XPath injection
Home > Software Quality Glossary > Definition - XPath injection
EMAIL THIS
Glossary - powered by WhatIs.com
 BROWSE ALPHABETICALLY:    A B C D E F G H I J K L M N O P Q R S T U V W X Y Z #    
Search for: in Full Target Search with Google

XPath injection

XPath injection is an attack targeting Web sites that create XPath queries from user-supplied data. If an application embeds unprotected data into an XPath query, the query can be altered so that it is no longer parsed in the manner originally intended. This can be done by bypassing the Web site authentication system and extracting the structure of one or more XML documents in the site.

Read more about it:
>>  The Web Application Security Consortium outlines how XPath injection works.
>>  Amit Klein compares simple XPath injection and blind XPath injection.
>>  Runa Dwibedi discusses XPath injection techniques and countermeasures.

Last updated on: Jun 13, 2006

WHITE PAPERS  
PCI Compliance Cut Costs, Not Corners with Third Brigade®
Third Brigade

Evolving Work Habits: Changing Your Approach to Network Security
SonicWALL

Improving End-User Performance by Eliminating HTTP Chattiness
F5 Networks

Identifying and Caching Dynamic Web Applications: A Flexible Approach to Solving Performance Issues
F5 Networks

Improving Web Application Response Time with Application Delivery Networking Technologies
F5 Networks

>> More White Papers
  WHAT'S NEW
 1. Managing performance in the enterprise
 2. Software testing fundamentals
 3. Learning Guide: Debugging & unit testing
 4. .NET Application Security Learning Guide


About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2006 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts