deleted file mode 100644 index e1c7ff1bb6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01346.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01346 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01347.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01347.xml deleted file mode 100644 index 1172ae45d4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01347.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01347 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01348.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01348.xml deleted file mode 100644 index 95db14d4d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01348.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01348 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01349.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01349.xml deleted file mode 100644 index 963ee41ad5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01349.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01349 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01350.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01350.xml deleted file mode 100644 index f92b2dde94..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01350.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01350 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01351.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01351.xml deleted file mode 100644 index 36ba66944f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01351.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01351 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01352.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01352.xml deleted file mode 100644 index 5c860b882f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01352.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01352 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01353.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01353.xml deleted file mode 100644 index 282db44bf4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01353.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01353 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01354.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01354.xml deleted file mode 100644 index eb96d7b550..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01354.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01354 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01355.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01355.xml deleted file mode 100644 index cd17ac57cc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01355.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01355 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01356.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01356.xml deleted file mode 100644 index 6a75a58862..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01356.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01356 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01357.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01357.xml deleted file mode 100644 index 62da11220f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01357.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01357 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01358.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01358.xml deleted file mode 100644 index 07edee8374..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01358.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01358 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01359.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01359.xml deleted file mode 100644 index c155f6f846..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01359.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01359 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01360.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01360.xml deleted file mode 100644 index 38fff9e560..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01360.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01360 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01361.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01361.xml deleted file mode 100644 index 3f37f6aab2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01361.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01361 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01362.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01362.xml deleted file mode 100644 index 6248cc7603..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01362.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01362 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01363.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01363.xml deleted file mode 100644 index cbb3c609f9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01363.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01363 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01364.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01364.xml deleted file mode 100644 index b3ab753bb2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01364.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01364 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01365.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01365.xml deleted file mode 100644 index d5e811e66f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01365.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01365 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01366.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01366.xml deleted file mode 100644 index b429ca9f6e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01366.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01366 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01367.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01367.xml deleted file mode 100644 index 6df22613ed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01367.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01367 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01368.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01368.xml deleted file mode 100644 index 79dfe4d79f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01368.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01368 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01369.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01369.xml deleted file mode 100644 index 44853d0c17..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01369.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01369 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01370.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01370.xml deleted file mode 100644 index 279bdc293f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01370.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01370 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01371.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01371.xml deleted file mode 100644 index 0c79e6bbb1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01371.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01371 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01372.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01372.xml deleted file mode 100644 index 3d54d1c202..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01372.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01372 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01373.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01373.xml deleted file mode 100644 index 597e4af497..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01373.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01373 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01374.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01374.xml deleted file mode 100644 index 408a4ca6c5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01374.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01374 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01375.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01375.xml deleted file mode 100644 index eacdaf4cd2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01375.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01375 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01376.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01376.xml deleted file mode 100644 index 401f56f00b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01376.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01376 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01377.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01377.xml deleted file mode 100644 index 06077addf9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01377.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01377 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01378.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01378.java index b79665d84d..b74b0f506b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01378.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01378.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01378.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01378.xml deleted file mode 100644 index db25dd0a8d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01378.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01378 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01379.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01379.java index 9917c0bfa6..3fa7d1e555 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01379.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01379.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01379.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01379.xml deleted file mode 100644 index decb08a3f3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01379.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01379 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01380.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01380.java index 718b461575..1fff55a7e1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01380.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01380.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01380.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01380.xml deleted file mode 100644 index cc15d27d92..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01380.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01380 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01381.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01381.java index 0bc4c1c2c6..a5dda6bba0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01381.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01381.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01381.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01381.xml deleted file mode 100644 index 6252b265c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01381.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01381 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01382.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01382.java index b4b3bd2f51..1a1ec10b7e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01382.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01382.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01382.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01382.xml deleted file mode 100644 index ee043d25b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01382.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01382 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01383.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01383.java index 64990008b9..19648d1e39 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01383.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01383.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01383.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01383.xml deleted file mode 100644 index 77d9b37b07..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01383.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01383 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01384.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01384.java index 996230e2ef..5ba14aa458 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01384.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01384.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01384.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01384.xml deleted file mode 100644 index 628c5709c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01384.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01384 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01385.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01385.java index 10abda1e7c..7f84e32b72 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01385.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01385.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01385.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01385.xml deleted file mode 100644 index b5c2109fba..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01385.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01385 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01386.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01386.java index 8cb2c9e018..1836e8fac6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01386.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01386.java @@ -50,6 +50,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -57,7 +58,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01386.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01386.xml deleted file mode 100644 index 13a607507e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01386.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01386 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01387.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01387.java index 0628886c10..beca6a3b31 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01387.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01387.java @@ -50,6 +50,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -57,7 +58,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01387.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01387.xml deleted file mode 100644 index 45aba5e29f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01387.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01387 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01388.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01388.java index eb5a84876a..5c60b8d526 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01388.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01388.java @@ -50,6 +50,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -57,7 +58,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01388.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01388.xml deleted file mode 100644 index 41a2f8518b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01388.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01388 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01389.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01389.java index e26f60f017..e47aa1e448 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01389.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01389.java @@ -50,19 +50,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -72,7 +70,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01389.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01389.xml deleted file mode 100644 index cb3615c33a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01389.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01389 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01390.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01390.xml deleted file mode 100644 index 916e2def88..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01390.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01390 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01391.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01391.java index 27ce119633..687663ce43 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01391.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01391.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01391.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01391.xml deleted file mode 100644 index 0bae4aeaf2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01391.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01391 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01392.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01392.java index 3e0e7bb8a1..ece5531b60 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01392.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01392.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01392.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01392.xml deleted file mode 100644 index d8aff12c01..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01392.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01392 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01393.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01393.java index 7d5f21622a..2e05391685 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01393.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01393.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01393.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01393.xml deleted file mode 100644 index 6471cc2ad9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01393.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01393 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01394.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01394.java index 8eccd086d3..80d7d6c08e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01394.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01394.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01394.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01394.xml deleted file mode 100644 index 1155107d20..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01394.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01394 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01395.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01395.java index 427dc1fe11..67764b25c7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01395.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01395.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01395.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01395.xml deleted file mode 100644 index 76a26a0f29..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01395.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01395 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01396.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01396.java index 3bc03b236a..127e9f9a22 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01396.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01396.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01396.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01396.xml deleted file mode 100644 index 45704c572b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01396.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01396 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01397.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01397.xml deleted file mode 100644 index 22b862aeeb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01397.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01397 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01398.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01398.xml deleted file mode 100644 index 72dac4b4fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01398.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01398 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01399.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01399.xml deleted file mode 100644 index 168d5bc383..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01399.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01399 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01400.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01400.xml deleted file mode 100644 index 3203ff9564..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01400.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01400 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01401.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01401.xml deleted file mode 100644 index eddecf317b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01401.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01401 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01402.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01402.java index df7a933270..1db7c8765c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01402.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01402.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -84,12 +83,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01402.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01402.xml deleted file mode 100644 index 21c4bd58e6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01402.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01402 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01403.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01403.xml deleted file mode 100644 index 3177b9b7ad..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01403.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01403 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01404.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01404.xml deleted file mode 100644 index 603c7997ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01404.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01404 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01405.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01405.xml deleted file mode 100644 index 116637fe39..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01405.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01405 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01406.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01406.xml deleted file mode 100644 index 8ecdc952d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01406.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01406 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01407.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01407.xml deleted file mode 100644 index f4796ce2b9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01407.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01407 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01408.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01408.xml deleted file mode 100644 index fabdd2b847..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01408.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01408 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01409.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01409.xml deleted file mode 100644 index e35f60c476..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01409.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01409 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01410.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01410.xml deleted file mode 100644 index 1be14c8db8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01410.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01410 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01411.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01411.xml deleted file mode 100644 index f9b3aca9c5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01411.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01411 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01412.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01412.xml deleted file mode 100644 index 728546ef7a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01412.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01412 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01413.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01413.xml deleted file mode 100644 index 5c7c7c5c7a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01413.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01413 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01414.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01414.xml deleted file mode 100644 index 2b221c0089..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01414.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01414 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01415.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01415.xml deleted file mode 100644 index d837db1115..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01415.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01415 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01416.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01416.xml deleted file mode 100644 index cb24a7e160..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01416.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01416 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01417.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01417.xml deleted file mode 100644 index ed7e331366..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01417.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01417 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01418.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01418.xml deleted file mode 100644 index 11515f6fc9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01418.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01418 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01419.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01419.xml deleted file mode 100644 index b640344376..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01419.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01419 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01420.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01420.xml deleted file mode 100644 index 1f36793769..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01420.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01420 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01421.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01421.xml deleted file mode 100644 index a2916d86a1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01421.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01421 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01422.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01422.xml deleted file mode 100644 index 2c8f505dee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01422.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01422 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01423.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01423.xml deleted file mode 100644 index bdda209c7e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01423.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01423 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01424.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01424.xml deleted file mode 100644 index 6dc079f2cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01424.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01424 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01425.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01425.xml deleted file mode 100644 index 4e41b92d3b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01425.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01425 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01426.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01426.xml deleted file mode 100644 index 233818d23d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01426.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01426 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01427.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01427.xml deleted file mode 100644 index 69ee75a3b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01427.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01427 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01428.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01428.xml deleted file mode 100644 index d16a8e8002..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01428.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01428 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01429.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01429.xml deleted file mode 100644 index cc7eba4e74..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01429.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01429 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01430.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01430.xml deleted file mode 100644 index 8133bfd089..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01430.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01430 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01431.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01431.xml deleted file mode 100644 index ab052fc2f1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01431.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01431 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01432.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01432.xml deleted file mode 100644 index d86132d67b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01432.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01432 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01433.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01433.xml deleted file mode 100644 index 2def372330..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01433.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01433 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01434.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01434.xml deleted file mode 100644 index e3394e54a5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01434.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01434 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01435.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01435.xml deleted file mode 100644 index ab82775e08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01435.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01435 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01436.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01436.xml deleted file mode 100644 index 0b51d42de9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01436.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01436 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01437.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01437.xml deleted file mode 100644 index b4dafcbb41..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01437.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01437 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01438.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01438.xml deleted file mode 100644 index 91f431de86..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01438.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01438 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01439.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01439.xml deleted file mode 100644 index 1f4f794716..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01439.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01439 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01440.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01440.xml deleted file mode 100644 index 98d3eef7d7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01440.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01440 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01441.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01441.xml deleted file mode 100644 index 3031aa9d01..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01441.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01441 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01442.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01442.xml deleted file mode 100644 index 765e04b3dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01442.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01442 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01443.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01443.xml deleted file mode 100644 index 21264d6608..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01443.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01443 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01444.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01444.xml deleted file mode 100644 index e85899cd68..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01444.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01444 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01445.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01445.xml deleted file mode 100644 index aec0bd451c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01445.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01445 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01446.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01446.xml deleted file mode 100644 index d6bf8d1883..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01446.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01446 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01447.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01447.xml deleted file mode 100644 index 950e96bcd3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01447.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01447 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01448.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01448.xml deleted file mode 100644 index 6a575a55ac..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01448.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01448 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01449.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01449.xml deleted file mode 100644 index 929b55a280..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01449.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01449 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01450.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01450.xml deleted file mode 100644 index 4dab8b9c27..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01450.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01450 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01451.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01451.xml deleted file mode 100644 index 52c9d0550b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01451.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01451 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01452.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01452.xml deleted file mode 100644 index 4ea52e2b63..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01452.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01452 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01453.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01453.xml deleted file mode 100644 index d2e51fd04b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01453.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01453 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01454.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01454.xml deleted file mode 100644 index 00bd7c5689..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01454.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01454 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01455.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01455.xml deleted file mode 100644 index c4a51ae4dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01455.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01455 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01456.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01456.xml deleted file mode 100644 index 324fb2af8f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01456.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01456 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01457.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01457.xml deleted file mode 100644 index 22b539f0b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01457.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01457 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01458.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01458.xml deleted file mode 100644 index dbc0915b65..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01458.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01458 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01459.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01459.java index c18df74854..bf444f4331 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01459.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01459.java @@ -71,7 +71,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01459.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01459.xml deleted file mode 100644 index c7f1304d2e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01459.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01459 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01460.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01460.java index 9bff7da762..eb0935cd0e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01460.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01460.java @@ -74,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01460.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01460.xml deleted file mode 100644 index b897a9e887..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01460.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01460 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01461.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01461.java index 98472724a1..f9d0bdd3b4 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01461.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01461.java @@ -74,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01461.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01461.xml deleted file mode 100644 index d710940afb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01461.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01461 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01462.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01462.java index ba8981e817..066c1db453 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01462.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01462.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01462.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01462.xml deleted file mode 100644 index 4cf038556f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01462.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01462 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01463.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01463.java index 43c8d6aafa..df96b5b48e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01463.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01463.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01463.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01463.xml deleted file mode 100644 index a04973172f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01463.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01463 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01464.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01464.java index 44db231f40..211a1db751 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01464.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01464.java @@ -76,7 +76,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01464.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01464.xml deleted file mode 100644 index 13d1b319da..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01464.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01464 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01465.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01465.xml deleted file mode 100644 index 58c3a57d87..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01465.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01465 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01466.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01466.xml deleted file mode 100644 index 2869d7edde..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01466.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01466 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01467.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01467.java index d1c7dfa97b..2ba4001eb6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01467.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01467.java @@ -60,19 +60,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -82,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01467.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01467.xml deleted file mode 100644 index 510af3c497..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01467.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01467 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01468.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01468.java index 6dbb3e4359..b383d0be4f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01468.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01468.java @@ -60,19 +60,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -82,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01468.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01468.xml deleted file mode 100644 index 59775c3cf8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01468.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01468 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01469.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01469.java index d81ecd1707..13d3df83eb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01469.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01469.java @@ -60,19 +60,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -82,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01469.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01469.xml deleted file mode 100644 index bbcb7dcb56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01469.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01469 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01470.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01470.java index cbd399a964..d14a17dc01 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01470.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01470.java @@ -66,10 +66,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01470.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01470.xml deleted file mode 100644 index d38fb2733b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01470.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01470 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01471.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01471.xml deleted file mode 100644 index 214426077e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01471.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01471 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01472.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01472.java index b5c87b7b3d..e552a6fb6b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01472.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01472.java @@ -70,7 +70,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01472.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01472.xml deleted file mode 100644 index d08c579956..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01472.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01472 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01473.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01473.java index c780754908..0806191ce8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01473.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01473.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01473.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01473.xml deleted file mode 100644 index b94d644db0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01473.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01473 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01474.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01474.java index 6a991c82bd..8bd3f6402b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01474.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01474.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01474.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01474.xml deleted file mode 100644 index e698b4101c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01474.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01474 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01475.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01475.java index a6544d1b0d..6c633daafa 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01475.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01475.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01475.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01475.xml deleted file mode 100644 index e7bd4467a9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01475.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01475 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01476.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01476.java index 6bb213696e..6fcab8199b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01476.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01476.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01476.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01476.xml deleted file mode 100644 index e728117fd9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01476.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01476 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01477.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01477.java index cde5f9c9df..ca247d6dcf 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01477.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01477.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01477.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01477.xml deleted file mode 100644 index 5339c3fa77..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01477.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01477 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01478.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01478.xml deleted file mode 100644 index 338c30e6ed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01478.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01478 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01479.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01479.xml deleted file mode 100644 index 8405a69cc5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01479.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01479 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01480.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01480.xml deleted file mode 100644 index 8594687154..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01480.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01480 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01481.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01481.xml deleted file mode 100644 index 07a4f0b0d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01481.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01481 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01482.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01482.xml deleted file mode 100644 index 4f71e44b06..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01482.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01482 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01483.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01483.xml deleted file mode 100644 index 719d9a395a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01483.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01483 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01484.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01484.xml deleted file mode 100644 index bfc31cf221..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01484.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01484 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01485.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01485.xml deleted file mode 100644 index b74a8d7a6f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01485.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01485 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01486.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01486.xml deleted file mode 100644 index 5bcb8f2eb0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01486.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01486 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01487.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01487.xml deleted file mode 100644 index c0a13c2973..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01487.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01487 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01488.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01488.xml deleted file mode 100644 index 456f9e3ad4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01488.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01488 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01489.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01489.xml deleted file mode 100644 index a2e8535661..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01489.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01489 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01490.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01490.java index c29131fe73..828dbdae3d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01490.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01490.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -72,12 +71,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01490.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01490.xml deleted file mode 100644 index 73338b4dab..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01490.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01490 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01491.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01491.java index e1ec9a6a33..0a82c6b15f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01491.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01491.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -71,12 +70,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01491.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01491.xml deleted file mode 100644 index c67fcd583d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01491.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01491 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01492.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01492.java index 1b92dadc98..debee7212a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01492.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01492.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -71,12 +70,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01492.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01492.xml deleted file mode 100644 index 20b5d31280..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01492.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01492 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01493.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01493.xml deleted file mode 100644 index ef8f054f15..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01493.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01493 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01494.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01494.xml deleted file mode 100644 index 68891e7520..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01494.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01494 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01495.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01495.xml deleted file mode 100644 index eb8d3fd02b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01495.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01495 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01496.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01496.xml deleted file mode 100644 index c8a9883932..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01496.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01496 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01497.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01497.xml deleted file mode 100644 index 4bcd12afdf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01497.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01497 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01498.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01498.xml deleted file mode 100644 index 3d3c044694..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01498.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01498 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01499.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01499.xml deleted file mode 100644 index d15238e39e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01499.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01499 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01500.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01500.xml deleted file mode 100644 index eb2ae4e1f2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01500.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01500 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01501.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01501.java index 9a894e761b..5e4b4aa61c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01501.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01501.java @@ -74,12 +74,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01501.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01501.xml deleted file mode 100644 index 43c25bd789..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01501.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01501 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01502.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01502.xml deleted file mode 100644 index 6f879240e2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01502.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01502 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01503.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01503.xml deleted file mode 100644 index 486026dd96..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01503.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01503 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01504.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01504.xml deleted file mode 100644 index 1a060280c2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01504.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01504 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01505.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01505.xml deleted file mode 100644 index f08a091a5e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01505.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01505 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01506.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01506.xml deleted file mode 100644 index 593e3898cb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01506.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01506 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01507.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01507.xml deleted file mode 100644 index 9419896f12..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01507.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01507 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01508.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01508.xml deleted file mode 100644 index 880e083da5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01508.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01508 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01509.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01509.xml deleted file mode 100644 index bec64ea95a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01509.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01509 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01510.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01510.xml deleted file mode 100644 index 6c8e22c8ce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01510.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01510 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01511.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01511.xml deleted file mode 100644 index 377b9cf0a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01511.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01511 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01512.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01512.xml deleted file mode 100644 index 655aa039a4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01512.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01512 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01513.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01513.xml deleted file mode 100644 index 25715eb13d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01513.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01513 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01514.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01514.xml deleted file mode 100644 index 9dcc6e3427..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01514.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01514 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01515.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01515.xml deleted file mode 100644 index c45eff6a97..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01515.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01515 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01516.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01516.xml deleted file mode 100644 index e9e2265d83..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01516.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01516 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01517.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01517.xml deleted file mode 100644 index ede6aca129..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01517.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01517 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01518.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01518.xml deleted file mode 100644 index a6943f9e7b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01518.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01518 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01519.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01519.xml deleted file mode 100644 index b840d0169a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01519.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01519 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01520.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01520.xml deleted file mode 100644 index c4669bf648..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01520.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01520 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01521.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01521.xml deleted file mode 100644 index e8ac6ea4cc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01521.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01521 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01522.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01522.xml deleted file mode 100644 index 1472f323a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01522.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01522 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01523.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01523.xml deleted file mode 100644 index c907c2c5c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01523.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01523 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01524.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01524.xml deleted file mode 100644 index 908a659a84..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01524.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01524 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01525.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01525.xml deleted file mode 100644 index 9eab7949bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01525.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01525 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01526.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01526.xml deleted file mode 100644 index 0f3e6535d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01526.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01526 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01527.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01527.xml deleted file mode 100644 index 64877dcaf4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01527.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01527 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01528.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01528.xml deleted file mode 100644 index bae1b25153..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01528.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01528 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01529.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01529.xml deleted file mode 100644 index 7679d40a0e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01529.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01529 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01530.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01530.xml deleted file mode 100644 index 3ee7586148..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01530.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01530 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01531.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01531.xml deleted file mode 100644 index ab6cd3e124..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01531.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01531 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01532.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01532.xml deleted file mode 100644 index 1432a32919..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01532.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01532 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01533.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01533.xml deleted file mode 100644 index f4cec3221e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01533.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01533 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01534.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01534.xml deleted file mode 100644 index 04758e3007..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01534.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01534 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01535.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01535.xml deleted file mode 100644 index 38f99a8f56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01535.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01535 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01536.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01536.xml deleted file mode 100644 index b6ec187cc6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01536.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01536 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01537.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01537.xml deleted file mode 100644 index fa2c7d85f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01537.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01537 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01538.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01538.xml deleted file mode 100644 index 9c61b00808..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01538.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01538 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01539.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01539.xml deleted file mode 100644 index 6641c87d08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01539.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01539 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01540.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01540.xml deleted file mode 100644 index 94a9dfd8c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01540.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01540 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01541.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01541.xml deleted file mode 100644 index 1b39e0733e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01541.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01541 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01542.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01542.xml deleted file mode 100644 index bff2721ab9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01542.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01542 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01543.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01543.xml deleted file mode 100644 index a82a97da9c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01543.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01543 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01544.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01544.xml deleted file mode 100644 index f5cdf996f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01544.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01544 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01545.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01545.xml deleted file mode 100644 index 0f3cd2253f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01545.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01545 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01546.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01546.xml deleted file mode 100644 index d90078a59a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01546.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01546 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01547.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01547.xml deleted file mode 100644 index 86688efa42..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01547.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01547 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01548.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01548.xml deleted file mode 100644 index f5f05f1ede..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01548.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01548 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01549.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01549.xml deleted file mode 100644 index 5cb5430261..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01549.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01549 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01550.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01550.xml deleted file mode 100644 index 0e5eb33b5b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01550.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01550 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01551.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01551.xml deleted file mode 100644 index 79c5c93351..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01551.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01551 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01552.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01552.java index 30ccfb20b5..c426daefd3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01552.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01552.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01552.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01552.xml deleted file mode 100644 index 8ac8c1b42b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01552.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01552 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01553.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01553.xml deleted file mode 100644 index a94c15b8b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01553.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01553 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01554.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01554.java index 98f41ac9b1..29f0e46d67 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01554.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01554.java @@ -48,19 +48,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -70,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01554.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01554.xml deleted file mode 100644 index 49d318d95a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01554.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01554 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01555.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01555.xml deleted file mode 100644 index 9b350b0b60..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01555.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01555 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01556.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01556.xml deleted file mode 100644 index 5fccf74f52..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01556.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01556 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01557.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01557.java index 3143d858e0..8d3e1e9b0f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01557.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01557.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01557.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01557.xml deleted file mode 100644 index b21f01059d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01557.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01557 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01558.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01558.java index eb4cf5867d..4b09d7e9d7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01558.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01558.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01558.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01558.xml deleted file mode 100644 index f9b2e0ccd1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01558.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01558 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01559.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01559.java index d0ca545532..16295a7012 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01559.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01559.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01559.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01559.xml deleted file mode 100644 index 1a806bf680..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01559.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01559 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01560.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01560.java index 48217e41fd..c92707a8ea 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01560.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01560.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01560.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01560.xml deleted file mode 100644 index 0b3d489f7b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01560.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01560 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01561.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01561.xml deleted file mode 100644 index 8e8266d47d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01561.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01561 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01562.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01562.xml deleted file mode 100644 index 2ae8c89f15..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01562.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01562 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01563.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01563.xml deleted file mode 100644 index 1c5bf4b06a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01563.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01563 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01564.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01564.xml deleted file mode 100644 index 16e11d7c65..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01564.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01564 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01565.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01565.xml deleted file mode 100644 index 720c508f78..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01565.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01565 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01566.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01566.xml deleted file mode 100644 index 1fc44602a4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01566.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01566 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01567.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01567.xml deleted file mode 100644 index c925ccd28e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01567.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01567 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01568.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01568.java index c9d7b9b9a0..c0b49697be 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01568.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01568.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -71,12 +70,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01568.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01568.xml deleted file mode 100644 index 9c635aa412..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01568.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01568 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01569.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01569.java index 40c20e8ad2..b3fac335bb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01569.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01569.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -71,12 +70,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01569.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01569.xml deleted file mode 100644 index 57b93881a1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01569.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01569 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01570.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01570.xml deleted file mode 100644 index 6bb1da1b72..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01570.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01570 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01571.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01571.xml deleted file mode 100644 index 95c777a1fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01571.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01571 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01572.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01572.xml deleted file mode 100644 index c004e10398..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01572.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01572 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01573.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01573.xml deleted file mode 100644 index a00fb5cc57..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01573.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01573 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01574.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01574.xml deleted file mode 100644 index b55b129786..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01574.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01574 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01575.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01575.xml deleted file mode 100644 index 6d461e3f55..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01575.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01575 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01576.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01576.xml deleted file mode 100644 index 8cdc45cd6e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01576.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01576 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01577.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01577.xml deleted file mode 100644 index f656a6aac9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01577.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01577 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01578.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01578.xml deleted file mode 100644 index 2e684534d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01578.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01578 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01579.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01579.xml deleted file mode 100644 index 1d39b11447..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01579.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01579 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01580.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01580.xml deleted file mode 100644 index 3bcb1c74be..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01580.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01580 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01581.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01581.xml deleted file mode 100644 index 5d6629e1be..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01581.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01581 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01582.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01582.xml deleted file mode 100644 index 23ae99d42e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01582.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01582 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01583.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01583.xml deleted file mode 100644 index 80549e5555..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01583.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01583 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01584.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01584.xml deleted file mode 100644 index 8ea8211e64..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01584.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01584 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01585.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01585.xml deleted file mode 100644 index 26653ee6d5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01585.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01585 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01586.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01586.xml deleted file mode 100644 index 6c50999ffe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01586.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01586 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01587.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01587.xml deleted file mode 100644 index 2a5146d9d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01587.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01587 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01588.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01588.xml deleted file mode 100644 index cb643c4ef1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01588.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01588 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01589.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01589.xml deleted file mode 100644 index 055117adf0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01589.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01589 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01590.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01590.xml deleted file mode 100644 index b3a3c22fcb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01590.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01590 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01591.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01591.xml deleted file mode 100644 index e3c5435c78..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01591.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01591 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01592.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01592.xml deleted file mode 100644 index 50dcca0fb2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01592.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01592 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01593.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01593.xml deleted file mode 100644 index 9f0a16900c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01593.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01593 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01594.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01594.xml deleted file mode 100644 index 650f1c4a94..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01594.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01594 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01595.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01595.xml deleted file mode 100644 index 247b104245..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01595.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01595 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01596.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01596.xml deleted file mode 100644 index 7566bfcc06..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01596.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01596 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01597.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01597.xml deleted file mode 100644 index cfc5c5710b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01597.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01597 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01598.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01598.xml deleted file mode 100644 index e72fd4d6a8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01598.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01598 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01599.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01599.xml deleted file mode 100644 index 087ca9626b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01599.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01599 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01600.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01600.xml deleted file mode 100644 index 191216515d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01600.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01600 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01601.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01601.xml deleted file mode 100644 index fc8744e9d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01601.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01601 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01602.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01602.xml deleted file mode 100644 index af915d26f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01602.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01602 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01603.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01603.xml deleted file mode 100644 index 138b5874ec..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01603.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01603 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01604.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01604.xml deleted file mode 100644 index 6fc4c18fe2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01604.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01604 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01605.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01605.xml deleted file mode 100644 index 16095edf0b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01605.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01605 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01606.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01606.xml deleted file mode 100644 index f0eb0d19fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01606.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01606 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01607.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01607.xml deleted file mode 100644 index 7aa6938934..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01607.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01607 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01608.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01608.xml deleted file mode 100644 index fc974bd7dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01608.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01608 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01609.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01609.xml deleted file mode 100644 index c1cfe0c160..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01609.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01609 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01610.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01610.xml deleted file mode 100644 index 9e0932865d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01610.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01610 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01611.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01611.xml deleted file mode 100644 index 2a15f35c69..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01611.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01611 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01612.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01612.xml deleted file mode 100644 index 6eb73a1a8d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01612.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01612 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01613.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01613.xml deleted file mode 100644 index 61cb3740a6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01613.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01613 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01614.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01614.xml deleted file mode 100644 index 2f7ec6ea58..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01614.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01614 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01615.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01615.xml deleted file mode 100644 index 68a728e061..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01615.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01615 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01616.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01616.xml deleted file mode 100644 index 87cfed84d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01616.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01616 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01617.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01617.xml deleted file mode 100644 index 72b9c00ad1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01617.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01617 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01618.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01618.xml deleted file mode 100644 index 99c05d4a48..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01618.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01618 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01619.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01619.xml deleted file mode 100644 index 46e41d56a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01619.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01619 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01620.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01620.java index 3c8f3ffba3..37cf16cd4e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01620.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01620.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01620.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01620.xml deleted file mode 100644 index 69b19f2e27..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01620.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01620 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01621.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01621.java index e157229422..d66f29c180 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01621.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01621.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01621.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01621.xml deleted file mode 100644 index 2bbb265f4d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01621.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01621 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01622.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01622.java index 14f6c6b338..faddf2bd18 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01622.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01622.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01622.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01622.xml deleted file mode 100644 index a0179fc43f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01622.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01622 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01623.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01623.java index 9a8cc61f26..7e36ab8939 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01623.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01623.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01623.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01623.xml deleted file mode 100644 index 64fccd5f5b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01623.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01623 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01624.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01624.xml deleted file mode 100644 index e36599bce9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01624.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01624 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01625.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01625.xml deleted file mode 100644 index 16c7aa03db..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01625.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01625 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01626.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01626.java index 1b9f0c3271..632da21b54 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01626.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01626.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01626.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01626.xml deleted file mode 100644 index 898d4e757a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01626.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01626 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01627.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01627.java index e94f0fe638..b0826718a4 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01627.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01627.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01627.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01627.xml deleted file mode 100644 index 55383693c2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01627.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01627 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01628.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01628.java index 3cc4796614..7aa7b80bcd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01628.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01628.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01628.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01628.xml deleted file mode 100644 index d0c77524b2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01628.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01628 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01629.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01629.java index 960f342be6..aaca905293 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01629.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01629.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01629.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01629.xml deleted file mode 100644 index 02aa88dab3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01629.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01629 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01630.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01630.java index 25735ca49f..b7e75e0c98 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01630.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01630.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01630.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01630.xml deleted file mode 100644 index 7fd873136b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01630.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01630 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01631.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01631.java index 523623de6f..e9d0f60477 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01631.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01631.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01631.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01631.xml deleted file mode 100644 index fd1847819c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01631.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01631 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01632.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01632.xml deleted file mode 100644 index 168f7fe765..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01632.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01632 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01633.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01633.xml deleted file mode 100644 index 8e08f264ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01633.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01633 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01634.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01634.xml deleted file mode 100644 index 5b9f97948f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01634.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01634 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01635.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01635.xml deleted file mode 100644 index 92c8e45c4a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01635.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01635 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01636.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01636.xml deleted file mode 100644 index 88a992824b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01636.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01636 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01637.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01637.xml deleted file mode 100644 index 4c4e6fde53..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01637.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01637 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01638.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01638.xml deleted file mode 100644 index c156cc3828..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01638.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01638 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01639.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01639.xml deleted file mode 100644 index cf4bf6982a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01639.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01639 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01640.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01640.xml deleted file mode 100644 index e200cf35b7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01640.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01640 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01641.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01641.xml deleted file mode 100644 index ac05403313..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01641.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01641 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01642.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01642.xml deleted file mode 100644 index 557c1875a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01642.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01642 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01643.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01643.xml deleted file mode 100644 index 218fe66eb5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01643.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01643 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01644.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01644.xml deleted file mode 100644 index 1b919d9e00..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01644.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01644 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01645.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01645.xml deleted file mode 100644 index f5cad97033..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01645.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01645 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01646.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01646.xml deleted file mode 100644 index a7da65f747..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01646.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01646 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01647.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01647.xml deleted file mode 100644 index e09f10a1e3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01647.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01647 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01648.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01648.xml deleted file mode 100644 index 2a0a4f1b47..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01648.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01648 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01649.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01649.xml deleted file mode 100644 index dd48ff4e5c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01649.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01649 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01650.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01650.xml deleted file mode 100644 index f3446d4fe2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01650.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01650 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01651.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01651.xml deleted file mode 100644 index 6d7f71dc27..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01651.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01651 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01652.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01652.xml deleted file mode 100644 index ddbf577113..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01652.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01652 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01653.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01653.xml deleted file mode 100644 index 032504882c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01653.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01653 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01654.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01654.xml deleted file mode 100644 index 2c28f24925..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01654.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01654 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01655.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01655.xml deleted file mode 100644 index ac3d3f00d6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01655.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01655 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01656.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01656.xml deleted file mode 100644 index c24a5fa1dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01656.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01656 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01657.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01657.xml deleted file mode 100644 index 16241e518c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01657.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01657 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01658.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01658.xml deleted file mode 100644 index 08543bf31a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01658.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01658 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01659.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01659.xml deleted file mode 100644 index 6f189db577..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01659.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01659 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01660.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01660.xml deleted file mode 100644 index 27731dadbf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01660.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01660 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01661.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01661.xml deleted file mode 100644 index 1d746a6ed8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01661.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01661 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01662.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01662.xml deleted file mode 100644 index a0afaac14f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01662.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01662 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01663.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01663.xml deleted file mode 100644 index 4d054066a6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01663.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01663 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01664.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01664.xml deleted file mode 100644 index 402a009f0e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01664.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01664 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01665.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01665.xml deleted file mode 100644 index dcb651daf6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01665.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01665 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01666.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01666.xml deleted file mode 100644 index 4bbb79cda9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01666.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01666 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01667.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01667.xml deleted file mode 100644 index fe1ad5ffed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01667.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01667 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01668.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01668.xml deleted file mode 100644 index 1ce8ff5844..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01668.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01668 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01669.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01669.xml deleted file mode 100644 index 4be18b8335..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01669.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01669 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01670.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01670.xml deleted file mode 100644 index 4d2e07992f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01670.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01670 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01671.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01671.xml deleted file mode 100644 index 13f760d36b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01671.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01671 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01672.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01672.xml deleted file mode 100644 index b7b39433a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01672.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01672 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01673.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01673.xml deleted file mode 100644 index 5982dfdf04..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01673.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01673 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01674.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01674.xml deleted file mode 100644 index 2ee5161df5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01674.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01674 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01675.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01675.xml deleted file mode 100644 index 50d596940c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01675.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01675 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01676.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01676.xml deleted file mode 100644 index 0213530349..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01676.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01676 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01677.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01677.xml deleted file mode 100644 index 36dd89f6cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01677.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01677 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01678.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01678.xml deleted file mode 100644 index 87c631ca0a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01678.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01678 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01679.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01679.xml deleted file mode 100644 index 0c823285c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01679.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01679 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01680.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01680.xml deleted file mode 100644 index 2ce010d78c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01680.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01680 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01681.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01681.xml deleted file mode 100644 index 0018e52590..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01681.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01681 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01682.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01682.xml deleted file mode 100644 index f1d950c82f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01682.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01682 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01683.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01683.xml deleted file mode 100644 index 41edd09712..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01683.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01683 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01684.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01684.xml deleted file mode 100644 index 07c50e5e70..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01684.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01684 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01685.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01685.xml deleted file mode 100644 index 3e429d2847..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01685.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01685 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01686.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01686.xml deleted file mode 100644 index e133b81662..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01686.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01686 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01687.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01687.xml deleted file mode 100644 index abe912b87d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01687.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01687 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01688.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01688.xml deleted file mode 100644 index 6c9e55ea2a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01688.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01688 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01689.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01689.xml deleted file mode 100644 index 56affef2df..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01689.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01689 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01690.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01690.xml deleted file mode 100644 index 74453e990f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01690.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01690 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01691.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01691.xml deleted file mode 100644 index cc926e3414..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01691.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01691 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01692.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01692.xml deleted file mode 100644 index 8f9416ac6c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01692.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01692 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01693.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01693.xml deleted file mode 100644 index dd5ae2c4d7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01693.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01693 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01694.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01694.xml deleted file mode 100644 index 2f44096456..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01694.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01694 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01695.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01695.xml deleted file mode 100644 index d0c5dad4b4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01695.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01695 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01696.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01696.xml deleted file mode 100644 index ade4062173..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01696.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01696 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01697.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01697.xml deleted file mode 100644 index 16fcb72ca3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01697.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01697 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01698.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01698.xml deleted file mode 100644 index caedd8125e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01698.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01698 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01699.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01699.xml deleted file mode 100644 index 61090ae398..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01699.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01699 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01700.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01700.xml deleted file mode 100644 index d4850a0e18..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01700.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01700 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01701.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01701.xml deleted file mode 100644 index e30db960d6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01701.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01701 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01702.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01702.xml deleted file mode 100644 index dcf27d3996..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01702.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01702 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01703.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01703.xml deleted file mode 100644 index 84536702ec..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01703.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01703 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01704.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01704.xml deleted file mode 100644 index a1c733f459..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01704.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01704 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01705.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01705.xml deleted file mode 100644 index 7dba3c25d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01705.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01705 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01706.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01706.xml deleted file mode 100644 index f05ec23e92..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01706.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01706 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01707.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01707.xml deleted file mode 100644 index 268f0f57f2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01707.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01707 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01708.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01708.xml deleted file mode 100644 index 991558f2c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01708.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01708 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01709.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01709.xml deleted file mode 100644 index 59c3baac56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01709.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01709 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01710.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01710.xml deleted file mode 100644 index 8b1ba99067..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01710.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01710 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01711.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01711.xml deleted file mode 100644 index 91cedc9ed5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01711.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01711 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01712.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01712.java index 07b5a4ed5e..1181e75a3b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01712.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01712.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01712.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01712.xml deleted file mode 100644 index 5b19597bf1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01712.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01712 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01713.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01713.java index d0929cc2a8..9459b517be 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01713.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01713.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01713.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01713.xml deleted file mode 100644 index 4948f6bc21..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01713.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01713 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01714.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01714.java index 916429eabf..29d3ca4e20 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01714.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01714.java @@ -84,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01714.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01714.xml deleted file mode 100644 index f5afda8089..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01714.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01714 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01715.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01715.java index 853147f3a6..243c045da9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01715.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01715.java @@ -85,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01715.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01715.xml deleted file mode 100644 index 28857cc21f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01715.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01715 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01716.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01716.java index 41666d1b28..2c76eaaf7b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01716.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01716.java @@ -85,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01716.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01716.xml deleted file mode 100644 index 4a382ce706..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01716.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01716 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01717.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01717.java index 434aadd347..2eef460863 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01717.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01717.java @@ -86,7 +86,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01717.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01717.xml deleted file mode 100644 index 4d6904ee7d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01717.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01717 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01718.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01718.java index d3e9e5ee3f..5a0740745e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01718.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01718.java @@ -86,7 +86,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01718.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01718.xml deleted file mode 100644 index 25c67b3546..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01718.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01718 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01719.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01719.java index 50596e9f63..752f16631b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01719.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01719.java @@ -82,7 +82,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01719.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01719.xml deleted file mode 100644 index 0f3eb7bde5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01719.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01719 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01720.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01720.xml deleted file mode 100644 index 685649b3ea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01720.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01720 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01721.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01721.xml deleted file mode 100644 index 864b5c6d6e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01721.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01721 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01722.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01722.xml deleted file mode 100644 index d334ccc017..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01722.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01722 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01723.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01723.java index 0de6e9b5ba..d3c0155452 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01723.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01723.java @@ -70,6 +70,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -77,7 +78,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01723.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01723.xml deleted file mode 100644 index a03fddfc87..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01723.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01723 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01724.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01724.java index 15c8468436..0faf9535b2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01724.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01724.java @@ -70,19 +70,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -92,7 +90,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01724.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01724.xml deleted file mode 100644 index fe493d629c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01724.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01724 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01725.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01725.java index 1d1cac9ccb..0cfeaad3a7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01725.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01725.java @@ -77,10 +77,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01725.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01725.xml deleted file mode 100644 index 709eb9c2c2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01725.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01725 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01726.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01726.java index e73791235c..69f1528c94 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01726.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01726.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -85,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01726.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01726.xml deleted file mode 100644 index 2086984e20..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01726.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01726 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01727.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01727.xml deleted file mode 100644 index 7adb1d63ca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01727.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01727 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01728.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01728.java index f22735fa66..f492c701bf 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01728.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01728.java @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01728.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01728.xml deleted file mode 100644 index 29e3c3107d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01728.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01728 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01729.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01729.java index d7828b29e6..db6bacbcbb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01729.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01729.java @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01729.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01729.xml deleted file mode 100644 index 26be001300..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01729.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01729 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01730.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01730.java index f2b8d06757..414b0d45e3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01730.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01730.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01730.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01730.xml deleted file mode 100644 index 980486aa7a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01730.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01730 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01731.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01731.java index dd30be2aeb..65064326ce 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01731.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01731.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01731.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01731.xml deleted file mode 100644 index 7a51a1cdf4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01731.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01731 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01732.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01732.java index 8681e815ad..bf21f6669b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01732.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01732.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01732.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01732.xml deleted file mode 100644 index a6fb4bb278..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01732.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01732 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01733.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01733.java index 4f5644ab3c..47344b9632 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01733.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01733.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01733.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01733.xml deleted file mode 100644 index ab6b2a9a45..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01733.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01733 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01734.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01734.xml deleted file mode 100644 index 8474223816..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01734.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01734 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01735.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01735.xml deleted file mode 100644 index 8dca61adce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01735.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01735 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01736.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01736.xml deleted file mode 100644 index 22fe15b02f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01736.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01736 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01737.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01737.xml deleted file mode 100644 index a34383a147..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01737.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01737 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01738.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01738.xml deleted file mode 100644 index a776735a81..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01738.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01738 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01739.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01739.xml deleted file mode 100644 index 6cd56c2969..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01739.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01739 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01740.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01740.xml deleted file mode 100644 index 11ecf435e9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01740.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01740 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01741.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01741.xml deleted file mode 100644 index 7cdd29401b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01741.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01741 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01742.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01742.xml deleted file mode 100644 index 8f2f83db80..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01742.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01742 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01743.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01743.java index 908ecc844a..80b59d1178 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01743.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01743.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -71,12 +70,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01743.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01743.xml deleted file mode 100644 index 33aebf1eda..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01743.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01743 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01744.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01744.xml deleted file mode 100644 index 902924a216..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01744.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01744 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01745.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01745.xml deleted file mode 100644 index d9a470cd55..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01745.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01745 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01746.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01746.xml deleted file mode 100644 index 15342cbe2d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01746.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01746 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01747.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01747.xml deleted file mode 100644 index c337e16751..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01747.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01747 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01748.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01748.xml deleted file mode 100644 index 9ac34fce74..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01748.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01748 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01749.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01749.xml deleted file mode 100644 index 490fb096f4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01749.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01749 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01750.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01750.xml deleted file mode 100644 index 33efc2153b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01750.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01750 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01751.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01751.xml deleted file mode 100644 index dc881b1072..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01751.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01751 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01752.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01752.xml deleted file mode 100644 index afa46e4447..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01752.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01752 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01753.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01753.java index 0cc45bff7f..4392d491af 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01753.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01753.java @@ -73,12 +73,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01753.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01753.xml deleted file mode 100644 index db636630b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01753.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01753 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01754.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01754.java index a9b0946255..c8b9af0f20 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01754.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01754.java @@ -73,12 +73,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01754.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01754.xml deleted file mode 100644 index bbd741990c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01754.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01754 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01755.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01755.java index 7dbbae0442..40cf5eab7c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01755.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01755.java @@ -73,12 +73,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01755.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01755.xml deleted file mode 100644 index dec54ee94e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01755.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01755 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01756.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01756.java index f8ea325697..6f57abdd04 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01756.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01756.java @@ -73,12 +73,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01756.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01756.xml deleted file mode 100644 index dbafe5ee64..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01756.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01756 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01757.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01757.xml deleted file mode 100644 index ba9979b230..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01757.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01757 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01758.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01758.xml deleted file mode 100644 index 39d9d2f7aa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01758.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01758 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01759.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01759.xml deleted file mode 100644 index f1c6c96269..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01759.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01759 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01760.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01760.xml deleted file mode 100644 index b1683ca149..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01760.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01760 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01761.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01761.xml deleted file mode 100644 index db437aeec9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01761.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01761 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01762.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01762.xml deleted file mode 100644 index b3612ab135..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01762.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01762 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01763.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01763.xml deleted file mode 100644 index d6300807ca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01763.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01763 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01764.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01764.xml deleted file mode 100644 index 0bab3371f9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01764.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01764 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01765.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01765.xml deleted file mode 100644 index 7c7f984565..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01765.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01765 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01766.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01766.xml deleted file mode 100644 index 1ce2437b9e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01766.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01766 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01767.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01767.xml deleted file mode 100644 index 117c8b79c3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01767.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01767 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01768.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01768.xml deleted file mode 100644 index d6d28e3de1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01768.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01768 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01769.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01769.xml deleted file mode 100644 index a0233fb8a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01769.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01769 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01770.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01770.xml deleted file mode 100644 index a33ddc0eba..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01770.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01770 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01771.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01771.xml deleted file mode 100644 index 1462e6fa45..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01771.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01771 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01772.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01772.xml deleted file mode 100644 index 8ca5fff737..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01772.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01772 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01773.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01773.xml deleted file mode 100644 index 9e8675e38c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01773.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01773 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01774.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01774.xml deleted file mode 100644 index 662146902d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01774.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01774 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01775.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01775.xml deleted file mode 100644 index cfaeddc30b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01775.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01775 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01776.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01776.xml deleted file mode 100644 index 8a2ec76d3a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01776.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01776 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01777.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01777.xml deleted file mode 100644 index 4212837c77..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01777.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01777 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01778.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01778.xml deleted file mode 100644 index bd92cf4e66..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01778.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01778 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01779.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01779.xml deleted file mode 100644 index f51384db09..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01779.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01779 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01780.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01780.xml deleted file mode 100644 index e842eeff1b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01780.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01780 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01781.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01781.xml deleted file mode 100644 index 45b5145e3f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01781.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01781 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01782.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01782.xml deleted file mode 100644 index 27b1f54c7c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01782.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01782 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01783.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01783.xml deleted file mode 100644 index 68b679376e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01783.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01783 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01784.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01784.xml deleted file mode 100644 index 29c6747843..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01784.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01784 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01785.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01785.xml deleted file mode 100644 index 00188b2ba9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01785.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01785 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01786.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01786.xml deleted file mode 100644 index 75a78222d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01786.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01786 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01787.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01787.xml deleted file mode 100644 index 49d504ea10..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01787.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01787 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01788.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01788.xml deleted file mode 100644 index 0d4867a09d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01788.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01788 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01789.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01789.xml deleted file mode 100644 index 06776f9769..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01789.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01789 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01790.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01790.xml deleted file mode 100644 index 8333bc7974..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01790.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01790 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01791.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01791.xml deleted file mode 100644 index 81dc78d017..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01791.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01791 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01792.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01792.xml deleted file mode 100644 index fbc725bf3a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01792.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01792 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01793.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01793.xml deleted file mode 100644 index 9429d9134a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01793.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01793 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01794.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01794.xml deleted file mode 100644 index 1e7ae67a08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01794.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01794 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01795.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01795.xml deleted file mode 100644 index f957241b4e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01795.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01795 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01796.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01796.xml deleted file mode 100644 index 278e3faba7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01796.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01796 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01797.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01797.xml deleted file mode 100644 index b3e0e43ed4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01797.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01797 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01798.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01798.xml deleted file mode 100644 index d17f90088d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01798.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01798 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01799.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01799.xml deleted file mode 100644 index 39f41c1624..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01799.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01799 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01800.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01800.xml deleted file mode 100644 index 59203f8a98..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01800.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01800 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01801.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01801.xml deleted file mode 100644 index 30e15ffd24..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01801.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01801 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01802.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01802.xml deleted file mode 100644 index eed1379798..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01802.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01802 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01803.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01803.java index b610d3dcf0..ec237b53c6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01803.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01803.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01803.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01803.xml deleted file mode 100644 index 9f90fcaa65..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01803.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01803 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01804.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01804.java index fb6da6d9c5..94b7ec8235 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01804.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01804.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01804.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01804.xml deleted file mode 100644 index 230acd6587..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01804.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01804 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01805.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01805.java index bb7d83eae7..3105d77352 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01805.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01805.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01805.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01805.xml deleted file mode 100644 index b7c034ec14..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01805.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01805 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01806.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01806.xml deleted file mode 100644 index 782c1ac472..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01806.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01806 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01807.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01807.xml deleted file mode 100644 index ddd1bac5d7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01807.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01807 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01808.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01808.java index 278e6b2679..7ec636a4fd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01808.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01808.java @@ -47,6 +47,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -54,7 +55,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01808.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01808.xml deleted file mode 100644 index 2dfaae72fd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01808.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01808 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01809.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01809.java index 0d21da2b1d..991b656a0d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01809.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01809.java @@ -47,19 +47,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = new Test().doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -69,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01809.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01809.xml deleted file mode 100644 index e20155c698..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01809.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01809 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01810.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01810.java index 1a083344fc..679efae8a1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01810.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01810.java @@ -53,10 +53,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01810.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01810.xml deleted file mode 100644 index e3ea76a450..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01810.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01810 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01811.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01811.java index 6a01a19c06..49b6e2de95 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01811.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01811.java @@ -53,10 +53,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01811.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01811.xml deleted file mode 100644 index 851ed8d107..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01811.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01811 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01812.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01812.java index 2e880806d0..f13b6e50bc 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01812.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01812.java @@ -54,10 +54,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01812.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01812.xml deleted file mode 100644 index 4166a30558..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01812.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01812 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01813.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01813.java index aed1088376..66df6ed07d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01813.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01813.java @@ -54,10 +54,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01813.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01813.xml deleted file mode 100644 index 0941ae7401..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01813.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01813 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01814.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01814.java index 1908204d72..5937f43769 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01814.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01814.java @@ -52,7 +52,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -62,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01814.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01814.xml deleted file mode 100644 index 1bc46a6813..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01814.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01814 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01815.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01815.java index 527192ca85..4c42e29737 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01815.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01815.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01815.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01815.xml deleted file mode 100644 index e09ac2b32e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01815.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01815 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01816.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01816.java index 37f6cd4c41..10e30f2ffa 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01816.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01816.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01816.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01816.xml deleted file mode 100644 index 618a9f1b83..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01816.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01816 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01817.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01817.java index 54e1bb776a..bb3d929e64 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01817.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01817.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01817.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01817.xml deleted file mode 100644 index a7e4e267da..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01817.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01817 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01818.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01818.java index b3ef628ad6..4ade959702 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01818.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01818.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01818.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01818.xml deleted file mode 100644 index 2d30377bca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01818.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01818 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01819.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01819.java index 4b9ee78d8f..b87ebf2fca 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01819.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01819.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01819.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01819.xml deleted file mode 100644 index 78c9abc8d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01819.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01819 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01820.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01820.java index 905b70a0ca..ad41f74373 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01820.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01820.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01820.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01820.xml deleted file mode 100644 index 7db27538fa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01820.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01820 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01821.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01821.xml deleted file mode 100644 index 649d49c108..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01821.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01821 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01822.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01822.java index 652063479f..d76fdf33e6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01822.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01822.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01822", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01822.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01822.xml deleted file mode 100644 index 6cb3a566e1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01822.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01822 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01823.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01823.java index 14b2731965..5e14cb2627 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01823.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01823.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01823", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01823.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01823.xml deleted file mode 100644 index 33c814ca44..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01823.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01823 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01824.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01824.java index faa6c3b76b..7f8ce5a2e2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01824.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01824.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01824", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01824.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01824.xml deleted file mode 100644 index fbe76c8aa3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01824.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01824 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01825.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01825.java index 3c9e344478..a36bace17c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01825.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01825.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01825", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01825.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01825.xml deleted file mode 100644 index 45bfd7f5c6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01825.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01825 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01826.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01826.java index ed98148017..984ae4aed0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01826.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01826.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01826", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01826.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01826.xml deleted file mode 100644 index 7c97c72079..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01826.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01826 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01827.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01827.java index 1a0206901d..194889b730 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01827.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01827.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01827", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01827.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01827.xml deleted file mode 100644 index 5ce0c674b2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01827.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01827 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01828.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01828.java index c3f800b1ff..2eaee677a8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01828.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01828.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01828", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01828.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01828.xml deleted file mode 100644 index 4c43f4cae8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01828.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01828 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01829.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01829.java index dc5d3143b1..b558db1f52 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01829.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01829.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01829", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01829.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01829.xml deleted file mode 100644 index 9e9263e4cb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01829.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01829 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01830.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01830.java index a1f3a82f10..519ae9a400 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01830.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01830.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01830", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01830.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01830.xml deleted file mode 100644 index 5a94600c88..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01830.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01830 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01831.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01831.java index e1522266d3..ea9a712bc6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01831.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01831.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01831", "Ms+Bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -73,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -89,12 +89,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01831.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01831.xml deleted file mode 100644 index 8edb618d39..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01831.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01831 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01832.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01832.java index 9fc57602d0..24ab816dec 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01832.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01832.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01832", "Ms+Bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -73,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -89,12 +89,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01832.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01832.xml deleted file mode 100644 index d4bea0e98f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01832.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01832 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01833.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01833.java index 5c586b78c6..6610758aec 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01833.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01833.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01833", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01833.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01833.xml deleted file mode 100644 index 3d8d9de3fe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01833.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01833 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01834.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01834.java index 8a6f1e4ef9..599cf9931b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01834.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01834.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01834", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01834.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01834.xml deleted file mode 100644 index bd6ab83be9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01834.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01834 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01835.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01835.java index ee2b8a4c46..b822f3e96c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01835.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01835.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01835", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01835.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01835.xml deleted file mode 100644 index b46f7dfecf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01835.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01835 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01836.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01836.java index 6bd242fef4..50a5ae2189 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01836.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01836.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01836", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01836.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01836.xml deleted file mode 100644 index c18ef6d299..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01836.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01836 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01837.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01837.java index f9f77e51e9..9cb43ac58a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01837.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01837.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01837", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01837.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01837.xml deleted file mode 100644 index 67aa5effd4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01837.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01837 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01838.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01838.java index 02f4cb14c9..e8a0968c35 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01838.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01838.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01838", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01838.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01838.xml deleted file mode 100644 index da874fe407..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01838.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01838 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01839.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01839.java index 5cd170d670..eb23408903 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01839.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01839.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01839", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01839.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01839.xml deleted file mode 100644 index 85773e64f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01839.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01839 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01840.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01840.java index 04533a0c2b..9b7d7b2df2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01840.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01840.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01840", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01840.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01840.xml deleted file mode 100644 index cf2702bd48..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01840.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01840 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01841.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01841.java index a7f71ab136..f07e441692 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01841.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01841.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01841", "FileName"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01841.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01841.xml deleted file mode 100644 index 51c5e01a00..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01841.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01841 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01842.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01842.java index d1502aaa41..05297ba42b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01842.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01842.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01842", "anything"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01842.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01842.xml deleted file mode 100644 index 9195c0d4d4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01842.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01842 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01843.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01843.java index 63f28da386..4dc4ce6983 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01843.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01843.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01843", "anything"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01843.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01843.xml deleted file mode 100644 index 1a3a140a58..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01843.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01843 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01844.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01844.java index 8b819ee867..4d5aff7872 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01844.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01844.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01844", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01844.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01844.xml deleted file mode 100644 index adaf12d381..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01844.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01844 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01845.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01845.java index 2578510a3c..f6f49e22b8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01845.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01845.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01845", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01845.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01845.xml deleted file mode 100644 index ff0e4c15d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01845.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01845 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01846.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01846.java index eca48bdbb9..83d7494c35 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01846.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01846.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01846", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01846.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01846.xml deleted file mode 100644 index 4125f15750..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01846.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01846 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01847.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01847.java index 37d64465a2..79ad51979c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01847.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01847.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01847", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01847.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01847.xml deleted file mode 100644 index 50697d0977..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01847.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01847 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01848.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01848.java index ad777035c9..758ca6684f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01848.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01848.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01848", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01848.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01848.xml deleted file mode 100644 index b3f5268972..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01848.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01848 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01849.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01849.java index 0eb8373036..41e30d1969 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01849.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01849.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01849", "someSecret"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01849.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01849.xml deleted file mode 100644 index 0830c61ac5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01849.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01849 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01850.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01850.java index b38e94d618..917d067ad1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01850.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01850.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01850", "ECHOOO"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01850.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01850.xml deleted file mode 100644 index bd3e045166..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01850.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01850 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01851.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01851.java index 85be124f98..d8d0e6e205 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01851.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01851.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01851", "ECHOOO"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01851.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01851.xml deleted file mode 100644 index 7b7d0f0240..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01851.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01851 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01852.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01852.java index 6cc163c503..78872a8b39 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01852.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01852.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01852", "ECHOOO"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01852.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01852.xml deleted file mode 100644 index 14d508428a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01852.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01852 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01853.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01853.java index 643a9aeddf..f668077468 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01853.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01853.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01853", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01853.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01853.xml deleted file mode 100644 index 1a4e81baae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01853.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01853 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01854.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01854.java index a1d7a89fe8..c913decfd6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01854.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01854.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01854", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01854.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01854.xml deleted file mode 100644 index 7905588818..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01854.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01854 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01855.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01855.java index d49fd5d4a1..6084050ea8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01855.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01855.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01855", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01855.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01855.xml deleted file mode 100644 index 61786349de..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01855.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01855 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01856.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01856.java index aaf7bbac2a..f5fa9ccdd3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01856.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01856.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01856", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01856.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01856.xml deleted file mode 100644 index 9dd40fa48f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01856.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01856 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01857.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01857.java index 8598803d2b..c1ac6f1d00 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01857.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01857.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01857", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01857.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01857.xml deleted file mode 100644 index 68e4053ea3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01857.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01857 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01858.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01858.java index 607a500c9e..9965f2f471 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01858.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01858.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01858", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01858.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01858.xml deleted file mode 100644 index 244800f7c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01858.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01858 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01859.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01859.java index 8567931dd0..0a770ae181 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01859.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01859.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01859", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01859.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01859.xml deleted file mode 100644 index 3ca0a4f8c2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01859.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01859 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01860.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01860.java index 85f530e06f..bd5978e6c2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01860.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01860.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01860", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01860.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01860.xml deleted file mode 100644 index efb0958874..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01860.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01860 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01861.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01861.java index eed2e87d02..7fc5697982 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01861.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01861.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01861", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01861.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01861.xml deleted file mode 100644 index 36b1665f85..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01861.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01861 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01862.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01862.java index acfe2945bf..d11e15bccd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01862.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01862.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01862", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01862.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01862.xml deleted file mode 100644 index b8b9bf6164..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01862.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01862 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01863.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01863.java index 2378cbabea..050954f40b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01863.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01863.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01863", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01863.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01863.xml deleted file mode 100644 index 6971f34816..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01863.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01863 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01864.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01864.java index 28a4a7b34c..2e2048ea36 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01864.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01864.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01864", "ls"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01864.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01864.xml deleted file mode 100644 index 6e3245a0d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01864.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01864 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01865.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01865.java index 0da0955c2a..104dfbc674 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01865.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01865.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01865", "ls"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01865.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01865.xml deleted file mode 100644 index d63a5b9cb6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01865.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01865 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01866.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01866.java index ee1eb6e0b1..e85db4c343 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01866.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01866.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01866", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01866.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01866.xml deleted file mode 100644 index 5976629c4b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01866.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01866 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01867.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01867.java index e678175587..94402a4e85 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01867.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01867.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01867", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01867.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01867.xml deleted file mode 100644 index d334b97a4c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01867.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01867 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01868.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01868.java index 8535147c86..258fb9f477 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01868.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01868.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01868", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01868.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01868.xml deleted file mode 100644 index 1396ecfbbb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01868.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01868 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01869.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01869.java index a0b75ba575..2155e13a03 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01869.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01869.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01869", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01869.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01869.xml deleted file mode 100644 index 4d6befd45a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01869.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01869 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01870.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01870.java index 323eab5734..7ae7a68767 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01870.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01870.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01870", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01870.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01870.xml deleted file mode 100644 index 34e522b9df..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01870.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01870 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01871.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01871.java index acb918ff01..544d2e1d69 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01871.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01871.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01871", "whatever"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01871.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01871.xml deleted file mode 100644 index a7b962bc15..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01871.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01871 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01872.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01872.java index de4d068f4f..9379c3942f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01872.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01872.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01872", "color"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01872.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01872.xml deleted file mode 100644 index ba830f334f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01872.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01872 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01873.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01873.java index d1fe1addca..afde89887c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01873.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01873.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01873", "my_user_id"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01873.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01873.xml deleted file mode 100644 index 6bc53908bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01873.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01873 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01874.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01874.java index 1a0f62d428..6d10d208a3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01874.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01874.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01874", "color"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01874.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01874.xml deleted file mode 100644 index 36675e4830..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01874.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01874 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01875.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01875.java index 20914fbee1..f990d7f2bd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01875.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01875.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01875", "color"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01875.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01875.xml deleted file mode 100644 index 5e61fa0d22..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01875.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01875 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01876.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01876.java index a210e4b623..ca18cacdd3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01876.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01876.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01876", "my_userid"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01876.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01876.xml deleted file mode 100644 index 3541157800..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01876.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01876 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01877.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01877.java index 8d95fb5adc..5550985680 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01877.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01877.java @@ -38,6 +38,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) "BenchmarkTest01877", "verifyUserPassword%28%27foo%27%2C%27bar%27%29"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -80,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01877.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01877.xml deleted file mode 100644 index c60a0bc0e7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01877.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01877 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01878.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01878.java index 7b63716dc1..3f3ab83934 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01878.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01878.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01878", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -77,7 +78,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01878.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01878.xml deleted file mode 100644 index 6f822a8ce4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01878.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01878 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01879.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01879.java index c2d2741ef9..f391603fc1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01879.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01879.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01879", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -80,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01879.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01879.xml deleted file mode 100644 index 6738054688..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01879.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01879 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01880.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01880.java index e646cf220a..66dd5e4497 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01880.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01880.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01880", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -81,7 +82,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01880.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01880.xml deleted file mode 100644 index 2b33f27d61..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01880.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01880 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01881.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01881.java index 6f7c44a996..9823dd9648 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01881.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01881.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01881", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01881.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01881.xml deleted file mode 100644 index 615df00610..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01881.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01881 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01882.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01882.java index 2066b1af92..a81e9bd980 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01882.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01882.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01882", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01882.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01882.xml deleted file mode 100644 index 061c18a1a1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01882.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01882 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01883.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01883.java index 855c25e9d4..54971841a5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01883.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01883.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01883", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -70,7 +71,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01883.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01883.xml deleted file mode 100644 index 17c8d3b65f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01883.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01883 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01884.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01884.java index 70f8019f52..85b55563b7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01884.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01884.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01884", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01884.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01884.xml deleted file mode 100644 index 74ac2051ad..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01884.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01884 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01885.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01885.java index b36571c9e4..dfea356d24 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01885.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01885.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01885", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -74,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01885.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01885.xml deleted file mode 100644 index 0224659a51..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01885.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01885 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01886.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01886.java index e6b384a110..9f3d814aae 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01886.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01886.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01886", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -74,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01886.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01886.xml deleted file mode 100644 index a41963a1bb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01886.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01886 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01887.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01887.java index 673748a680..8cbbfe2cdd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01887.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01887.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01887", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -74,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01887.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01887.xml deleted file mode 100644 index c7dd9d8cbf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01887.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01887 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01888.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01888.java index e671b2c4d5..d3383b9fc9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01888.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01888.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01888", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -74,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01888.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01888.xml deleted file mode 100644 index 325a75027e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01888.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01888 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01889.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01889.java index cbea08b093..530250a18d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01889.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01889.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01889", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -74,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01889.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01889.xml deleted file mode 100644 index 77966479e5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01889.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01889 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01890.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01890.java index cf86030798..7cc57c7045 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01890.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01890.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01890", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -74,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01890.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01890.xml deleted file mode 100644 index 5c05872e53..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01890.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01890 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01891.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01891.java index c2f0c21228..b758b2516e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01891.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01891.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01891", "bar"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); @@ -74,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01891.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01891.xml deleted file mode 100644 index 70231b299b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01891.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01891 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01892.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01892.java index 63890fb1f2..e8d8450b9c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01892.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01892.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01892", "2222"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01892.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01892.xml deleted file mode 100644 index 8a3adb1771..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01892.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01892 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01893.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01893.java index 096f5cf18d..664050f62c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01893.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01893.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01893", "2222"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01893.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01893.xml deleted file mode 100644 index fd88643778..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01893.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01893 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01894.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01894.java index 313a19b02e..8c072bf382 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01894.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01894.java @@ -37,6 +37,7 @@ public void doGet(HttpServletRequest request, HttpServletResponse response) new javax.servlet.http.Cookie("BenchmarkTest01894", "2222"); userCookie.setMaxAge(60 * 3); // Store cookie for 3 minutes userCookie.setSecure(true); + userCookie.setHttpOnly(true); userCookie.setPath(request.getRequestURI()); userCookie.setDomain(new java.net.URL(request.getRequestURL().toString()).getHost()); response.addCookie(userCookie); diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01894.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01894.xml deleted file mode 100644 index f8e53978d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01894.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01894 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01895.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01895.xml deleted file mode 100644 index adf5b8f807..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01895.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01895 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01896.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01896.xml deleted file mode 100644 index 11f6411720..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01896.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01896 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01897.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01897.xml deleted file mode 100644 index 6d12a9a8b2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01897.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01897 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01898.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01898.xml deleted file mode 100644 index eeca283859..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01898.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01898 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01899.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01899.xml deleted file mode 100644 index 6db50f16b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01899.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01899 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01900.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01900.xml deleted file mode 100644 index 5cbf82c17b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01900.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01900 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01901.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01901.xml deleted file mode 100644 index e67a51ea91..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01901.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01901 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01902.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01902.java index 3544dfadb6..2776f64e08 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01902.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01902.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -74,12 +73,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01902.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01902.xml deleted file mode 100644 index 32d34ff3e3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01902.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01902 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01903.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01903.java index 6a66aa2cba..ad65c9a522 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01903.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01903.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -74,12 +73,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01903.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01903.xml deleted file mode 100644 index 42d14a8dd6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01903.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01903 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01904.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01904.xml deleted file mode 100644 index 9459b58b2a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01904.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01904 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01905.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01905.xml deleted file mode 100644 index 6c58a49798..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01905.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01905 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01906.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01906.xml deleted file mode 100644 index 20926819fa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01906.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01906 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01907.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01907.xml deleted file mode 100644 index af09cc53c3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01907.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01907 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01908.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01908.xml deleted file mode 100644 index 5e7cf09e2e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01908.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01908 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01909.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01909.java index f1f0a22c78..e611b1b513 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01909.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01909.java @@ -77,12 +77,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01909.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01909.xml deleted file mode 100644 index 861100cbc4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01909.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 01909 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01910.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01910.xml deleted file mode 100644 index 87f7e231fc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01910.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01910 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01911.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01911.xml deleted file mode 100644 index 4326705fdf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01911.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01911 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01912.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01912.xml deleted file mode 100644 index 49c478a67e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01912.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01912 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01913.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01913.xml deleted file mode 100644 index b5573eb7d2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01913.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01913 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01914.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01914.xml deleted file mode 100644 index 9f0e112548..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01914.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01914 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01915.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01915.xml deleted file mode 100644 index 31ca498ab8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01915.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01915 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01916.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01916.xml deleted file mode 100644 index 45b7090c02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01916.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01916 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01917.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01917.xml deleted file mode 100644 index c9de221d97..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01917.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01917 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01918.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01918.xml deleted file mode 100644 index 28520e2982..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01918.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01918 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01919.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01919.xml deleted file mode 100644 index 1987426941..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01919.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01919 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01920.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01920.xml deleted file mode 100644 index 9fa587a64a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01920.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01920 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01921.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01921.xml deleted file mode 100644 index 4d5e6a80d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01921.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01921 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01922.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01922.xml deleted file mode 100644 index c251e68225..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01922.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01922 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01923.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01923.xml deleted file mode 100644 index 4eb9f813a9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01923.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01923 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01924.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01924.xml deleted file mode 100644 index 049b9dfaca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01924.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01924 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01925.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01925.xml deleted file mode 100644 index 6e87887674..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01925.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01925 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01926.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01926.xml deleted file mode 100644 index 8415117e85..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01926.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01926 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01927.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01927.xml deleted file mode 100644 index 6ea345e35c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01927.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 01927 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01928.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01928.xml deleted file mode 100644 index 1cf0521d67..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01928.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01928 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01929.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01929.xml deleted file mode 100644 index 3dcad33e8f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01929.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01929 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01930.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01930.xml deleted file mode 100644 index 41a3e79b48..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01930.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01930 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01931.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01931.xml deleted file mode 100644 index f8d9e32164..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01931.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01931 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01932.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01932.xml deleted file mode 100644 index ea00e804d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01932.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01932 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01933.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01933.xml deleted file mode 100644 index 9a22d842d9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01933.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01933 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01934.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01934.xml deleted file mode 100644 index d7a3556003..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01934.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01934 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01935.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01935.xml deleted file mode 100644 index f93418be92..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01935.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 01935 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01936.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01936.xml deleted file mode 100644 index 2882ecc107..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01936.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01936 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01937.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01937.xml deleted file mode 100644 index a6a9eab6e8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01937.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01937 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01938.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01938.xml deleted file mode 100644 index c6515f96ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01938.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01938 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01939.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01939.xml deleted file mode 100644 index a36c494f34..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01939.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01939 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01940.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01940.xml deleted file mode 100644 index 8eafe4b40a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01940.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01940 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01941.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01941.xml deleted file mode 100644 index c51363e552..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01941.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01941 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01942.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01942.xml deleted file mode 100644 index 726d3cb753..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01942.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01942 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01943.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01943.xml deleted file mode 100644 index bfcedf36ce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01943.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01943 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01944.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01944.xml deleted file mode 100644 index 5884ea3324..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01944.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 01944 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01945.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01945.xml deleted file mode 100644 index 6ce4177d2e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01945.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01945 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01946.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01946.xml deleted file mode 100644 index eef578a81b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01946.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01946 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01947.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01947.xml deleted file mode 100644 index 9aaf5163d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01947.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01947 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01948.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01948.xml deleted file mode 100644 index 965b0f7cbd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01948.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01948 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01949.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01949.xml deleted file mode 100644 index b788587949..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01949.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01949 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01950.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01950.xml deleted file mode 100644 index 5e9b6d171c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01950.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01950 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01951.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01951.xml deleted file mode 100644 index a5375909fe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01951.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01951 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01952.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01952.xml deleted file mode 100644 index 35f469aa6f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01952.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01952 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01953.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01953.xml deleted file mode 100644 index 8b1ef29617..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01953.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01953 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01954.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01954.xml deleted file mode 100644 index cdc17ec9de..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01954.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01954 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01955.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01955.xml deleted file mode 100644 index 46620d501e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01955.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01955 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01956.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01956.xml deleted file mode 100644 index 5dac736093..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01956.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01956 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01957.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01957.xml deleted file mode 100644 index a22a551d02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01957.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01957 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01958.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01958.xml deleted file mode 100644 index 28a17e588f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01958.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01958 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01959.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01959.xml deleted file mode 100644 index 305026726e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01959.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01959 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01960.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01960.xml deleted file mode 100644 index 40e3246d04..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01960.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 01960 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01961.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01961.java index a2b2ca3ddc..e6e253c0a8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01961.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01961.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01961.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01961.xml deleted file mode 100644 index c4a93f00ca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01961.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01961 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01962.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01962.java index 51a0bbf7de..f1973d8750 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01962.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01962.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01962.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01962.xml deleted file mode 100644 index a5e9200e0f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01962.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01962 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01963.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01963.xml deleted file mode 100644 index d3394ed26b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01963.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01963 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01964.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01964.xml deleted file mode 100644 index 75f94359cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01964.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01964 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01965.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01965.xml deleted file mode 100644 index 8e313f23e1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01965.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01965 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01966.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01966.java index c1c66396b8..34f426847d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01966.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01966.java @@ -58,10 +58,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01966.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01966.xml deleted file mode 100644 index 32a70f4d08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01966.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01966 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01967.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01967.java index 7b820cf2b1..183561ce92 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01967.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01967.java @@ -58,10 +58,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01967.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01967.xml deleted file mode 100644 index d66c8718bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01967.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01967 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01968.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01968.xml deleted file mode 100644 index 4c08204259..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01968.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01968 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01969.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01969.java index b10477d345..dc8e1914f9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01969.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01969.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01969.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01969.xml deleted file mode 100644 index a83f8881b2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01969.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01969 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01970.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01970.java index ab775cb532..c89cc64e7a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01970.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01970.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01970.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01970.xml deleted file mode 100644 index a8fe4d44a8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01970.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01970 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01971.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01971.java index f964f0481b..de1ffea079 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01971.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01971.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01971.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01971.xml deleted file mode 100644 index cdc7ee1c5e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01971.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01971 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01972.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01972.java index e44fec95a1..7eb6c84d20 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01972.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01972.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01972.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01972.xml deleted file mode 100644 index e4c4a7be5b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01972.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01972 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01973.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01973.java index 4f773d5724..e3fab19469 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01973.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01973.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01973.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01973.xml deleted file mode 100644 index 4251c3ddcc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01973.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 01973 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01974.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01974.xml deleted file mode 100644 index ffe1366009..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01974.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 01974 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01975.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01975.xml deleted file mode 100644 index a203609723..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01975.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01975 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01976.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01976.xml deleted file mode 100644 index 534afa5ad0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01976.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01976 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01977.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01977.xml deleted file mode 100644 index 2a19478c4a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01977.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01977 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01978.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01978.xml deleted file mode 100644 index 2125b6ca43..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01978.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01978 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01979.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01979.xml deleted file mode 100644 index 38520320e2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01979.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01979 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01980.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01980.xml deleted file mode 100644 index 6c73ff700a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01980.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01980 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01981.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01981.xml deleted file mode 100644 index 016303570f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01981.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01981 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01982.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01982.xml deleted file mode 100644 index d32aa34d21..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01982.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 01982 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01983.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01983.xml deleted file mode 100644 index 78e92d0e84..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01983.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01983 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01984.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01984.xml deleted file mode 100644 index 7db412fd67..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01984.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01984 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01985.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01985.xml deleted file mode 100644 index 196ab0c7c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01985.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01985 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01986.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01986.xml deleted file mode 100644 index 4504dc5ebd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01986.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01986 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01987.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01987.xml deleted file mode 100644 index 05d9ce3cc0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01987.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01987 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01988.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01988.xml deleted file mode 100644 index 8e94044eaa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01988.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01988 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01989.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01989.xml deleted file mode 100644 index 2af8b802d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01989.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01989 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01990.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01990.xml deleted file mode 100644 index a1193e68df..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01990.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01990 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01991.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01991.xml deleted file mode 100644 index a0abd3f481..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01991.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 01991 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01992.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01992.xml deleted file mode 100644 index fb620b9a19..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01992.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01992 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01993.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01993.xml deleted file mode 100644 index fd04d5363a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01993.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01993 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01994.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01994.xml deleted file mode 100644 index b41d1823bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01994.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01994 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01995.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01995.xml deleted file mode 100644 index bd6c49910b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01995.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01995 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01996.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01996.xml deleted file mode 100644 index e0bd5b40de..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01996.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01996 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01997.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01997.xml deleted file mode 100644 index cc5c17d079..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01997.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01997 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01998.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01998.xml deleted file mode 100644 index 060ce1a3de..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01998.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 01998 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01999.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01999.xml deleted file mode 100644 index 0294bb3f39..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest01999.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 01999 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02000.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02000.xml deleted file mode 100644 index 44a1ebd870..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02000.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02000 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02001.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02001.xml deleted file mode 100644 index f73c6a5111..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02001.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02001 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02002.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02002.xml deleted file mode 100644 index 1b4d2a54ea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02002.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02002 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02003.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02003.xml deleted file mode 100644 index 0548e91857..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02003.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02003 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02004.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02004.xml deleted file mode 100644 index 648f1a92ab..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02004.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02004 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02005.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02005.xml deleted file mode 100644 index 5c986aa7e8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02005.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02005 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02006.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02006.xml deleted file mode 100644 index a6a2a73d1e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02006.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02006 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02007.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02007.xml deleted file mode 100644 index fc43d7110e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02007.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02007 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02008.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02008.xml deleted file mode 100644 index 92cd4c8a72..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02008.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02008 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02009.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02009.xml deleted file mode 100644 index 8486c7d57f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02009.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02009 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02010.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02010.xml deleted file mode 100644 index 64c81c25dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02010.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02010 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02011.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02011.xml deleted file mode 100644 index d5387fc998..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02011.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02011 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02012.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02012.xml deleted file mode 100644 index 20bad041a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02012.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02012 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02013.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02013.xml deleted file mode 100644 index 166096e6ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02013.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02013 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02014.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02014.xml deleted file mode 100644 index ea5d0976bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02014.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02014 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02015.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02015.xml deleted file mode 100644 index 0138127967..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02015.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02015 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02016.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02016.xml deleted file mode 100644 index 0f78102aea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02016.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02016 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02017.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02017.xml deleted file mode 100644 index c2ded197c9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02017.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02017 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02018.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02018.xml deleted file mode 100644 index 01b2107bb4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02018.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02018 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02019.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02019.xml deleted file mode 100644 index 710f4ab621..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02019.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02019 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02020.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02020.xml deleted file mode 100644 index fd73e38173..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02020.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02020 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02021.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02021.xml deleted file mode 100644 index 00719dc013..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02021.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02021 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02022.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02022.xml deleted file mode 100644 index af1d8c1597..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02022.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02022 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02023.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02023.xml deleted file mode 100644 index 609bdfc79c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02023.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02023 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02024.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02024.xml deleted file mode 100644 index 68ca02a0be..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02024.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02024 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02025.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02025.java index 1110a48f83..d29229dfea 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02025.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02025.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -76,12 +75,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02025.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02025.xml deleted file mode 100644 index 5558ee18d6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02025.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02025 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02026.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02026.xml deleted file mode 100644 index c12e781fec..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02026.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02026 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02027.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02027.xml deleted file mode 100644 index 47c4806d59..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02027.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02027 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02028.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02028.xml deleted file mode 100644 index 5691568e16..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02028.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02028 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02029.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02029.xml deleted file mode 100644 index 05efbb536e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02029.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02029 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02030.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02030.xml deleted file mode 100644 index 76e3772876..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02030.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02030 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02031.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02031.xml deleted file mode 100644 index 544d82a34b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02031.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02031 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02032.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02032.xml deleted file mode 100644 index b8d20ca3c3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02032.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02032 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02033.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02033.xml deleted file mode 100644 index 49d56f5db7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02033.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02033 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02034.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02034.xml deleted file mode 100644 index c43a06fd24..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02034.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02034 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02035.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02035.xml deleted file mode 100644 index 78b9715424..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02035.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02035 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02036.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02036.java index 5e33aaf502..138d5f3f3a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02036.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02036.java @@ -79,12 +79,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02036.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02036.xml deleted file mode 100644 index 938530f196..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02036.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02036 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02037.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02037.java index 3c00fbeb7e..363f6fd0c2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02037.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02037.java @@ -79,12 +79,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02037.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02037.xml deleted file mode 100644 index ac644b0f8b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02037.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02037 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02038.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02038.xml deleted file mode 100644 index f1b7335cf3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02038.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02038 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02039.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02039.xml deleted file mode 100644 index 72afbec31a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02039.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02039 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02040.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02040.xml deleted file mode 100644 index abfa817b4e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02040.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02040 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02041.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02041.xml deleted file mode 100644 index f915b022a0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02041.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02041 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02042.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02042.xml deleted file mode 100644 index db0ba7b4b8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02042.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02042 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02043.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02043.xml deleted file mode 100644 index 2b4af98854..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02043.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02043 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02044.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02044.xml deleted file mode 100644 index 3913075fc3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02044.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02044 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02045.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02045.xml deleted file mode 100644 index 2f8ae2002f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02045.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02045 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02046.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02046.xml deleted file mode 100644 index f912b0e3fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02046.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02046 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02047.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02047.xml deleted file mode 100644 index 650ef3e17b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02047.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02047 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02048.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02048.xml deleted file mode 100644 index 6892158099..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02048.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02048 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02049.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02049.xml deleted file mode 100644 index 464ed08e5e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02049.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02049 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02050.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02050.xml deleted file mode 100644 index 62fa5ad20d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02050.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02050 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02051.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02051.xml deleted file mode 100644 index b32dedd9ab..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02051.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02051 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02052.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02052.xml deleted file mode 100644 index bf3f4b1478..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02052.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02052 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02053.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02053.xml deleted file mode 100644 index 434e24ebad..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02053.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02053 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02054.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02054.xml deleted file mode 100644 index 32b503a47f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02054.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02054 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02055.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02055.xml deleted file mode 100644 index 54d11940d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02055.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02055 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02056.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02056.xml deleted file mode 100644 index 2b8e57f1ed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02056.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02056 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02057.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02057.xml deleted file mode 100644 index 0525d84cc2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02057.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02057 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02058.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02058.xml deleted file mode 100644 index 4e0733c369..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02058.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02058 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02059.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02059.xml deleted file mode 100644 index 62f77453eb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02059.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02059 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02060.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02060.xml deleted file mode 100644 index de54afaa24..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02060.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02060 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02061.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02061.xml deleted file mode 100644 index 6aae0a2bb2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02061.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02061 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02062.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02062.xml deleted file mode 100644 index d2e65f1602..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02062.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02062 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02063.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02063.xml deleted file mode 100644 index ea2bbb8357..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02063.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02063 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02064.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02064.xml deleted file mode 100644 index 5ba7984981..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02064.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02064 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02065.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02065.xml deleted file mode 100644 index fe00aad1ae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02065.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02065 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02066.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02066.xml deleted file mode 100644 index dbd350cb1d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02066.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02066 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02067.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02067.xml deleted file mode 100644 index 1bc5e4dba3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02067.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02067 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02068.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02068.xml deleted file mode 100644 index 7754514c36..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02068.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02068 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02069.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02069.xml deleted file mode 100644 index c55cf7327c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02069.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02069 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02070.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02070.xml deleted file mode 100644 index b2252f86eb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02070.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02070 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02071.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02071.xml deleted file mode 100644 index d2acc8cb3a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02071.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02071 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02072.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02072.xml deleted file mode 100644 index 64fad52630..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02072.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02072 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02073.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02073.xml deleted file mode 100644 index 100fc5be5b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02073.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02073 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02074.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02074.xml deleted file mode 100644 index 4121b901db..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02074.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02074 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02075.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02075.xml deleted file mode 100644 index 17f24a5053..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02075.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02075 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02076.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02076.xml deleted file mode 100644 index 1c0f4f57c1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02076.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02076 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02077.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02077.xml deleted file mode 100644 index ba262e0683..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02077.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02077 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02078.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02078.xml deleted file mode 100644 index e5a2f42794..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02078.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02078 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02079.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02079.xml deleted file mode 100644 index b26af88708..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02079.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02079 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02080.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02080.xml deleted file mode 100644 index 8ede64c259..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02080.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02080 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02081.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02081.xml deleted file mode 100644 index e44c2daaf0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02081.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02081 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02082.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02082.xml deleted file mode 100644 index 2898db0b22..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02082.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02082 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02083.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02083.xml deleted file mode 100644 index f8afe4ceee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02083.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02083 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02084.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02084.xml deleted file mode 100644 index 1fb0c571e6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02084.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02084 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02085.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02085.xml deleted file mode 100644 index aacfc2edf0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02085.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02085 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02086.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02086.xml deleted file mode 100644 index d1c45ff55d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02086.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02086 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02087.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02087.java index 41825b6aa8..12e605f6e3 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02087.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02087.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02087.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02087.xml deleted file mode 100644 index f3569d86ed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02087.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02087 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02088.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02088.java index d7221da5d4..54cdfcbdf7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02088.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02088.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02088.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02088.xml deleted file mode 100644 index d2c0761db4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02088.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02088 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02089.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02089.java index a5867c1b73..483b9cb8ba 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02089.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02089.java @@ -68,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02089.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02089.xml deleted file mode 100644 index 01aeb0f903..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02089.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02089 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02090.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02090.xml deleted file mode 100644 index f3472ab5f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02090.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02090 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02091.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02091.xml deleted file mode 100644 index 82ba500f7b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02091.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02091 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02092.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02092.java index 669ee4c7ee..787dcb95db 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02092.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02092.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02092.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02092.xml deleted file mode 100644 index 92e3f37a96..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02092.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02092 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02093.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02093.java index 62bad61b55..64e82e0d9d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02093.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02093.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02093.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02093.xml deleted file mode 100644 index 2d66e14ade..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02093.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02093 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02094.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02094.java index 1bd07a5103..0daa0e0868 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02094.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02094.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02094.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02094.xml deleted file mode 100644 index 52ae7d8883..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02094.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02094 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02095.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02095.java index 9e58f57031..f2feb85159 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02095.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02095.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02095.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02095.xml deleted file mode 100644 index b897474a9c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02095.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02095 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02096.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02096.java index 0b69ffd348..c07c5600ee 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02096.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02096.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02096.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02096.xml deleted file mode 100644 index a48f382aca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02096.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02096 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02097.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02097.java index a34bc2846d..e94404d6e7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02097.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02097.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02097.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02097.xml deleted file mode 100644 index 8cc82735fd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02097.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02097 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02098.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02098.java index 3df3672ee3..a791bc2a9c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02098.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02098.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02098.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02098.xml deleted file mode 100644 index 98fd11aed6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02098.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02098 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02099.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02099.java index c68f1bc582..84af1bc9d0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02099.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02099.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02099.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02099.xml deleted file mode 100644 index 89c7eeaa84..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02099.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02099 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02100.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02100.xml deleted file mode 100644 index cf9adc1b82..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02100.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 02100 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02101.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02101.xml deleted file mode 100644 index 5f3448266d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02101.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02101 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02102.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02102.xml deleted file mode 100644 index 7f35a98609..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02102.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02102 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02103.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02103.xml deleted file mode 100644 index 72e0eae523..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02103.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02103 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02104.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02104.java index 63ddf9e267..b09185de59 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02104.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02104.java @@ -54,7 +54,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -70,12 +69,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02104.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02104.xml deleted file mode 100644 index c2ebd36cbf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02104.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02104 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02105.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02105.xml deleted file mode 100644 index 5bc73be3da..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02105.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02105 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02106.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02106.xml deleted file mode 100644 index 7c444948e1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02106.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02106 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02107.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02107.xml deleted file mode 100644 index a9dcf40d06..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02107.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02107 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02108.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02108.xml deleted file mode 100644 index 8bed466901..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02108.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02108 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02109.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02109.xml deleted file mode 100644 index 4b930acd43..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02109.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02109 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02110.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02110.xml deleted file mode 100644 index 8b8fbcaa1c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02110.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02110 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02111.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02111.xml deleted file mode 100644 index d66adbb51f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02111.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02111 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02112.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02112.xml deleted file mode 100644 index e51c331ff3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02112.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02112 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02113.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02113.xml deleted file mode 100644 index 7fa6906b05..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02113.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02113 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02114.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02114.java index 42e5b58397..70c15b4de9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02114.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02114.java @@ -72,12 +72,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02114.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02114.xml deleted file mode 100644 index 59e79e2340..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02114.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02114 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02115.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02115.java index dbc0bc3d18..7dbbc14329 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02115.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02115.java @@ -72,12 +72,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02115.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02115.xml deleted file mode 100644 index 77c906b0b9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02115.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02115 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02116.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02116.java index a1dc8d7ca1..de0470f123 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02116.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02116.java @@ -72,12 +72,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02116.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02116.xml deleted file mode 100644 index eb3b5219a0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02116.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02116 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02117.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02117.xml deleted file mode 100644 index bfaae64a47..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02117.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02117 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02118.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02118.xml deleted file mode 100644 index ad8625e661..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02118.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02118 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02119.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02119.xml deleted file mode 100644 index cf3f9e5438..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02119.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02119 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02120.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02120.xml deleted file mode 100644 index ea798b757a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02120.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02120 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02121.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02121.xml deleted file mode 100644 index 2285d2688d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02121.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02121 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02122.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02122.xml deleted file mode 100644 index f00936cb27..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02122.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02122 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02123.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02123.xml deleted file mode 100644 index 596dde176c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02123.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02123 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02124.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02124.xml deleted file mode 100644 index e91dcb7e55..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02124.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02124 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02125.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02125.xml deleted file mode 100644 index 6127df1fad..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02125.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02125 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02126.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02126.xml deleted file mode 100644 index 23f620cdf1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02126.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02126 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02127.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02127.xml deleted file mode 100644 index 7dfc7b1fb7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02127.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02127 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02128.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02128.xml deleted file mode 100644 index 8e7b374840..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02128.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02128 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02129.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02129.xml deleted file mode 100644 index 411cc1305e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02129.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02129 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02130.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02130.xml deleted file mode 100644 index b42f0ba243..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02130.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02130 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02131.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02131.xml deleted file mode 100644 index 14fcabf273..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02131.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02131 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02132.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02132.xml deleted file mode 100644 index 831ed6992e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02132.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02132 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02133.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02133.xml deleted file mode 100644 index 80e6a45adf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02133.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02133 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02134.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02134.xml deleted file mode 100644 index 6db8321333..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02134.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02134 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02135.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02135.xml deleted file mode 100644 index 35967e73e7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02135.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02135 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02136.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02136.xml deleted file mode 100644 index 91e0431c07..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02136.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02136 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02137.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02137.xml deleted file mode 100644 index 0bcc29cc31..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02137.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02137 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02138.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02138.xml deleted file mode 100644 index d514064337..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02138.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02138 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02139.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02139.xml deleted file mode 100644 index 547f24beee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02139.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02139 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02140.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02140.xml deleted file mode 100644 index 1d92ae7ee2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02140.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02140 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02141.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02141.xml deleted file mode 100644 index 064334138f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02141.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02141 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02142.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02142.xml deleted file mode 100644 index ac19ea3fcd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02142.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02142 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02143.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02143.xml deleted file mode 100644 index 8d82b2b467..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02143.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02143 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02144.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02144.xml deleted file mode 100644 index bc225473ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02144.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02144 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02145.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02145.xml deleted file mode 100644 index 3d50d61b02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02145.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02145 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02146.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02146.xml deleted file mode 100644 index ea4fa18d9b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02146.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02146 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02147.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02147.xml deleted file mode 100644 index c547f20bb5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02147.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02147 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02148.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02148.xml deleted file mode 100644 index 8368be9a55..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02148.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02148 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02149.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02149.xml deleted file mode 100644 index 533b966c84..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02149.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02149 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02150.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02150.xml deleted file mode 100644 index c00a93922c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02150.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02150 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02151.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02151.xml deleted file mode 100644 index 098d45ccdb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02151.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02151 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02152.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02152.xml deleted file mode 100644 index 87fdb7908d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02152.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02152 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02153.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02153.xml deleted file mode 100644 index 0642302e12..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02153.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02153 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02154.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02154.xml deleted file mode 100644 index 4d8b842859..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02154.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02154 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02155.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02155.xml deleted file mode 100644 index 02f32772fa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02155.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02155 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02156.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02156.xml deleted file mode 100644 index 5d7733eda4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02156.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02156 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02157.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02157.xml deleted file mode 100644 index 3e0e26e8b2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02157.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02157 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02158.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02158.xml deleted file mode 100644 index 6922b7748a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02158.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02158 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02159.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02159.xml deleted file mode 100644 index a7f047aac6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02159.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02159 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02160.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02160.xml deleted file mode 100644 index 7d5d4e4fea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02160.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02160 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02161.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02161.xml deleted file mode 100644 index b9039b719e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02161.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02161 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02162.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02162.xml deleted file mode 100644 index 0e354420b5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02162.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02162 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02163.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02163.xml deleted file mode 100644 index b859ee0994..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02163.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02163 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02164.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02164.xml deleted file mode 100644 index e20affab5e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02164.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02164 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02165.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02165.xml deleted file mode 100644 index 90b8062d9a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02165.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02165 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02166.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02166.xml deleted file mode 100644 index 387ba75160..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02166.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02166 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02167.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02167.xml deleted file mode 100644 index 97792518e5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02167.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02167 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02168.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02168.xml deleted file mode 100644 index 9a6e9dff5c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02168.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02168 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02169.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02169.java index 0e7ff768c7..e18177ba28 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02169.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02169.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02169.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02169.xml deleted file mode 100644 index c480a53c73..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02169.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02169 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02170.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02170.java index 04587551cd..4452d42965 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02170.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02170.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02170.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02170.xml deleted file mode 100644 index 1497454e6f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02170.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02170 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02171.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02171.java index 5456ea5f8d..096885dfd4 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02171.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02171.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02171.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02171.xml deleted file mode 100644 index 7504165dc6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02171.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02171 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02172.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02172.java index aeeee038af..0dd376de20 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02172.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02172.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02172.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02172.xml deleted file mode 100644 index 33b2626d6b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02172.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02172 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02173.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02173.java index e26a2f320a..f1501635db 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02173.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02173.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02173.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02173.xml deleted file mode 100644 index 690b2d83a1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02173.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02173 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02174.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02174.xml deleted file mode 100644 index ee97886efc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02174.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02174 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02175.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02175.xml deleted file mode 100644 index 9390488a53..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02175.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02175 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02176.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02176.xml deleted file mode 100644 index c8dc9b503a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02176.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02176 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02177.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02177.xml deleted file mode 100644 index 4982bef354..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02177.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02177 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02178.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02178.java index 9fb366b9fb..7c6b42c11c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02178.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02178.java @@ -46,19 +46,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -68,7 +66,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02178.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02178.xml deleted file mode 100644 index 5b18cf92d7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02178.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02178 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02179.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02179.xml deleted file mode 100644 index a657a766b8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02179.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02179 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02180.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02180.xml deleted file mode 100644 index 8e5f656d39..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02180.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02180 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02181.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02181.java index 15b365ce9e..44b38d4489 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02181.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02181.java @@ -52,10 +52,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02181.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02181.xml deleted file mode 100644 index 89a3dfc2a9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02181.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02181 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02182.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02182.java index f2e08c96a0..63b7d64f79 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02182.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02182.java @@ -52,10 +52,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02182.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02182.xml deleted file mode 100644 index 130dc58bed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02182.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02182 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02183.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02183.java index 4d2a03d951..f7cfcf326e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02183.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02183.java @@ -53,10 +53,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02183.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02183.xml deleted file mode 100644 index 2804458902..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02183.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02183 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02184.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02184.java index 440e540174..7fd177e23a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02184.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02184.java @@ -51,7 +51,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -61,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02184.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02184.xml deleted file mode 100644 index 42de8815bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02184.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02184 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02185.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02185.java index 4deedfcbeb..8e84bd8f3e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02185.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02185.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02185.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02185.xml deleted file mode 100644 index 72c13e2c3d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02185.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02185 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02186.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02186.java index 2585b309c0..df4713f108 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02186.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02186.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02186.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02186.xml deleted file mode 100644 index 251be1061f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02186.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02186 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02187.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02187.java index 6333aeed5f..020dca3bc5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02187.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02187.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02187.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02187.xml deleted file mode 100644 index d4b3cd2aa8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02187.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02187 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02188.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02188.java index ff72471884..1eba6b944d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02188.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02188.java @@ -55,7 +55,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02188.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02188.xml deleted file mode 100644 index e21a7ef347..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02188.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02188 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02189.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02189.xml deleted file mode 100644 index 20b01cb8a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02189.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 02189 - true - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02190.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02190.xml deleted file mode 100644 index b5e13ce59e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02190.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02190 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02191.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02191.xml deleted file mode 100644 index f13fd65d8f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02191.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02191 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02192.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02192.xml deleted file mode 100644 index c2d8e02951..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02192.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02192 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02193.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02193.xml deleted file mode 100644 index d3f56672b5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02193.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02193 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02194.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02194.xml deleted file mode 100644 index 2561240c30..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02194.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02194 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02195.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02195.xml deleted file mode 100644 index a3af972859..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02195.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02195 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02196.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02196.java index de20630555..19cded3053 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02196.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02196.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -73,12 +72,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02196.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02196.xml deleted file mode 100644 index 7b1c05c6a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02196.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02196 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02197.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02197.xml deleted file mode 100644 index cb9dffe9ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02197.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02197 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02198.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02198.xml deleted file mode 100644 index b8517be443..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02198.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02198 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02199.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02199.xml deleted file mode 100644 index ad9f49df40..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02199.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02199 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02200.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02200.xml deleted file mode 100644 index f96c40c82b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02200.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02200 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02201.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02201.xml deleted file mode 100644 index 5134824288..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02201.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02201 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02202.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02202.xml deleted file mode 100644 index cffbc89c42..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02202.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02202 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02203.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02203.xml deleted file mode 100644 index 50a33abc63..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02203.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02203 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02204.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02204.xml deleted file mode 100644 index d2fcef127a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02204.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02204 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02205.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02205.xml deleted file mode 100644 index 015475aec9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02205.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02205 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02206.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02206.xml deleted file mode 100644 index 8e71cbc040..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02206.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02206 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02207.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02207.xml deleted file mode 100644 index 01ace36d3f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02207.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02207 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02208.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02208.java index 525ff4177c..40a88d4e35 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02208.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02208.java @@ -76,12 +76,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02208.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02208.xml deleted file mode 100644 index 45f2b779bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02208.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02208 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02209.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02209.xml deleted file mode 100644 index ce2b8d19b7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02209.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02209 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02210.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02210.xml deleted file mode 100644 index 701fd40dec..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02210.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02210 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02211.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02211.xml deleted file mode 100644 index ba3ee4d04c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02211.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02211 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02212.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02212.xml deleted file mode 100644 index 16e1966da9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02212.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02212 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02213.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02213.xml deleted file mode 100644 index 06aa19a431..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02213.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02213 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02214.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02214.xml deleted file mode 100644 index 8ed428d233..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02214.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02214 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02215.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02215.xml deleted file mode 100644 index ce2e60be67..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02215.