High Impact Factor : 4.396 icon | Submit Manuscript Online icon |

An Assessment of Cross Site Scripting Vulnerabilities in Web Application

Author(s):

Aryalakshmi. R , mar baselios christian college of engineering and technology; Josmy George, mar baselios christian college of engineering and technology

Keywords:

XSS, OWASP, CWE

Abstract

Web applications provide vast category of functionalities and usefulness. The presence of security vulnerabilities in the source code of these applications is raising cybercrime rate rapidly. Attackers use many types of vulnerable malicious code to cripple and penetrate a Web site, from low-level attacks to high-level data breaches that expose infrastructure of the web applications. OWSAP 2015 has declared that XSS attacks are amongst the most powerful attacks against web applications. Cross-site scripting is an application-level code injection type security vulnerability. It occurs, whenever a server program code uses an unrestricted input via HTTP request, database, or files in the response generator statement without any validation. The main cause of XSS vulnerabilities is the weakness present in the source code of the web application. It may be due to the weaknesses of the programming language, improper input validations, or ignorance of security guidelines by developers. This weakness allows a malicious user to steal sensitive information and performs other malevolent operations. In this paper we are doing an analysis of the existing methods of detection and prevention of crosstie scripting vulnerabilities.

Other Details

Paper ID: IJSRDV6I10771
Published in: Volume : 6, Issue : 1
Publication Date: 01/04/2018
Page(s): 2152-2154

Article Preview

Download Article