Hello:

Hope this is the correct list.

When running w3af against a wicket, w3af detects a "strange parameter".


The URI: 
"https://www.DOMAIN.com/?wicket:bookmarkablePage=:com.DOMAIN.SUBDOMAIN.web.pages.SignInPage&wicket:interface=:0:signInForm::IFormSubmitListener::;jsessionid=7AC76A46A86BBC3F5253E374241BC892";
 has a parameter named: "wicket:interface" with value: 
":0:signInForm::IFormSubmitListener::", which is quite odd. This information 
was found in the request with id 1.

Yes, it's quite odd, but not for wicket. I don't have neither the time nor the 
knowledge to offer a fix this false positive, I can only raise the warning.


Carlos Pantelides

-----------------

http://seguridad-agile.blogspot.com/

------------------------------------------------------------------------------
EditLive Enterprise is the world's most technically advanced content
authoring tool. Experience the power of Track Changes, Inline Image
Editing and ensure content is compliant with Accessibility Checking.
http://p.sf.net/sfu/ephox-dev2dev
_______________________________________________
W3af-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/w3af-users

Reply via email to