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02215 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02216.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02216.xml deleted file mode 100644 index 0498dd4a9f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02216.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02216 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02217.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02217.xml deleted file mode 100644 index 848e738e61..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02217.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02217 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02218.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02218.xml deleted file mode 100644 index 38f1efe3a1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02218.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02218 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02219.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02219.xml deleted file mode 100644 index 7fd528c789..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02219.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02219 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02220.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02220.xml deleted file mode 100644 index abbaa03f62..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02220.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02220 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02221.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02221.xml deleted file mode 100644 index c02f5e0049..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02221.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02221 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02222.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02222.xml deleted file mode 100644 index 6d8d9162ed..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02222.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02222 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02223.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02223.xml deleted file mode 100644 index 1806fde6e7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02223.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02223 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02224.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02224.xml deleted file mode 100644 index fff639ddd6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02224.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02224 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02225.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02225.xml deleted file mode 100644 index edba65ec80..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02225.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02225 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02226.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02226.xml deleted file mode 100644 index f1c24c4d1c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02226.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02226 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02227.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02227.xml deleted file mode 100644 index d0e7f96067..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02227.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02227 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02228.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02228.xml deleted file mode 100644 index c20be9174f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02228.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02228 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02229.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02229.xml deleted file mode 100644 index baaf9b6ec2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02229.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02229 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02230.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02230.xml deleted file mode 100644 index a604faa449..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02230.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02230 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02231.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02231.xml deleted file mode 100644 index b949b2fc25..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02231.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02231 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02232.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02232.xml deleted file mode 100644 index 74ea325d5c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02232.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02232 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02233.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02233.xml deleted file mode 100644 index 89c7266de8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02233.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02233 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02234.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02234.xml deleted file mode 100644 index b631b9d48d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02234.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02234 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02235.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02235.xml deleted file mode 100644 index 16be7f0b26..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02235.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02235 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02236.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02236.xml deleted file mode 100644 index 41999b0dae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02236.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02236 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02237.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02237.xml deleted file mode 100644 index 5307063d50..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02237.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02237 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02238.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02238.xml deleted file mode 100644 index d0e64a9e1d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02238.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02238 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02239.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02239.xml deleted file mode 100644 index 8abc2e9847..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02239.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02239 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02240.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02240.xml deleted file mode 100644 index 81e189ead0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02240.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02240 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02241.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02241.xml deleted file mode 100644 index e80ff6e7d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02241.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02241 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02242.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02242.xml deleted file mode 100644 index 7713c3e18a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02242.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02242 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02243.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02243.xml deleted file mode 100644 index 5890516d5d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02243.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02243 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02244.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02244.xml deleted file mode 100644 index 44638fa964..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02244.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02244 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02245.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02245.xml deleted file mode 100644 index bb87d99fa2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02245.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02245 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02246.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02246.xml deleted file mode 100644 index f93a24367c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02246.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02246 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02247.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02247.xml deleted file mode 100644 index 375a6983d3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02247.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02247 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02248.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02248.xml deleted file mode 100644 index 480debe4ca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02248.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02248 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02249.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02249.xml deleted file mode 100644 index c5254217bf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02249.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02249 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02250.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02250.xml deleted file mode 100644 index 2c0db72c00..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02250.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02250 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02251.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02251.xml deleted file mode 100644 index e481a51ca9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02251.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02251 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02252.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02252.xml deleted file mode 100644 index c270a8c811..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02252.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02252 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02253.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02253.xml deleted file mode 100644 index 9d5693657e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02253.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02253 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02254.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02254.xml deleted file mode 100644 index 113e40773a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02254.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02254 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02255.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02255.xml deleted file mode 100644 index e5b281e186..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02255.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02255 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02256.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02256.xml deleted file mode 100644 index 006581db6b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02256.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02256 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02257.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02257.xml deleted file mode 100644 index c752f55449..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02257.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02257 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02258.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02258.xml deleted file mode 100644 index 9453f6aa55..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02258.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02258 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02259.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02259.xml deleted file mode 100644 index f32d3c6b65..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02259.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02259 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02260.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02260.xml deleted file mode 100644 index 25bbbde5b1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02260.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02260 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02261.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02261.xml deleted file mode 100644 index 82caa6cdc3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02261.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02261 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02262.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02262.xml deleted file mode 100644 index f2d4eea54b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02262.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02262 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02263.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02263.xml deleted file mode 100644 index e7951da275..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02263.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02263 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02264.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02264.java index ae2d93b9a2..19bf7f9a62 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02264.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02264.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02264.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02264.xml deleted file mode 100644 index 99c74701c8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02264.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02264 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02265.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02265.java index 01b61fe001..897ae7658a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02265.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02265.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02265.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02265.xml deleted file mode 100644 index b7ba88fce0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02265.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02265 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02266.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02266.java index e43009b443..ecbd4a0505 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02266.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02266.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02266.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02266.xml deleted file mode 100644 index ed56e60ffe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02266.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02266 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02267.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02267.java index 5f87994cb9..e28db5b51e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02267.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02267.java @@ -61,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02267.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02267.xml deleted file mode 100644 index 02a8a48ffb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02267.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02267 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02268.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02268.java index 515184a326..999fd2a248 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02268.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02268.java @@ -66,7 +66,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02268.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02268.xml deleted file mode 100644 index 85ce8b20c6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02268.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02268 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02269.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02269.java index b90b184768..5e3d618e0b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02269.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02269.java @@ -66,7 +66,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02269.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02269.xml deleted file mode 100644 index 7d0f8da0ff..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02269.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02269 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02270.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02270.java index d11e5ede3e..74d5d4785f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02270.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02270.java @@ -66,7 +66,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02270.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02270.xml deleted file mode 100644 index 1872088f4c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02270.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02270 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02271.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02271.java index 1b90bd2cc9..e5fba316e8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02271.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02271.java @@ -62,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02271.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02271.xml deleted file mode 100644 index 71165c0628..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02271.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02271 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02272.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02272.xml deleted file mode 100644 index 3074abba66..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02272.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02272 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02273.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02273.xml deleted file mode 100644 index e043568b2d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02273.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02273 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02274.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02274.xml deleted file mode 100644 index a2da86e391..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02274.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02274 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02275.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02275.java index d9c2334a7c..0fc0dbb5f1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02275.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02275.java @@ -50,6 +50,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -57,7 +58,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02275.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02275.xml deleted file mode 100644 index 77a0a4db78..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02275.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02275 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02276.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02276.java index a36ec164fa..22f057916e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02276.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02276.java @@ -50,6 +50,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT userid from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { // int results = // org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForInt(sql); @@ -57,7 +58,7 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForObject( sql, Integer.class); response.getWriter().println("Your results are: " + results); - // System.out.println("Your results are: " + results); + } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02276.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02276.xml deleted file mode 100644 index 3c27db5f94..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02276.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02276 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02277.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02277.java index b67c129989..4cafaf52b5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02277.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02277.java @@ -50,19 +50,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -72,7 +70,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02277.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02277.xml deleted file mode 100644 index e5ff3aa5fc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02277.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02277 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02278.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02278.xml deleted file mode 100644 index 1646edaa15..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02278.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02278 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02279.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02279.xml deleted file mode 100644 index efdccd7fa2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02279.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02279 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02280.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02280.xml deleted file mode 100644 index d4aa09a45e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02280.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02280 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02281.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02281.java index 7c5807700b..39454692a2 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02281.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02281.java @@ -56,10 +56,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02281.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02281.xml deleted file mode 100644 index 73b8558a1d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02281.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02281 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02282.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02282.xml deleted file mode 100644 index b49db6faaf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02282.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02282 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02283.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02283.java index 706b073704..489bfed41e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02283.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02283.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02283.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02283.xml deleted file mode 100644 index d15c9ca03d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02283.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02283 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02284.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02284.java index 780d760191..f0e3156355 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02284.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02284.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02284.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02284.xml deleted file mode 100644 index 5f60660939..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02284.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02284 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02285.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02285.java index 5526d425eb..97257ddf33 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02285.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02285.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02285.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02285.xml deleted file mode 100644 index 1199b60427..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02285.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02285 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02286.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02286.java index beb83e124a..16e2bb77a0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02286.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02286.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02286.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02286.xml deleted file mode 100644 index 6161834a1f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02286.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02286 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02287.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02287.java index a32f27fbae..88885f4139 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02287.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02287.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02287.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02287.xml deleted file mode 100644 index 5997d6e2f1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02287.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02287 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02288.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02288.java index 2a71006a55..5a6e8022ad 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02288.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02288.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02288.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02288.xml deleted file mode 100644 index b8a150801d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02288.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02288 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02289.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02289.xml deleted file mode 100644 index 8249f9a08e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02289.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02289 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02290.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02290.xml deleted file mode 100644 index 584fa061e6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02290.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02290 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02291.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02291.xml deleted file mode 100644 index 9f7f77e94a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02291.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02291 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02292.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02292.xml deleted file mode 100644 index 3fe3462caa..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02292.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02292 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02293.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02293.xml deleted file mode 100644 index 7d0dbde55c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02293.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02293 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02294.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02294.xml deleted file mode 100644 index 51a4f6e9d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02294.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02294 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02295.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02295.xml deleted file mode 100644 index 6b5af680c5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02295.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02295 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02296.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02296.xml deleted file mode 100644 index 55dab29cb4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02296.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02296 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02297.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02297.xml deleted file mode 100644 index f1483c6609..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02297.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02297 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02298.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02298.xml deleted file mode 100644 index 86a29bf9a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02298.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02298 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02299.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02299.java index 2522d0ae52..bff7443c91 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02299.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02299.java @@ -67,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) javax.naming.directory.SearchControls sc = new javax.naming.directory.SearchControls(); sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person)(uid=" + bar + "))"; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, sc); @@ -83,12 +82,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02299.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02299.xml deleted file mode 100644 index d74bd66311..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02299.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02299 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02300.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02300.xml deleted file mode 100644 index 07be452280..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02300.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02300 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02301.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02301.xml deleted file mode 100644 index 51a5850b14..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02301.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02301 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02302.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02302.xml deleted file mode 100644 index 59ebc79c81..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02302.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02302 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02303.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02303.xml deleted file mode 100644 index 3b026b8c25..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02303.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02303 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02304.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02304.xml deleted file mode 100644 index f9279ed64a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02304.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02304 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02305.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02305.java index 7601ee638c..85c1aa4a43 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02305.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02305.java @@ -86,12 +86,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02305.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02305.xml deleted file mode 100644 index f88a7fae6f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02305.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02305 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02306.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02306.java index 1d825bed3d..93e649818a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02306.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02306.java @@ -86,12 +86,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02306.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02306.xml deleted file mode 100644 index 61bd2c6e8d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02306.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02306 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02307.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02307.xml deleted file mode 100644 index 60e3cab53a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02307.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02307 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02308.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02308.xml deleted file mode 100644 index 65de6d7a88..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02308.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02308 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02309.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02309.xml deleted file mode 100644 index 4ec4c57c7f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02309.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02309 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02310.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02310.xml deleted file mode 100644 index 9a55eb4723..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02310.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02310 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02311.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02311.xml deleted file mode 100644 index 78aff84ff1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02311.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02311 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02312.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02312.xml deleted file mode 100644 index e0387ec3d0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02312.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02312 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02313.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02313.xml deleted file mode 100644 index e257382138..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02313.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02313 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02314.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02314.xml deleted file mode 100644 index bfb2562a2a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02314.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02314 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02315.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02315.xml deleted file mode 100644 index 5cfb0d3551..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02315.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02315 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02316.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02316.xml deleted file mode 100644 index 86c144009b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02316.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02316 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02317.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02317.xml deleted file mode 100644 index 5d4d6e513d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02317.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02317 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02318.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02318.xml deleted file mode 100644 index 33494777e9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02318.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02318 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02319.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02319.xml deleted file mode 100644 index ad18d2570c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02319.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02319 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02320.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02320.xml deleted file mode 100644 index 9254ebf357..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02320.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02320 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02321.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02321.xml deleted file mode 100644 index 1e40d5f067..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02321.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02321 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02322.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02322.xml deleted file mode 100644 index bb6dd7fa12..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02322.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02322 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02323.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02323.xml deleted file mode 100644 index baccd0a1fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02323.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02323 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02324.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02324.xml deleted file mode 100644 index b176011c4f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02324.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02324 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02325.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02325.xml deleted file mode 100644 index 48fdcb78ce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02325.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02325 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02326.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02326.xml deleted file mode 100644 index 04648cff5c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02326.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02326 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02327.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02327.xml deleted file mode 100644 index 5dd50771b8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02327.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02327 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02328.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02328.xml deleted file mode 100644 index 973c2b03c8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02328.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02328 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02329.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02329.xml deleted file mode 100644 index 3655568969..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02329.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02329 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02330.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02330.xml deleted file mode 100644 index bc029fc898..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02330.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02330 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02331.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02331.xml deleted file mode 100644 index b543a49a74..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02331.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02331 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02332.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02332.xml deleted file mode 100644 index e1b9d48cbf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02332.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02332 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02333.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02333.xml deleted file mode 100644 index 5b3013996b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02333.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02333 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02334.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02334.xml deleted file mode 100644 index 3f7517a3e3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02334.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02334 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02335.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02335.xml deleted file mode 100644 index c4b64869c4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02335.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02335 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02336.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02336.xml deleted file mode 100644 index 0d9f32b5d1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02336.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02336 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02337.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02337.xml deleted file mode 100644 index 6e7900b7a1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02337.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02337 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02338.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02338.xml deleted file mode 100644 index 601cce5473..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02338.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02338 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02339.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02339.xml deleted file mode 100644 index e109ecaa8c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02339.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02339 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02340.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02340.xml deleted file mode 100644 index 556127b5b3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02340.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02340 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02341.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02341.xml deleted file mode 100644 index e9a492c040..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02341.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02341 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02342.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02342.xml deleted file mode 100644 index 892677993e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02342.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02342 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02343.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02343.xml deleted file mode 100644 index 9c270bc271..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02343.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02343 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02344.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02344.xml deleted file mode 100644 index 64c4986d36..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02344.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02344 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02345.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02345.xml deleted file mode 100644 index a20e153ab3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02345.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02345 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02346.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02346.xml deleted file mode 100644 index 83c4851d80..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02346.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02346 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02347.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02347.xml deleted file mode 100644 index 9f22a4ce28..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02347.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02347 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02348.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02348.xml deleted file mode 100644 index 3cd8936422..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02348.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02348 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02349.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02349.xml deleted file mode 100644 index 8805066bf8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02349.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02349 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02350.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02350.xml deleted file mode 100644 index b296aa08a5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02350.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02350 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02351.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02351.xml deleted file mode 100644 index 82b39d711d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02351.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02351 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02352.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02352.xml deleted file mode 100644 index fa8abc3d75..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02352.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02352 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02353.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02353.java index 2e8bb2bfd1..3014bff9ea 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02353.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02353.java @@ -72,7 +72,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02353.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02353.xml deleted file mode 100644 index a579cf661c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02353.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02353 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02354.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02354.java index 37184ef31a..568c020f45 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02354.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02354.java @@ -72,7 +72,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02354.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02354.xml deleted file mode 100644 index 1c0bd11620..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02354.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02354 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02355.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02355.java index 18b0317f61..6bd030631d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02355.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02355.java @@ -72,7 +72,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02355.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02355.xml deleted file mode 100644 index c01605d9f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02355.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02355 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02356.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02356.xml deleted file mode 100644 index b3bd203e71..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02356.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02356 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02357.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02357.xml deleted file mode 100644 index 4f65974a52..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02357.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02357 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02358.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02358.java index fbd6824e6a..dc0a691332 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02358.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02358.java @@ -60,19 +60,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -82,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02358.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02358.xml deleted file mode 100644 index c92635d4ae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02358.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02358 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02359.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02359.xml deleted file mode 100644 index 97a01fe113..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02359.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02359 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02360.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02360.xml deleted file mode 100644 index a2f6e49f6c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02360.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02360 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02361.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02361.java index 9b859c7642..c540dddf96 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02361.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02361.java @@ -67,10 +67,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02361.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02361.xml deleted file mode 100644 index 03a6ec9f4e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02361.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02361 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02362.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02362.java index e577df2c58..793778df04 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02362.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02362.java @@ -65,7 +65,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -75,7 +74,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02362.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02362.xml deleted file mode 100644 index e79e47fb08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02362.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02362 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02363.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02363.xml deleted file mode 100644 index c3ee866ea8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02363.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02363 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02364.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02364.java index 7d20f7c835..e8b1a1efd8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02364.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02364.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02364.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02364.xml deleted file mode 100644 index f3f2951699..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02364.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02364 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02365.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02365.java index 904701a2e6..6aeff40f01 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02365.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02365.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02365.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02365.xml deleted file mode 100644 index 0669392dd7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02365.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02365 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02366.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02366.java index 5e1715ab4d..d395f54151 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02366.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02366.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02366.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02366.xml deleted file mode 100644 index 5c81c2f1f4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02366.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02366 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02367.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02367.java index 3cf526b435..e644e63f58 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02367.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02367.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02367.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02367.xml deleted file mode 100644 index 7858d468cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02367.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02367 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02368.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02368.java index 2a33327b13..83c0913242 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02368.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02368.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02368.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02368.xml deleted file mode 100644 index e25263eb91..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02368.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02368 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02369.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02369.java index 982b944920..9a1379818a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02369.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02369.java @@ -69,7 +69,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02369.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02369.xml deleted file mode 100644 index 2df5a268e8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02369.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02369 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02370.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02370.xml deleted file mode 100644 index c82b6db3a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02370.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 02370 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02371.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02371.xml deleted file mode 100644 index 6e89910472..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02371.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02371 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02372.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02372.xml deleted file mode 100644 index 65fc16175f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02372.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02372 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02373.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02373.xml deleted file mode 100644 index 9fde19b6e7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02373.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02373 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02374.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02374.xml deleted file mode 100644 index d4d21e1e8a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02374.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02374 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02375.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02375.xml deleted file mode 100644 index 49b11c3f8c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02375.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02375 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02376.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02376.java index c8ae44ef01..1605328aaa 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02376.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02376.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -72,12 +71,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02376.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02376.xml deleted file mode 100644 index 66728be39b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02376.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02376 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02377.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02377.xml deleted file mode 100644 index 17c8a49c3d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02377.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02377 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02378.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02378.xml deleted file mode 100644 index b35f83d0c8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02378.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02378 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02379.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02379.xml deleted file mode 100644 index 85ce70d986..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02379.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02379 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02380.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02380.xml deleted file mode 100644 index afc52c082b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02380.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02380 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02381.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02381.xml deleted file mode 100644 index 906eb2bf47..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02381.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02381 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02382.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02382.xml deleted file mode 100644 index 8d180d49c1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02382.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02382 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02383.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02383.xml deleted file mode 100644 index b7391ef82c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02383.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02383 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02384.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02384.java index d6740554c5..38d5b15e8b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02384.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02384.java @@ -74,12 +74,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02384.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02384.xml deleted file mode 100644 index dea6233389..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02384.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02384 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02385.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02385.xml deleted file mode 100644 index 94f0104db8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02385.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02385 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02386.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02386.xml deleted file mode 100644 index 4dec142a11..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02386.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02386 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02387.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02387.xml deleted file mode 100644 index 762d58105c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02387.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02387 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02388.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02388.xml deleted file mode 100644 index 360c6536d9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02388.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02388 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02389.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02389.xml deleted file mode 100644 index 455a10160b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02389.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02389 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02390.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02390.xml deleted file mode 100644 index 96ee5b6dd6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02390.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02390 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02391.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02391.xml deleted file mode 100644 index c51557a8b1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02391.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02391 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02392.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02392.xml deleted file mode 100644 index d71b3e81ca..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02392.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02392 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02393.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02393.xml deleted file mode 100644 index 3bf9717366..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02393.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02393 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02394.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02394.xml deleted file mode 100644 index 6a537d4f48..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02394.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02394 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02395.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02395.xml deleted file mode 100644 index b612f27489..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02395.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02395 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02396.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02396.xml deleted file mode 100644 index abce64a250..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02396.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02396 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02397.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02397.xml deleted file mode 100644 index 05a5c1075a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02397.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02397 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02398.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02398.xml deleted file mode 100644 index 8960cad86c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02398.