Testing web applications is more specific field in software testing. This is differentiated from the testing of client-server application on the following grounds.

  • Web applications have a browser

Vulnerabilities in web applications

edit

SQL Injection

edit

SQL injection is a code injection technique that exploits a security vulnerability occurring in the database layer of an application. The vulnerability is present when user input is either incorrectly filtered for string literal escape characters embedded in SQL statements or user input is not strongly typed and thereby unexpectedly executed. It is an instance of a more general class of vulnerabilities that can occur whenever one programming or scripting language is embedded inside another. SQL injection attacks are also known as SQL insertion attacks. In other words, the application is forced to run SQL code that was not intended. If the application is creating SQL strings without consideration, the application manipulated data beyond secrecy and requirement.

Cross Site Scripting

edit

Tools for Web Testing

edit
edit

This tool helps in finding the broken links in the complex e-commerce websites where there is good possiblity of human error checking the links manually.

HTML Validation Tools

edit

CSS Validation Tools

edit

RSS Validation Tools

edit