Showing posts with label Secure Application Design. Show all posts
Showing posts with label Secure Application Design. Show all posts

What is Path Traversal?

What is Path Traversal?



Answer: The software uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the software does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

What is a Buffer Overflow?

What is a Buffer Overflow?



Answer: The program copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.

What is an Open Redirect?

What is an Open Redirect?



Answer: A web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a Redirect. This simplifies phishing attacks.

What is Cross-Site Request Forgery (CSRF)?

What is Cross-Site Request Forgery (CSRF)?



Answer: The web application does not, or cannot, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request.

What is Unrestricted File Upload?

What is Unrestricted File Upload?



Answer: The software allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment.

What is Cross-Site Scripting (XSS)?

What is Cross-Site Scripting (XSS)?



Answer: The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.

What is OS Command Injection and how can it be mitigated?

What is OS Command Injection and how can it be mitigated?



Answer: The software constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

What is SQL Injection?

What is SQL Injection?



Answer: The software constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component.