Back to Results
First PageMeta Content
Scripting languages / HTTP / Cross-site scripting / Software testing / Uniform resource locator / Cross-site request forgery / SQL injection / JavaScript / Vulnerability / Computing / Software / Computer security


Automated Discovery of Parameter Pollution Vulnerabilities in Web Applications Marco Balduzzi∗, Carmen Torrano Gimenez ‡, Davide Balzarotti∗, and Engin Kirda∗ § ∗ Institute Eurecom, Sophia Antipolis
Add to Reading List

Document Date: 2011-02-01 09:33:41


Open Document

File Size: 236,24 KB

Share Result on Facebook

City

Madrid / /

Company

Paypal / Oracle / Internet News Shopping Games Sports Health Science Travel / Google / MySQL / Symantec / Yahoo / Microsoft / /

Currency

pence / /

/

Event

FDA Phase / /

Facility

Northeastern University / bar Url / Institute Eurecom / /

IndustryTerm

cross-site / web applications / users with interactive services / site / similarity algorithm / web technology / requested web page / web application / dynamic web applications / service_request.html?page=search%2ehtml%3f session_id%3djKAmSZx5&foo=bar&q=shoes / online election / web application vulnerabilities / online service / active content technologies / printing / proposed scanning solutions / web developers / parameter precedence detection algorithm / pattern recognition algorithm / search.html?session_id=jKAmSZx5%26foo%3Dbar&q=shoes / heterogeneous technologies / web vulnerability / web server / Internet users / web technologies / Web Applications Marco Balduzzi∗ / cross site / Web Applications During / in existing web applications / built using heterogeneous technologies / /

Organization

Northeastern University / Boston / Spanish National Research Council / /

Person

Carmen Torrano Gimenez / Green / Sophia Antipolis / /

Position

administrator / analyst / /

Product

SQL injections / SQL injection / Parameter Injection / P2 / /

ProgrammingLanguage

Java / Microsoft Access / Python / HTML / Perl / SQL / XML / PHP / Javascript / /

Technology

XML / HTTP protocol / PHP / top-level domain / Ratcliff/Obershelp pattern recognition algorithm / parameter precedence detection algorithm / web technology / Perl / HTML / TCP/IP / CGI / JSP / Java / web technologies / HTTP / DOM / similarity algorithm / active content technologies / Flash / web server / finished parsing the DOM / /

URL

http /

SocialTag