This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "OWASP Java Project WIPRO 1 2015"
(→Pages List) |
m |
||
(20 intermediate revisions by 4 users not shown) | |||
Line 1: | Line 1: | ||
+ | {{taggedDocument | ||
+ | | type=delete | ||
+ | | comment=Tagged via fixme/delete. | ||
+ | }} | ||
+ | |||
<div style="width:100%;border:0,margin:0;overflow: hidden;">[[File:OWASP_Java_Project_Header.png|link=]]</div> | <div style="width:100%;border:0,margin:0;overflow: hidden;">[[File:OWASP_Java_Project_Header.png|link=]]</div> | ||
<br> | <br> | ||
Line 121: | Line 126: | ||
|[[Cross-site Scripting (XSS) ]] | |[[Cross-site Scripting (XSS) ]] | ||
| | | | ||
− | | | + | | Looks updated |
− | | | + | | NO ACTION TAKEN, I: Removed Java tag since it's not really a Java specific isue and only an example was written usign JSP. |
|- | |- | ||
|[[Declarative Access Control in Java]] | |[[Declarative Access Control in Java]] | ||
| | | | ||
− | | | + | |gone |
− | | | + | |Deleted by admin |
|- | |- | ||
|[[Decompiling Java bytecode]] | |[[Decompiling Java bytecode]] | ||
| | | | ||
| | | | ||
− | | | + | | DELETED |
|- | |- | ||
|[[Deserialization of untrusted data]] | |[[Deserialization of untrusted data]] | ||
| | | | ||
− | | | + | | Looks legit |
− | | | + | | Looks legit |
|- | |- | ||
|[[Detect profiling phase into web application]] | |[[Detect profiling phase into web application]] | ||
− | |||
− | |||
− | |||
− | |||
− | |||
| | | | ||
| | | | ||
Line 166: | Line 166: | ||
|[[Hashing Java]] | |[[Hashing Java]] | ||
| UNDER REVIEW | | UNDER REVIEW | ||
− | | | + | | Updated by Mark Gordon. Thank you! |
− | | | + | | No action needed |
|- | |- | ||
|[[Hibernate]] | |[[Hibernate]] | ||
Line 231: | Line 231: | ||
|[[Inyección De Comandos En Java ]] | |[[Inyección De Comandos En Java ]] | ||
| | | | ||
− | | | + | |Should we keep the 2 spanish pages? A translation is of course a good thing, but we have only 2 pages whose quality we cannot verify. |
| | | | ||
|- | |- | ||
|[[J2EE Misconfiguration: Unsafe Bean Declaration]] | |[[J2EE Misconfiguration: Unsafe Bean Declaration]] | ||
| | | | ||
− | | | + | |J2EE is completely outdated and only used in old legacy installation. No new projects are based on this environment. Moreover the page does not contain any useful information. Marked for deletion. |
| | | | ||
|- | |- | ||
|[[J2EE third party libraries insecurity]] | |[[J2EE third party libraries insecurity]] | ||
| | | | ||
− | | | + | |See above. Propose to delete the page since it's not referenced by any other wiki page anymore. |
− | | | + | | redirected to dependency check |
|- | |- | ||
|[[JAAS Timed Login Module ]] | |[[JAAS Timed Login Module ]] | ||
| | | | ||
| | | | ||
− | | | + | | Deleted |
|- | |- | ||
|[[JAAS Tomcat Login Module]] | |[[JAAS Tomcat Login Module]] | ||
| | | | ||
| | | | ||
− | | | + | | Deleted |
|- | |- | ||
|[[Java Project Article Wishlist ]] | |[[Java Project Article Wishlist ]] | ||
Line 267: | Line 267: | ||
| | | | ||
| | | | ||
− | | | + | | Merged into category page |
|- | |- | ||
|[[Java Server Faces ]] | |[[Java Server Faces ]] | ||
Line 387: | Line 387: | ||
| | | | ||
| | | | ||
− | | | + | | |
|- | |- | ||
|[[Preventing SQL Injection in Java ]] | |[[Preventing SQL Injection in Java ]] | ||
| | | | ||
| | | | ||
− | | | + | |redirected to sqlI cheatsheet |
|- | |- | ||
|[[Process Control]] | |[[Process Control]] | ||
Line 467: | Line 467: | ||
| | | | ||
| | | | ||
− | | | + | |(See spanish page above) |
|- | |- | ||
|[[Trust Boundary Violation]] | |[[Trust Boundary Violation]] | ||
Line 477: | Line 477: | ||
| | | | ||
| | | | ||
− | | | + | | Delete |
|- | |- | ||
|[[Uncaught exception]] | |[[Uncaught exception]] | ||
Line 505: | Line 505: | ||
|- | |- | ||
|[[Unsafe Reflection ]] | |[[Unsafe Reflection ]] | ||
− | | | + | |cleaned, extended |
− | | | + | |useful code examples |
− | | | + | |marked to be merged with another page on the subject |
|- | |- | ||
|[[Using JCaptcha ]] | |[[Using JCaptcha ]] | ||
| | | | ||
| | | | ||
− | | | + | | deleted |
|- | |- | ||
|[[Using the Java Cryptographic Extensions]] | |[[Using the Java Cryptographic Extensions]] | ||
Line 566: | Line 566: | ||
<br/> | <br/> | ||
− | |||
− |
Latest revision as of 21:56, 10 November 2017
You can help OWASP by improving it or discussing it on its Talk page. See FixME
Comment: Tagged via fixme/delete.
Wiki Pages Review Operation - 2015/2016
91 Pages in category "OWASP Java Pages" have to be reviewed. We use a Google Document where every person interested can let opinions, comments and suggestions. Even reviewing one single page is welcome. Shared Google document used to comment and review: https://docs.google.com/spreadsheets/d/13bazikNd5fc9f7ppqMEAxbo0sI3CpOdPgDW5xt3LeMc/edit?usp=sharing
|
Team
Meta
Other ResourcesN/A
|
Classifications |
Shared Google document used to write reviews:
https://docs.google.com/spreadsheets/d/13bazikNd5fc9f7ppqMEAxbo0sI3CpOdPgDW5xt3LeMc/edit?usp=sharing
Shared Google document used to write reviews:
https://docs.google.com/spreadsheets/d/13bazikNd5fc9f7ppqMEAxbo0sI3CpOdPgDW5xt3LeMc/edit?usp=sharing
OWASP Java and JVM Project - Wiki Pages Review Operation 1 - 2015/2016
PROJECT INFO What does this OWASP project offer you? |
RELEASE(S) INFO What releases are available for this project? | |||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
|