National Institute of Standards and Technology
Package illustrating a test case

Test case 2178

Description

This code demos the Stored XSS (or Presistent) ==> "Scope Bad Case". The servlet retrieves the records from database and directly reflects it back into the HTTP response.

Flaws

Have any comments on this test case? Please, send us an email.