Skip to content

Commit 21cb012

Browse files
authored
Merge pull request #3212 from zapbot/wavsep
Updated WAVSEP Results
2 parents 31f8fe1 + 1f2babe commit 21cb012

File tree

7 files changed

+35
-35
lines changed

7 files changed

+35
-35
lines changed

site/data/scans/wavsep/sqli-get-200-err.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -33,13 +33,13 @@ details:
3333
rule: 40018
3434
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Error/Case11-InjectionInView-Date-PermissionBypass-With200Errors.jsp
3535
result: Pass
36-
rule: 40019
36+
rule: 40018
3737
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Error/Case12-InjectionInSearch-Date-UnionExploit-With200Errors.jsp
3838
result: Pass
3939
rule: 40018
4040
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Error/Case13-InjectionInCalc-Date-BooleanExploit-With200Errors.jsp
4141
result: Pass
42-
rule: 40019
42+
rule: 40018
4343
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Error/Case14-InjectionInUpdate-Date-CommandInjection-With200Errors.jsp
4444
result: Pass
4545
rule: 40018
@@ -48,7 +48,7 @@ details:
4848
rule: 40018
4949
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Error/Case16-InjectionInView-NumericWithoutQuotes-PermissionBypass-With200Errors.jsp
5050
result: Pass
51-
rule: 40019
51+
rule: 40018
5252
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Error/Case17-InjectionInSearch-NumericWithoutQuotes-UnionExploit-With200Errors.jsp
5353
result: Pass
5454
rule: 40018

site/data/scans/wavsep/sqli-get-200-valid.yml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -26,17 +26,17 @@ details:
2626
result: Pass
2727
rule: 40018
2828
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case09-InjectionInUpdate-Numeric-CommandInjection-WithDifferent200Responses.jsp
29-
result: Pass
30-
rule: 40019
29+
result: FAIL
30+
rule: 40018
3131
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case10-InjectionInSearchOrderBy-Numeric-BinaryDeliberateRuntimeError-WithDifferent200Responses.jsp
3232
result: Pass
3333
rule: 40018
3434
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case11-InjectionInView-Date-PermissionBypass-WithDifferent200Responses.jsp
3535
result: Pass
36-
rule: 40019
36+
rule: 40018
3737
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case12-InjectionInSearch-Date-UnionExploit-WithDifferent200Responses.jsp
3838
result: Pass
39-
rule: 40019
39+
rule: 40018
4040
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case13-InjectionInCalc-Date-BooleanExploit-WithDifferent200Responses.jsp
4141
result: Pass
4242
rule: 40018
@@ -48,17 +48,17 @@ details:
4848
rule: 40018
4949
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case16-InjectionInView-NumericWithoutQuotes-PermissionBypass-WithDifferent200Responses.jsp
5050
result: Pass
51-
rule: 40019
51+
rule: 40018
5252
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case17-InjectionInSearch-NumericWithoutQuotes-UnionExploit-WithDifferent200Responses.jsp
5353
result: Pass
5454
rule: 40018
5555
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case18-InjectionInCalc-NumericWithoutQuotes-BooleanExploit-WithDifferent200Responses.jsp
5656
result: Pass
5757
rule: 40018
5858
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-200Valid/Case19-InjectionInUpdate-NumericWithoutQuotes-CommandInjection-WithDifferent200Responses.jsp
59-
result: Pass
60-
rule: 40019
59+
result: FAIL
60+
rule: 40018
6161
tests: 19
62-
passes: 18
63-
fails: 1
64-
score: 95%
62+
passes: 16
63+
fails: 3
64+
score: 84%

site/data/scans/wavsep/sqli-get-500-err.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -27,19 +27,19 @@ details:
2727
rule: 40018
2828
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-500Error/Case09-InjectionInUpdate-Numeric-CommandInjection-WithErrors.jsp
2929
result: Pass
30-
rule: 40019
30+
rule: 40018
3131
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-500Error/Case10-InjectionInSearchOrderBy-Numeric-BinaryDeliberateRuntimeError-WithErrors.jsp
3232
result: Pass
3333
rule: 40018
3434
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-500Error/Case11-InjectionInView-Date-PermissionBypass-WithErrors.jsp
3535
result: Pass
36-
rule: 40019
36+
rule: 40018
3737
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-500Error/Case12-InjectionInSearch-Date-UnionExploit-WithErrors.jsp
3838
result: Pass
39-
rule: 40019
39+
rule: 40018
4040
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-500Error/Case13-InjectionInCalc-Date-BooleanExploit-WithErrors.jsp
4141
result: Pass
42-
rule: 40019
42+
rule: 40018
4343
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-500Error/Case14-InjectionInUpdate-Date-CommandInjection-WithErrors.jsp
4444
result: Pass
4545
rule: 40018
@@ -57,7 +57,7 @@ details:
5757
rule: 40018
5858
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-GET-500Error/Case19-InjectionInUpdate-NumericWithoutQuotes-CommandInjection-WithErrors.jsp
5959
result: Pass
60-
rule: 40019
60+
rule: 40018
6161
tests: 19
6262
passes: 19
6363
fails: 0

