Manual

Tests

Cohesion comes with a number of security tests. All tests are selected by default. You can, however, select specific tests from the list bellow. For more information on how to select tests, consult with the common options manual.

$ cohesion show tests
NameDescription
reflectedcliTest for reflected command line injection vulnerabilities.
reflectedcrlfiTest for CR/LF injection vulnerabilities.
reflectedeliTest for reflected expression injection vulnerabilities.
reflectedlfiTest for local file include vulnerabilities.
phplfiTest for local file include vulnerabilities (php varient).
reflectedrfiTest for remote file include vulnerabilities.
reflectedrciTest for remote code injection vulnerabilities.
reflectedrciphpTest for remote code injection vulnerabilities.
reflectedredirTest for reflected open redirect vulnerabilities.
vanilasqliTest for vanila (error-based) SQL Injection vulnerabilities.
reflectedsqliTest for reflected SQL Injection vulnerabilities.
timedsqliTest for time-based SQL Injection vulnerabilities.
booleansqliTest for boolean SQL Injection vulnerabilities.
reflectedxssTest for reflected Cross-site Scripting vulnerabilities.
domxssTest for dom-based Cross-site Scripting vulnerabilities.
persistentxssTest for persistent Cross-site Scripting vulnerabilities.
reflectedxxeTest for reflected XML Entity Injection vulnerabilities.
Previous
Usage