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02398 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02399.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02399.xml deleted file mode 100644 index d253084685..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02399.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02399 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02400.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02400.xml deleted file mode 100644 index b1a478c4d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02400.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02400 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02401.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02401.xml deleted file mode 100644 index 19c9980a01..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02401.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02401 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02402.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02402.xml deleted file mode 100644 index df33b9fce5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02402.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02402 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02403.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02403.xml deleted file mode 100644 index 03373f6671..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02403.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02403 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02404.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02404.xml deleted file mode 100644 index 40ba60a56b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02404.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02404 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02405.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02405.xml deleted file mode 100644 index e461f6f9c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02405.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02405 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02406.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02406.xml deleted file mode 100644 index d51ee49d78..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02406.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02406 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02407.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02407.xml deleted file mode 100644 index 38cbcba0be..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02407.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02407 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02408.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02408.xml deleted file mode 100644 index 41a1aabebf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02408.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02408 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02409.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02409.xml deleted file mode 100644 index a6dfabb386..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02409.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02409 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02410.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02410.xml deleted file mode 100644 index c9080a4632..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02410.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02410 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02411.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02411.xml deleted file mode 100644 index 668da60279..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02411.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02411 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02412.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02412.xml deleted file mode 100644 index 10bebfed88..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02412.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02412 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02413.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02413.xml deleted file mode 100644 index 250f133eef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02413.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02413 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02414.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02414.xml deleted file mode 100644 index 78ffe9a1fc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02414.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02414 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02415.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02415.xml deleted file mode 100644 index 512cc1036a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02415.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02415 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02416.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02416.xml deleted file mode 100644 index c3cda90353..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02416.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02416 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02417.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02417.xml deleted file mode 100644 index 4c64c6a0fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02417.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02417 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02418.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02418.xml deleted file mode 100644 index f0515e0f56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02418.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02418 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02419.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02419.xml deleted file mode 100644 index 5882d4710a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02419.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02419 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02420.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02420.xml deleted file mode 100644 index c7242b06ff..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02420.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02420 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02421.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02421.xml deleted file mode 100644 index 5b9ee7a06f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02421.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02421 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02422.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02422.xml deleted file mode 100644 index 314d25ac18..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02422.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02422 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02423.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02423.xml deleted file mode 100644 index 9434aac27f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02423.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02423 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02424.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02424.xml deleted file mode 100644 index e250297b58..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02424.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02424 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02425.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02425.xml deleted file mode 100644 index 025ee6bcfd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02425.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02425 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02426.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02426.xml deleted file mode 100644 index 6545431976..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02426.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02426 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02427.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02427.xml deleted file mode 100644 index db836b056c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02427.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02427 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02428.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02428.xml deleted file mode 100644 index 9e8b9fdbd8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02428.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02428 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02429.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02429.xml deleted file mode 100644 index 9ea8a7d9d5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02429.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02429 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02430.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02430.xml deleted file mode 100644 index fe396cae9a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02430.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02430 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02431.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02431.xml deleted file mode 100644 index 877d646831..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02431.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02431 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02432.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02432.xml deleted file mode 100644 index 75e0edfd8c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02432.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02432 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02433.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02433.xml deleted file mode 100644 index b7d7e04408..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02433.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02433 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02434.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02434.xml deleted file mode 100644 index 738c9e3f36..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02434.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02434 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02435.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02435.xml deleted file mode 100644 index 913abaf1f8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02435.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02435 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02436.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02436.xml deleted file mode 100644 index 2e4055494a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02436.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02436 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02437.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02437.xml deleted file mode 100644 index 86164efbfd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02437.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02437 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02438.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02438.xml deleted file mode 100644 index 98782b7e4b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02438.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02438 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02439.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02439.xml deleted file mode 100644 index 7441786cc8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02439.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02439 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02440.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02440.xml deleted file mode 100644 index 4df6a3cb71..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02440.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02440 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02441.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02441.xml deleted file mode 100644 index 60a7789699..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02441.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02441 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02442.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02442.xml deleted file mode 100644 index 4e9869c750..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02442.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02442 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02443.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02443.xml deleted file mode 100644 index 274b5545fd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02443.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02443 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02444.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02444.xml deleted file mode 100644 index 8d5106844b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02444.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02444 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02445.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02445.xml deleted file mode 100644 index 7f27b2b37c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02445.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02445 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02446.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02446.xml deleted file mode 100644 index f572073f17..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02446.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02446 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02447.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02447.xml deleted file mode 100644 index 4eadd8ae3f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02447.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02447 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02448.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02448.xml deleted file mode 100644 index 7a41d9e75f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02448.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02448 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02449.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02449.java index c2e222c302..33aecfca88 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02449.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02449.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02449.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02449.xml deleted file mode 100644 index 1cb548751e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02449.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02449 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02450.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02450.java index dfe1e414ba..cbd356eb62 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02450.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02450.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02450.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02450.xml deleted file mode 100644 index 516cc3dd34..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02450.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02450 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02451.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02451.xml deleted file mode 100644 index 5765eb5d19..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02451.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02451 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02452.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02452.java index 5aab2d2441..31b7efa994 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02452.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02452.java @@ -48,19 +48,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -70,7 +68,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02452.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02452.xml deleted file mode 100644 index a11e2684bd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02452.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02452 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02453.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02453.java index cb34a8382e..e6af487f0d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02453.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02453.java @@ -54,10 +54,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02453.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02453.xml deleted file mode 100644 index fe91708c1f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02453.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02453 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02454.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02454.java index 69d1bbba6c..cb3a217c8a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02454.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02454.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02454.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02454.xml deleted file mode 100644 index f0510a7115..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02454.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02454 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02455.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02455.java index bcdb016a48..c46071027b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02455.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02455.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02455.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02455.xml deleted file mode 100644 index 17f65c62c5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02455.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02455 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02456.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02456.java index bfdbb132da..a65d4fa63f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02456.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02456.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02456.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02456.xml deleted file mode 100644 index 3fb398d1bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02456.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02456 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02457.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02457.xml deleted file mode 100644 index 58d3a70a3f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02457.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xpathi - 02457 - false - 643 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02458.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02458.xml deleted file mode 100644 index f7892c4fc6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02458.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02458 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02459.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02459.xml deleted file mode 100644 index 2d17ee841d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02459.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02459 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02460.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02460.xml deleted file mode 100644 index ab99ba0b6b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02460.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02460 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02461.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02461.xml deleted file mode 100644 index b79c8924f7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02461.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02461 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02462.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02462.xml deleted file mode 100644 index ebd0ae5a0e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02462.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02462 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02463.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02463.xml deleted file mode 100644 index 94765292e7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02463.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02463 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02464.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02464.xml deleted file mode 100644 index d6fd304c1a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02464.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02464 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02465.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02465.xml deleted file mode 100644 index ed7c2de859..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02465.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02465 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02466.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02466.xml deleted file mode 100644 index fc9351fa7c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02466.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02466 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02467.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02467.xml deleted file mode 100644 index f7b2d56761..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02467.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02467 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02468.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02468.xml deleted file mode 100644 index fdd422afa0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02468.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02468 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02469.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02469.xml deleted file mode 100644 index f0ad434588..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02469.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02469 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02470.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02470.xml deleted file mode 100644 index d4f5d79b15..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02470.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02470 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02471.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02471.xml deleted file mode 100644 index 08182fce80..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02471.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02471 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02472.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02472.java index c36b457587..11d8f218ae 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02472.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02472.java @@ -74,12 +74,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02472.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02472.xml deleted file mode 100644 index 785ea1e1d9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02472.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02472 - true - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02473.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02473.xml deleted file mode 100644 index 23b9166801..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02473.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02473 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02474.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02474.xml deleted file mode 100644 index baf9fe563a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02474.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02474 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02475.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02475.xml deleted file mode 100644 index 56d50870e7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02475.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02475 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02476.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02476.xml deleted file mode 100644 index f0d4051c6c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02476.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02476 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02477.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02477.xml deleted file mode 100644 index 428ba209d8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02477.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02477 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02478.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02478.xml deleted file mode 100644 index 39636ab492..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02478.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02478 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02479.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02479.xml deleted file mode 100644 index d1399a9747..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02479.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02479 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02480.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02480.xml deleted file mode 100644 index 3b72f8b650..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02480.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02480 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02481.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02481.xml deleted file mode 100644 index 43237f2fb4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02481.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02481 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02482.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02482.xml deleted file mode 100644 index e57b8a0725..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02482.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02482 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02483.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02483.xml deleted file mode 100644 index 3a28d81502..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02483.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02483 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02484.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02484.xml deleted file mode 100644 index 6127c89111..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02484.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02484 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02485.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02485.xml deleted file mode 100644 index d40237b885..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02485.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02485 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02486.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02486.xml deleted file mode 100644 index 4b473b2c1d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02486.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02486 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02487.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02487.xml deleted file mode 100644 index 84ae61e5fb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02487.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02487 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02488.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02488.xml deleted file mode 100644 index 3fb721afbc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02488.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02488 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02489.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02489.xml deleted file mode 100644 index 659fa6d3dd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02489.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02489 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02490.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02490.xml deleted file mode 100644 index bb5b378936..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02490.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02490 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02491.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02491.xml deleted file mode 100644 index 8d3d9b7c0e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02491.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02491 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02492.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02492.xml deleted file mode 100644 index 5623aaea2c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02492.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02492 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02493.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02493.xml deleted file mode 100644 index f3b0ff9d52..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02493.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02493 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02494.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02494.xml deleted file mode 100644 index 82cf669f7f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02494.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02494 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02495.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02495.xml deleted file mode 100644 index aeff237c43..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02495.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02495 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02496.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02496.xml deleted file mode 100644 index d5d4bc3711..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02496.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02496 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02497.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02497.xml deleted file mode 100644 index c8160f7cec..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02497.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02497 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02498.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02498.xml deleted file mode 100644 index 8920822ec6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02498.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02498 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02499.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02499.xml deleted file mode 100644 index 0313cf1302..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02499.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02499 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02500.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02500.xml deleted file mode 100644 index 413b26e4a3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02500.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02500 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02501.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02501.xml deleted file mode 100644 index 89a359d713..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02501.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02501 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02502.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02502.xml deleted file mode 100644 index 1ec8a59b3d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02502.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02502 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02503.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02503.xml deleted file mode 100644 index 0c14b0164e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02503.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02503 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02504.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02504.xml deleted file mode 100644 index f89630e36b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02504.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02504 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02505.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02505.xml deleted file mode 100644 index 46cbc86d76..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02505.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02505 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02506.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02506.xml deleted file mode 100644 index 5535ae8f6d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02506.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02506 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02507.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02507.xml deleted file mode 100644 index eb10bdbc85..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02507.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02507 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02508.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02508.xml deleted file mode 100644 index 0a9b8197fc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02508.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02508 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02509.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02509.xml deleted file mode 100644 index ebbd69ced6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02509.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02509 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02510.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02510.xml deleted file mode 100644 index bc2b27510e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02510.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02510 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02511.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02511.xml deleted file mode 100644 index 65d6856192..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02511.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02511 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02512.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02512.xml deleted file mode 100644 index c92aa33661..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02512.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02512 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02513.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02513.xml deleted file mode 100644 index 786bff0b6e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02513.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02513 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02514.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02514.xml deleted file mode 100644 index 6a53ad5304..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02514.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02514 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02515.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02515.xml deleted file mode 100644 index 3c6113599c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02515.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02515 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02516.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02516.xml deleted file mode 100644 index a376a2efa6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02516.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02516 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02517.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02517.xml deleted file mode 100644 index e96a177001..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02517.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02517 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02518.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02518.xml deleted file mode 100644 index dd1dcb9072..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02518.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02518 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02519.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02519.xml deleted file mode 100644 index 2b01978260..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02519.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02519 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02520.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02520.xml deleted file mode 100644 index f54098b752..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02520.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02520 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02521.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02521.xml deleted file mode 100644 index 11075986fc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02521.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02521 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02522.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02522.xml deleted file mode 100644 index 5f049aa79a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02522.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02522 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02523.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02523.xml deleted file mode 100644 index 57b4ce90b4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02523.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02523 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02524.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02524.xml deleted file mode 100644 index 9cd1841104..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02524.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02524 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02525.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02525.xml deleted file mode 100644 index 703ae20c3a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02525.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02525 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02526.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02526.xml deleted file mode 100644 index 2adcb22ad8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02526.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02526 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02527.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02527.xml deleted file mode 100644 index 71c64bd6b5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02527.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02527 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02528.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02528.java index b9e228ab91..1c6675f861 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02528.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02528.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02528.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02528.xml deleted file mode 100644 index b712c54acf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02528.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02528 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02529.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02529.java index 1402bf95fb..19d5812581 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02529.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02529.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02529.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02529.xml deleted file mode 100644 index c435287c73..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02529.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02529 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02530.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02530.java index 4bce2e6cb7..c77520d91b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02530.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02530.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02530.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02530.xml deleted file mode 100644 index b16059bde4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02530.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02530 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02531.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02531.java index 4b46ee9f66..870a15e34a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02531.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02531.java @@ -60,7 +60,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02531.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02531.xml deleted file mode 100644 index 3c9ca24765..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02531.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02531 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02532.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02532.java index 150e8585e3..7aefb3dd08 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02532.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02532.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02532.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02532.xml deleted file mode 100644 index d4aaadc113..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02532.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02532 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02533.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02533.java index cf898883c9..343fe8cbc8 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02533.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02533.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02533.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02533.xml deleted file mode 100644 index 6f3b5477b9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02533.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02533 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02534.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02534.java index e2fceaffed..f6eb4bee3f 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02534.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02534.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02534.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02534.xml deleted file mode 100644 index 669e970283..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02534.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02534 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02535.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02535.java index f39245478b..35a34d9cd6 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02535.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02535.java @@ -64,7 +64,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02535.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02535.xml deleted file mode 100644 index d2e285b92b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02535.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02535 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02536.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02536.xml deleted file mode 100644 index d5a90dbcf8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02536.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02536 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02537.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02537.xml deleted file mode 100644 index d4f7865389..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02537.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02537 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02538.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02538.java index b2cabaaf6c..506ea4c5dd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02538.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02538.java @@ -55,10 +55,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sql, new Object[] {}, String.class); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02538.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02538.xml deleted file mode 100644 index 074dc5fcd1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02538.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02538 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02539.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02539.java index e482541d10..5e1d3bf602 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02539.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02539.java @@ -53,7 +53,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -63,7 +62,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02539.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02539.xml deleted file mode 100644 index 13023af67e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02539.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02539 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02540.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02540.xml deleted file mode 100644 index dc547e7bfb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02540.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02540 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02541.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02541.java index 03d91c93d1..07f7a0eaf5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02541.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02541.java @@ -58,7 +58,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02541.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02541.xml deleted file mode 100644 index aa85c30330..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02541.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02541 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02542.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02542.java index 2302f093cc..1c2a43625d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02542.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02542.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02542.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02542.xml deleted file mode 100644 index 46efcefdf1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02542.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02542 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02543.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02543.java index 2adafc876e..3a68d0c555 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02543.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02543.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02543.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02543.xml deleted file mode 100644 index facbd73860..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02543.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02543 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02544.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02544.java index e4e89da079..f207ef1cfb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02544.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02544.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02544.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02544.xml deleted file mode 100644 index bd85ae23b5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02544.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02544 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02545.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02545.java index f471f880b1..68ae0a86fb 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02545.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02545.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02545.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02545.xml deleted file mode 100644 index 36a48b9d1e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02545.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02545 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02546.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02546.java index 3e398043ce..5025942a00 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02546.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02546.java @@ -57,7 +57,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02546.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02546.xml deleted file mode 100644 index 1af1062c08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02546.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02546 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02547.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02547.xml deleted file mode 100644 index 6d857cf8af..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02547.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02547 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02548.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02548.xml deleted file mode 100644 index 754e96ab4b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02548.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02548 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02549.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02549.xml deleted file mode 100644 index 6b6634d699..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02549.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02549 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02550.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02550.xml deleted file mode 100644 index 0767a4943b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02550.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02550 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02551.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02551.xml deleted file mode 100644 index a7c9dd42fe..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02551.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02551 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02552.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02552.xml deleted file mode 100644 index aa4822be4a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02552.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02552 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02553.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02553.java index b94b3ab19e..5c021400a9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02553.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02553.java @@ -78,7 +78,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) sc.setSearchScope(javax.naming.directory.SearchControls.SUBTREE_SCOPE); String filter = "(&(objectclass=person))(|(uid=" + bar + ")(street={0}))"; Object[] filters = new Object[] {"The streetz 4 Ms bar"}; - // System.out.println("Filter " + filter); boolean found = false; javax.naming.NamingEnumeration results = ctx.search(base, filter, filters, sc); @@ -94,12 +93,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02553.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02553.xml deleted file mode 100644 index e91c515202..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02553.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02553 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02554.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02554.xml deleted file mode 100644 index 3809407215..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02554.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02554 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02555.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02555.xml deleted file mode 100644 index f5867a6270..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02555.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02555 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02556.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02556.xml deleted file mode 100644 index 9390eafaa4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02556.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02556 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02557.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02557.xml deleted file mode 100644 index 92b884858b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02557.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02557 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02558.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02558.xml deleted file mode 100644 index 46b45aa58a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02558.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02558 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02559.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02559.xml deleted file mode 100644 index 46d83f47de..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02559.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02559 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02560.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02560.xml deleted file mode 100644 index 015ef362bb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02560.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02560 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02561.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02561.xml deleted file mode 100644 index 0b2056d8e4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02561.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02561 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02562.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02562.xml deleted file mode 100644 index b939d805cd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02562.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02562 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02563.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02563.xml deleted file mode 100644 index 39d3406680..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02563.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02563 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02564.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02564.xml deleted file mode 100644 index 97264195a7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02564.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02564 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02565.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02565.xml deleted file mode 100644 index 02b145b573..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02565.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02565 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02566.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02566.xml deleted file mode 100644 index d930dc8854..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02566.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02566 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02567.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02567.xml deleted file mode 100644 index 193ddce1ba..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02567.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02567 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02568.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02568.xml deleted file mode 100644 index 056a62f757..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02568.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02568 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02569.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02569.xml deleted file mode 100644 index 96f96b6256..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02569.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02569 - true - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02570.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02570.xml deleted file mode 100644 index 6f16c450e5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02570.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02570 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02571.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02571.java index c8e58a1661..e1affb0d15 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02571.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02571.java @@ -96,12 +96,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02571.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02571.xml deleted file mode 100644 index deb5eb0c1d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02571.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02571 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02572.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02572.java index 5dd09df1ec..5bd83dc49b 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02572.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02572.java @@ -96,12 +96,18 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .println( "LDAP query results:
" + "Record found with name " - + attr.get() - + "
" - + "Address: " - + attr2.get() + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr.get().toString()) + + "
Address: " + + org.owasp + .esapi + .ESAPI + .encoder() + .encodeForHTML(attr2.get().toString()) + "