site/data/scans/wavsep/sqli-post-200-err.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ details:
2121
rule: 40018
2222
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Error/Case07-InjectionInSearch-Numeric-UnionExploit-With200Errors.jsp
2323
result: Pass
24-
rule: 40019
24+
rule: 40018
2525
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Error/Case08-InjectionInCalc-Numeric-BooleanExploit-With200Errors.jsp
2626
result: Pass
2727
rule: 40018
@@ -33,10 +33,10 @@ details:
3333
rule: 40018
3434
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Error/Case11-InjectionInView-Date-PermissionBypass-With200Errors.jsp
3535
result: Pass
36-
rule: 40019
36+
rule: 40018
3737
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Error/Case12-InjectionInSearch-Date-UnionExploit-With200Errors.jsp
3838
result: Pass
39-
rule: 40019
39+
rule: 40018
4040
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Error/Case13-InjectionInCalc-Date-BooleanExploit-With200Errors.jsp
4141
result: Pass
4242
rule: 40018

site/data/scans/wavsep/sqli-post-200-valid.yml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -26,8 +26,8 @@ details:
2626
result: Pass
2727
rule: 40018
2828
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Valid/Case09-InjectionInUpdate-Numeric-CommandInjection-WithDifferent200Responses.jsp
29-
result: Pass
30-
rule: 40019
29+
result: FAIL
30+
rule: 40018
3131
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Valid/Case10-InjectionInSearchOrderBy-Numeric-BinaryDeliberateRuntimeError-WithDifferent200Responses.jsp
3232
result: Pass
3333
rule: 40018
@@ -36,10 +36,10 @@ details:
3636
rule: 40018
3737
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Valid/Case12-InjectionInSearch-Date-UnionExploit-WithDifferent200Responses.jsp
3838
result: Pass
39-
rule: 40019
39+
rule: 40018
4040
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Valid/Case13-InjectionInCalc-Date-BooleanExploit-WithDifferent200Responses.jsp
4141
result: Pass
42-
rule: 40019
42+
rule: 40018
4343
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Valid/Case14-InjectionInUpdate-Date-CommandInjection-WithDifferent200Responses.jsp
4444
result: Pass
4545
rule: 40018
@@ -56,9 +56,9 @@ details:
5656
result: Pass
5757
rule: 40018
5858
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-200Valid/Case19-InjectionInUpdate-NumericWithoutQuotes-CommandInjection-WithDifferent200Responses.jsp
59-
result: Pass
60-
rule: 40019
59+
result: FAIL
60+
rule: 40018
6161
tests: 19
62-
passes: 18
63-
fails: 1
64-
score: 95%
62+
passes: 16
63+
fails: 3
64+
score: 84%

site/data/scans/wavsep/sqli-post-500-err.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -36,10 +36,10 @@ details:
3636
rule: 40018
3737
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-500Error/Case12-InjectionInSearch-Date-UnionExploit-WithErrors.jsp
3838
result: Pass
39-
rule: 40019
39+
rule: 40018
4040
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-500Error/Case13-InjectionInCalc-Date-BooleanExploit-WithErrors.jsp
4141
result: Pass
42-
rule: 40019
42+
rule: 40018
4343
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-500Error/Case14-InjectionInUpdate-Date-CommandInjection-WithErrors.jsp
4444
result: Pass
4545
rule: 40018
@@ -48,7 +48,7 @@ details:
4848
rule: 40018
4949
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-500Error/Case16-InjectionInView-NumericWithoutQuotes-PermissionBypass-WithErrors.jsp
5050
result: Pass
51-
rule: 40019
51+
rule: 40018
5252
- path: http://127.0.0.1:8080/wavsep/active/SQL-Injection/SInjection-Detection-Evaluation-POST-500Error/Case17-InjectionInSearch-NumericWithoutQuotes-UnionExploit-WithErrors.jsp
5353
result: Pass
5454
rule: 40018

site/data/scans/wavsep/totals.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
11
tests: 1048
2-
passes: 1007
3-
fails: 41
2+
passes: 1003
3+
fails: 45
44
score: 96%

0 commit comments

Comments
 (0)