Test Methods ( Detailed Overview )

Here is a list of every test performed by Web Scan Service.

LDAP Injection

Remediation Task

Filter out hazardous characters from user input

WASC Classification

Command Execution: LDAP Injection

Affected Products

This issue may affect different types of products

Technical Description

LDAP Injection is an attack technique used to exploit sites that construct LDAP statements from user-supplied input.

Fix Recommendation

Validate and sanitize user input used in vulnerable functions