"); - // System.out.println("record found " + attr.get()); found = true; } } diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02572.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02572.xml deleted file mode 100644 index 16a8b7243e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02572.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - ldapi - 02572 - false - 90 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02573.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02573.xml deleted file mode 100644 index 2146dd383a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02573.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02573 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02574.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02574.xml deleted file mode 100644 index 193c01086e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02574.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02574 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02575.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02575.xml deleted file mode 100644 index 7d16d1985d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02575.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02575 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02576.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02576.xml deleted file mode 100644 index cc2e9f3c64..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02576.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02576 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02577.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02577.xml deleted file mode 100644 index 9f7d699181..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02577.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02577 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02578.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02578.xml deleted file mode 100644 index e8e0acc061..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02578.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02578 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02579.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02579.xml deleted file mode 100644 index 822a5ff1dd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02579.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02579 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02580.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02580.xml deleted file mode 100644 index 582b303a56..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02580.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02580 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02581.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02581.xml deleted file mode 100644 index 028b0e90e2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02581.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02581 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02582.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02582.xml deleted file mode 100644 index f4f9492f13..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02582.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02582 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02583.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02583.xml deleted file mode 100644 index fdb105ab25..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02583.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02583 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02584.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02584.xml deleted file mode 100644 index c52af8b654..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02584.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02584 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02585.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02585.xml deleted file mode 100644 index 4b7fb64e9d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02585.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02585 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02586.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02586.xml deleted file mode 100644 index 251bb46bb6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02586.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02586 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02587.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02587.xml deleted file mode 100644 index 95d3d2ac1e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02587.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02587 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02588.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02588.xml deleted file mode 100644 index 69c16128e8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02588.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02588 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02589.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02589.xml deleted file mode 100644 index 9bedb743ff..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02589.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02589 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02590.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02590.xml deleted file mode 100644 index 5d69a575f6..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02590.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02590 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02591.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02591.xml deleted file mode 100644 index 74753b4c6f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02591.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02591 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02592.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02592.xml deleted file mode 100644 index 127cbb2b98..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02592.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02592 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02593.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02593.xml deleted file mode 100644 index 7e8195d13d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02593.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02593 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02594.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02594.xml deleted file mode 100644 index 6df83682df..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02594.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02594 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02595.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02595.xml deleted file mode 100644 index a3b2da8ebf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02595.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02595 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02596.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02596.xml deleted file mode 100644 index 8769b1e7b4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02596.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02596 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02597.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02597.xml deleted file mode 100644 index 4f43d9e958..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02597.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02597 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02598.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02598.xml deleted file mode 100644 index a1134f542e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02598.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02598 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02599.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02599.xml deleted file mode 100644 index d6b231ee1b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02599.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02599 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02600.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02600.xml deleted file mode 100644 index da235df4a5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02600.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02600 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02601.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02601.xml deleted file mode 100644 index 197f7f24c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02601.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02601 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02602.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02602.xml deleted file mode 100644 index 235fe0253d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02602.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02602 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02603.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02603.xml deleted file mode 100644 index 99d4c7c36e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02603.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02603 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02604.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02604.xml deleted file mode 100644 index 5b3b3f9bce..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02604.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02604 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02605.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02605.xml deleted file mode 100644 index 5e02815173..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02605.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02605 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02606.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02606.xml deleted file mode 100644 index 1bd9300b10..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02606.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02606 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02607.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02607.xml deleted file mode 100644 index d46e82fa9c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02607.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02607 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02608.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02608.xml deleted file mode 100644 index 760bd2b9e9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02608.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02608 - true - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02609.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02609.xml deleted file mode 100644 index 3202b59f70..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02609.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02609 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02610.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02610.xml deleted file mode 100644 index 80e0e5a714..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02610.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02610 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02611.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02611.xml deleted file mode 100644 index a39e5fe69f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02611.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02611 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02612.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02612.xml deleted file mode 100644 index fb3a5cdb0c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02612.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02612 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02613.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02613.xml deleted file mode 100644 index b24e8fe025..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02613.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02613 - true - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02614.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02614.xml deleted file mode 100644 index e56a65877c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02614.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02614 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02615.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02615.xml deleted file mode 100644 index e618752353..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02615.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02615 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02616.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02616.xml deleted file mode 100644 index 906faa1c8d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02616.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02616 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02617.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02617.xml deleted file mode 100644 index 5fd58cd9b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02617.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02617 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02618.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02618.xml deleted file mode 100644 index 3b110c849d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02618.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02618 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02619.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02619.xml deleted file mode 100644 index 5738520d08..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02619.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02619 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02620.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02620.xml deleted file mode 100644 index aa807fd9e9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02620.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02620 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02621.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02621.xml deleted file mode 100644 index fe5643136c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02621.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02621 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02622.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02622.xml deleted file mode 100644 index 74c077e28e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02622.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02622 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02623.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02623.xml deleted file mode 100644 index 37ba1e57c0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02623.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02623 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02624.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02624.xml deleted file mode 100644 index 08757a81ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02624.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02624 - true - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02625.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02625.java index 6759a98c58..d7e823b468 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02625.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02625.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02625.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02625.xml deleted file mode 100644 index 2b7cc85b38..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02625.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02625 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02626.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02626.java index dd8ebc58a8..66c0fbd317 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02626.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02626.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02626.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02626.xml deleted file mode 100644 index 8ff7c81910..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02626.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02626 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02627.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02627.java index d44339d98c..70db09e36d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02627.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02627.java @@ -84,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02627.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02627.xml deleted file mode 100644 index 4ba4b1566c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02627.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02627 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02628.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02628.java index 9985904be4..dfbebf5792 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02628.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02628.java @@ -84,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02628.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02628.xml deleted file mode 100644 index 46d8a00ee5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02628.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02628 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02629.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02629.java index 027f7d1b8b..fc65b016ea 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02629.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02629.java @@ -84,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02629.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02629.xml deleted file mode 100644 index c00da6c8c0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02629.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02629 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02630.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02630.java index 523f2e6754..fbdec978da 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02630.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02630.java @@ -85,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02630.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02630.xml deleted file mode 100644 index 3deb62aa62..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02630.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02630 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02631.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02631.java index 722b51f0a1..28a2dcf758 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02631.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02631.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02631.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02631.xml deleted file mode 100644 index 998cb223b7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02631.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02631 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02632.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02632.java index 2255aca5d6..03de2be408 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02632.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02632.java @@ -81,7 +81,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02632.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02632.xml deleted file mode 100644 index 786647dc12..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02632.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02632 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02633.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02633.java index 35d6d6aaea..dfee23479d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02633.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02633.java @@ -82,7 +82,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02633.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02633.xml deleted file mode 100644 index d3150f2c16..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02633.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02633 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02634.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02634.java index 9f0a60169d..7c7bbcbaa1 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02634.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02634.java @@ -85,7 +85,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02634.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02634.xml deleted file mode 100644 index d226eac603..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02634.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02634 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02635.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02635.java index 4e40f0ede1..07c9d6d2f7 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02635.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02635.java @@ -86,7 +86,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02635.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02635.xml deleted file mode 100644 index e84612ab0c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02635.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02635 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02636.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02636.java index c1e2b610a1..88f6b20d0a 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02636.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02636.java @@ -82,7 +82,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02636.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02636.xml deleted file mode 100644 index 3824462733..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02636.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02636 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02637.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02637.java index f830d309c1..5b9c98975c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02637.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02637.java @@ -82,7 +82,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02637.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02637.xml deleted file mode 100644 index f18e34090a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02637.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02637 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02638.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02638.xml deleted file mode 100644 index d84553d500..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02638.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02638 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02639.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02639.xml deleted file mode 100644 index 226ffa7249..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02639.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02639 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02640.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02640.xml deleted file mode 100644 index 2a9a7a3e17..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02640.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02640 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02641.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02641.xml deleted file mode 100644 index 0838611a44..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02641.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02641 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02642.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02642.java index c83ea74914..3334830902 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02642.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02642.java @@ -70,19 +70,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -92,7 +90,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02642.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02642.xml deleted file mode 100644 index b7a29f319c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02642.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02642 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02643.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02643.java index 4fda89f13e..356fb32bb5 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02643.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02643.java @@ -70,19 +70,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -92,7 +90,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02643.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02643.xml deleted file mode 100644 index aebe73c44d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02643.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02643 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02644.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02644.java index 75ae0a8bef..8c2ca03f64 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02644.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02644.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -85,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02644.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02644.xml deleted file mode 100644 index 95b292dacf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02644.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02644 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02645.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02645.java index 7d540ce0df..cf2f281dd4 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02645.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02645.java @@ -75,7 +75,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -85,7 +84,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02645.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02645.xml deleted file mode 100644 index 22fd00d9af..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02645.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02645 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02646.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02646.xml deleted file mode 100644 index 0d87433059..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02646.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02646 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02647.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02647.java index 0b796cc62f..b00246503d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02647.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02647.java @@ -80,7 +80,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02647.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02647.xml deleted file mode 100644 index 5f178eff85..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02647.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02647 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02648.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02648.java index d272e74a96..3527750643 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02648.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02648.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02648.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02648.xml deleted file mode 100644 index 2d1ca67294..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02648.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02648 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02649.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02649.java index 6cd490aacb..d61ba917ae 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02649.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02649.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02649.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02649.xml deleted file mode 100644 index d6bd03c391..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02649.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02649 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02650.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02650.java index fcea66e0df..a819849cb9 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02650.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02650.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02650.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02650.xml deleted file mode 100644 index ffaab8bb79..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02650.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02650 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02651.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02651.java index 27d089d187..dc63aaf0ff 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02651.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02651.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02651.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02651.xml deleted file mode 100644 index aafb7d779d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02651.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02651 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02652.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02652.java index 0dd7312ffe..3bbd02c14d 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02652.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02652.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02652.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02652.xml deleted file mode 100644 index edf6e1d21c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02652.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02652 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02653.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02653.java index 9f93aa1e9f..c064e70343 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02653.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02653.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02653.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02653.xml deleted file mode 100644 index f4b5b2364b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02653.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02653 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02654.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02654.java index d977ceedd3..38531164b0 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02654.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02654.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02654.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02654.xml deleted file mode 100644 index ef34cd4a30..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02654.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02654 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02655.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02655.java index 86c4987b7c..cd397a0e29 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02655.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02655.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02655.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02655.xml deleted file mode 100644 index b153e107f5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02655.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02655 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02656.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02656.java index 301a160e55..f1069a63dd 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02656.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02656.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02656.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02656.xml deleted file mode 100644 index 39dc809cbf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02656.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02656 - true - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02657.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02657.java index 66dc8b2b98..a72260299c 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02657.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02657.java @@ -79,7 +79,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02657.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02657.xml deleted file mode 100644 index 540ee4adcd..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02657.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02657 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02658.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02658.xml deleted file mode 100644 index 8f87867734..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02658.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02658 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02659.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02659.xml deleted file mode 100644 index 9dc5471bd0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02659.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02659 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02660.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02660.xml deleted file mode 100644 index b3427087b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02660.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02660 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02661.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02661.xml deleted file mode 100644 index c234cec3e5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02661.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02661 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02662.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02662.xml deleted file mode 100644 index 5684e143bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02662.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02662 - false - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02663.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02663.xml deleted file mode 100644 index 7da2b41146..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02663.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - crypto - 02663 - true - 327 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02664.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02664.xml deleted file mode 100644 index 7eefea494b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02664.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02664 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02665.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02665.xml deleted file mode 100644 index f41fa96f4a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02665.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02665 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02666.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02666.xml deleted file mode 100644 index b1a4916d1e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02666.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02666 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02667.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02667.xml deleted file mode 100644 index 93754aaaa8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02667.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02667 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02668.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02668.xml deleted file mode 100644 index 1c355e3341..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02668.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02668 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02669.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02669.xml deleted file mode 100644 index 3c26b8d035..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02669.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - pathtraver - 02669 - false - 22 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02670.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02670.xml deleted file mode 100644 index 1947e7da7f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02670.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02670 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02671.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02671.xml deleted file mode 100644 index 3363141f17..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02671.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02671 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02672.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02672.xml deleted file mode 100644 index 982285d2f3..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02672.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02672 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02673.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02673.xml deleted file mode 100644 index fbd78a81e9..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02673.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02673 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02674.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02674.xml deleted file mode 100644 index 8e6dd16f5e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02674.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02674 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02675.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02675.xml deleted file mode 100644 index 32bfe8952e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02675.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02675 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02676.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02676.xml deleted file mode 100644 index 6f18afbec1..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02676.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02676 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02677.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02677.xml deleted file mode 100644 index 8991d0beff..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02677.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02677 - true - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02678.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02678.xml deleted file mode 100644 index d4c8f951f2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02678.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - hash - 02678 - false - 328 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02679.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02679.xml deleted file mode 100644 index 88d93bc716..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02679.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02679 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02680.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02680.xml deleted file mode 100644 index 96620dc494..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02680.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02680 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02681.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02681.xml deleted file mode 100644 index cd81bf1b1e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02681.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02681 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02682.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02682.xml deleted file mode 100644 index ed6497bc02..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02682.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02682 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02683.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02683.xml deleted file mode 100644 index e38ccaa80f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02683.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02683 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02684.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02684.xml deleted file mode 100644 index a64c18baa4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02684.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02684 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02685.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02685.xml deleted file mode 100644 index 7028e945a4..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02685.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02685 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02686.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02686.xml deleted file mode 100644 index b207f1c405..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02686.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02686 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02687.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02687.xml deleted file mode 100644 index 18f0a37174..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02687.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02687 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02688.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02688.xml deleted file mode 100644 index a6f461b992..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02688.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02688 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02689.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02689.xml deleted file mode 100644 index cd335c6061..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02689.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02689 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02690.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02690.xml deleted file mode 100644 index 2c3cfa1e0d..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02690.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02690 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02691.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02691.xml deleted file mode 100644 index c2544e4827..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02691.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02691 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02692.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02692.xml deleted file mode 100644 index d76d3faf0b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02692.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02692 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02693.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02693.xml deleted file mode 100644 index 906cf36fbc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02693.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02693 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02694.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02694.xml deleted file mode 100644 index ff4c7e5481..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02694.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02694 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02695.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02695.xml deleted file mode 100644 index ed7ca3629b..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02695.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02695 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02696.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02696.xml deleted file mode 100644 index f51c86e991..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02696.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02696 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02697.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02697.xml deleted file mode 100644 index 71a2489d25..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02697.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02697 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02698.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02698.xml deleted file mode 100644 index bb5f72e8a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02698.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02698 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02699.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02699.xml deleted file mode 100644 index ed79ca41ee..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02699.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02699 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02700.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02700.xml deleted file mode 100644 index b6afff05b0..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02700.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02700 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02701.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02701.xml deleted file mode 100644 index 6767f998dc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02701.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02701 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02702.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02702.xml deleted file mode 100644 index caf948db16..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02702.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02702 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02703.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02703.xml deleted file mode 100644 index 84d88d4498..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02703.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02703 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02704.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02704.xml deleted file mode 100644 index 72f1673dbb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02704.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02704 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02705.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02705.xml deleted file mode 100644 index 09d95d7233..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02705.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02705 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02706.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02706.xml deleted file mode 100644 index a292b92a14..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02706.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02706 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02707.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02707.xml deleted file mode 100644 index d7d3bc6604..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02707.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02707 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02708.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02708.xml deleted file mode 100644 index e1bc5f72bc..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02708.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02708 - true - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02709.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02709.xml deleted file mode 100644 index cdf351d7a5..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02709.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02709 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02710.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02710.xml deleted file mode 100644 index ddf87f8622..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02710.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02710 - true - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02711.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02711.xml deleted file mode 100644 index c77aea7150..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02711.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - securecookie - 02711 - false - 614 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02712.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02712.xml deleted file mode 100644 index f060609bb8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02712.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - xss - 02712 - false - 79 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02713.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02713.xml deleted file mode 100644 index 08369a4a1a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02713.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02713 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02714.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02714.xml deleted file mode 100644 index 157dd2871e..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02714.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - cmdi - 02714 - false - 78 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02715.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02715.xml deleted file mode 100644 index 777a50deae..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02715.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02715 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02716.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02716.xml deleted file mode 100644 index 8af515cfda..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02716.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02716 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02717.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02717.xml deleted file mode 100644 index 26ded33237..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02717.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02717 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02718.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02718.xml deleted file mode 100644 index 30a1c2c308..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02718.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02718 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02719.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02719.xml deleted file mode 100644 index 93e14971ef..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02719.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02719 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02720.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02720.xml deleted file mode 100644 index 8ca3e42f96..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02720.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02720 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02721.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02721.xml deleted file mode 100644 index 356ffc6101..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02721.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - weakrand - 02721 - false - 330 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02722.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02722.xml deleted file mode 100644 index ce6d8bb771..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02722.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02722 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02723.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02723.xml deleted file mode 100644 index e60bf4bb67..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02723.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02723 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02724.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02724.xml deleted file mode 100644 index 95f08fdb82..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02724.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02724 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02725.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02725.xml deleted file mode 100644 index bfb724b0cb..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02725.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02725 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02726.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02726.xml deleted file mode 100644 index 48416419ea..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02726.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - trustbound - 02726 - false - 501 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02727.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02727.java index aec1ee5ed6..d4fc7f6553 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02727.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02727.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02727.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02727.xml deleted file mode 100644 index a0014aeff8..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02727.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02727 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02728.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02728.java index c321da721e..960d37fc15 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02728.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02728.java @@ -63,7 +63,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02728.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02728.xml deleted file mode 100644 index df4bd98a1a..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02728.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02728 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02729.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02729.java index 181c4a4a30..8d8616f625 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02729.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02729.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02729.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02729.xml deleted file mode 100644 index ce20a17439..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02729.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02729 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02730.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02730.java index 612f69b00b..2a85b7782e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02730.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02730.java @@ -59,7 +59,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02730.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02730.xml deleted file mode 100644 index ff99c5f8c7..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02730.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02730 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02731.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02731.xml deleted file mode 100644 index d5d1674e21..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02731.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02731 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02732.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02732.xml deleted file mode 100644 index 77e4fe8b0f..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02732.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02732 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02733.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02733.java index c46610b144..dab514fb92 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02733.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02733.java @@ -47,19 +47,17 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) String bar = doSomething(request, param); String sql = "SELECT * from USERS where USERNAME='foo' and PASSWORD='" + bar + "'"; + try { java.util.List> list = org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForList(sql); response.getWriter().println("Your results are:
"); - // System.out.println("Your results are"); - for (Object o : list) { response.getWriter() .println( org.owasp.esapi.ESAPI.encoder().encodeForHTML(o.toString()) + "
"); - // System.out.println(o.toString()); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() @@ -69,7 +67,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (org.springframework.dao.DataAccessException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02733.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02733.xml deleted file mode 100644 index 3b05a13d95..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02733.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02733 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02734.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02734.xml deleted file mode 100644 index d639adf4cf..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02734.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02734 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02735.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02735.xml deleted file mode 100644 index 5d776be923..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02735.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02735 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02736.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02736.java index 88f3add43e..f9cb0d9076 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02736.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02736.java @@ -53,10 +53,8 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForMap(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); response.getWriter() .println(org.owasp.esapi.ESAPI.encoder().encodeForHTML(results.toString())); - // System.out.println(results.toString()); } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() .println( diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02736.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02736.xml deleted file mode 100644 index 945258eb5c..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02736.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02736 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02737.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02737.java index 132861fb46..1c7d521758 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02737.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02737.java @@ -52,7 +52,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) org.owasp.benchmark.helpers.DatabaseHelper.JDBCtemplate.queryForRowSet(sql); response.getWriter().println("Your results are: "); - // System.out.println("Your results are"); while (results.next()) { response.getWriter() .println( @@ -62,7 +61,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) .encoder() .encodeForHTML(results.getString("USERNAME")) + " "); - // System.out.println(results.getString("USERNAME")); } } catch (org.springframework.dao.EmptyResultDataAccessException e) { response.getWriter() diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02737.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02737.xml deleted file mode 100644 index 217901b731..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02737.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02737 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02738.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02738.java index 7fb69c2e4b..8992454588 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02738.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02738.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02738.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02738.xml deleted file mode 100644 index c7bbd7be04..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02738.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02738 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02739.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02739.java index 3c57c2e534..782dffc30e 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02739.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02739.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02739.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02739.xml deleted file mode 100644 index 098379a380..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02739.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02739 - false - 89 - diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02740.java b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02740.java index b573cfc156..575f45cadf 100644 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02740.java +++ b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02740.java @@ -56,7 +56,6 @@ public void doPost(HttpServletRequest request, HttpServletResponse response) } catch (java.sql.SQLException e) { if (org.owasp.benchmark.helpers.DatabaseHelper.hideSQLErrors) { response.getWriter().println("Error processing request."); - return; } else throw new ServletException(e); } } // end doPost diff --git a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02740.xml b/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02740.xml deleted file mode 100644 index d2aa7555a2..0000000000 --- a/src/main/java/org/owasp/benchmark/testcode/BenchmarkTest02740.xml +++ /dev/null @@ -1,7 +0,0 @@ - - 1.2 - sqli - 02740 - false - 89 - diff --git a/src/main/resources/ESAPI.properties b/src/main/resources/ESAPI.properties index 97876421cf..5716792617 100644 --- a/src/main/resources/ESAPI.properties +++ b/src/main/resources/ESAPI.properties @@ -352,7 +352,7 @@ Executor.ApprovedExecutables= #=========================================================================== # ESAPI Logging # Set the application name if these logs are combined with other applications -Logger.ApplicationName=ExampleApplication +Logger.ApplicationName=OWASP_Benchmark # If you use an HTML log viewer that does not properly HTML escape log data, you can set LogEncodingRequired to true Logger.LogEncodingRequired=false # Determines whether ESAPI should log the application name. This might be clutter in some single-server/single-app environments. @@ -369,7 +369,8 @@ Logger.UserInfo=false # Determines whether ESAPI should log the app info. Logger.ClientInfo=false - +# Determines whether ESAPI should log the prefix of [EVENT_TYPE - APPLICATION NAME]. +Logger.LogPrefix=false #=========================================================================== # ESAPI Intrusion Detection diff --git a/src/main/resources/esapi-java-logging.properties b/src/main/resources/esapi-java-logging.properties deleted file mode 100644 index 71011acc50..0000000000 --- a/src/main/resources/esapi-java-logging.properties +++ /dev/null @@ -1,6 +0,0 @@ -handlers= java.util.logging.ConsoleHandler -.level= INFO -java.util.logging.ConsoleHandler.level = INFO -java.util.logging.ConsoleHandler.formatter = java.util.logging.SimpleFormatter -java.util.logging.SimpleFormatter.format=[%1$tF %1$tT] [%3$-7s] %5$s %n -#https://www.logicbig.com/tutorials/core-java-tutorial/logging/customizing-default-format.html \ No newline at end of file diff --git a/src/site/resources/images/owasp.png b/src/site/resources/images/owasp.png new file mode 100644 index 0000000000..90fb9d2cee Binary files /dev/null and b/src/site/resources/images/owasp.png differ diff --git a/src/site/site.xml b/src/site/site.xml new file mode 100644 index 0000000000..1a3c436a01 --- /dev/null +++ b/src/site/site.xml @@ -0,0 +1,24 @@ + + + + + + org.apache.maven.skins + maven-fluido-skin + ${version.fluido} + + + + false + true + + + + + + +

+ + + diff --git a/tools/Contrast/contrast.yaml b/tools/Contrast/contrast.yaml index 547f0cb251..be41a9dd18 100644 --- a/tools/Contrast/contrast.yaml +++ b/tools/Contrast/contrast.yaml @@ -13,6 +13,7 @@ agent: standalone_app_name: owasp-benchmark logger: level: debug + roll_daily: true server: name: owasp-server environment: development diff --git a/tools/Contrast/runBenchmark_wContrast.sh b/tools/Contrast/runBenchmark_wContrast.sh index 32aeeeeafe..050fbe6581 100755 --- a/tools/Contrast/runBenchmark_wContrast.sh +++ b/tools/Contrast/runBenchmark_wContrast.sh @@ -16,7 +16,7 @@ if $(find contrast.jar -mmin +1440); then echo "Using Contrast agent downloaded in past day" else echo "Fetching the latest Contrast agent" - curl -o contrast.jar -L "https://repository.sonatype.org/service/local/artifact/maven/redirect?r=central-proxy&g=com.contrastsecurity&a=contrast-agent&v=LATEST" + export VERSION=$(echo "$(curl --fail --silent "https://search.maven.org/solrsearch/select?q=g:"com.contrastsecurity"&a:"contrast-agent"&rows=20&wt=json" | jq -r '.response.docs[0].latestVersion')") && curl --silent https://repo1.maven.org/maven2/com/contrastsecurity/contrast-agent/${VERSION}/contrast-agent-${VERSION}.jar -o contrast.jar fi if [ -d ./working ]; then @@ -30,7 +30,7 @@ fi echo echo "Starting Benchmark application server with Contrast agent" echo " 1. Verify that the output shows \"Starting JVM\"." -echo " 2. If the output contains \"Continuing without Contrast...\" the credentials in contrast.yaml are most likely incorrect or missing." +echo " 2. If the output contains \"Contrast not enabled. Check log for details -\" the credentials in contrast.yaml are most likely incorrect or missing." echo " 3. Once the Benchmark server is fully started, open another terminal window and run the runCrawler.sh script from the Benchmark root directory." echo " 4. When the crawler finishes (takes a minute or two), hit CTRL+C in this window to stop the server and write the Contrast results to the /results folder." echo diff --git a/tools/HCL/runBenchmark_wHCL.bat b/tools/HCL/runBenchmark_wHCL.bat index bb5c95f3bb..5204861c60 100644 --- a/tools/HCL/runBenchmark_wHCL.bat +++ b/tools/HCL/runBenchmark_wHCL.bat @@ -1,8 +1,8 @@ @ECHO OFF IF EXIST .\secagent.jar ( - IF EXIST .\working ( + IF EXIST ..\..\results\HCL-IAST.hcl ( - RMDIR /S /Q .\working + DEL ..\..\results\HCL-IAST.hcl ECHO. ECHO Previous results have been removed @@ -11,17 +11,7 @@ IF EXIST .\secagent.jar ( CD ..\.. - ECHO After Crawl is Complete, hit Ctrl-C to stop Benchmark Tomcat instance. - ECHO When it asks "Terminate batch job (Y/N)?" Enter N, so script will complete and copy results to /results directory. - ECHO. - - CALL mvn clean package cargo:run -Pdeploywhcl - - ECHO Copying HCL reports to results directory - - COPY tools\HCL\working\HCL-IAST.hcl results\Benchmark_HCL-IAST.hcl - - CD tools\HCL + CALL mvn clean package cargo:run -Pdeploywhcl -Drunenv=remote ) ELSE ( ECHO HCL is a commercial product, so you need a licensed version of HCL in order to run it on the Benchmark. If you have access to HCL, download the HCL Agent for Java ^(secagent.jar^), put it into the /tools/HCL folder, and then rerun this script. Please contact HCL at https://www.hcl.com/. diff --git a/tools/HCL/runBenchmark_wHCL.sh b/tools/HCL/runBenchmark_wHCL.sh index 477440850e..5c85d8f4ce 100755 --- a/tools/HCL/runBenchmark_wHCL.sh +++ b/tools/HCL/runBenchmark_wHCL.sh @@ -2,23 +2,17 @@ if [ -f ./secagent.jar ]; then - if [ -d ./working ]; then + if [ -d ../../results/HCL-IAST.hcl ]; then - rm -r ./working/HCL-IAST.hcl + rm ../../results/HCL-IAST.hcl echo "" - echo "Previous results in /working removed" + echo "Previous results have been removed" echo "" fi cd ../.. - mvn clean package cargo:run -Pdeploywhcl - - echo "Copying report to results directory" - benchmark_version=$(scripts/getBenchmarkVersion.sh) - result_file="results/Benchmark_$benchmark_version-HCL-IAST.hcl" - cp tools/HCL/working/HCL-IAST.hcl "$result_file" - cd tools/HCL + mvn clean package cargo:run -Pdeploywhcl -Drunenv=remote else