=========================================================== .___ __ __ _________________ __ __ __| _/|__|/ |_ / ___\_` __ \__ \ | | \/ __ | | \\_ __\ / /_/ > | \// __ \| | / /_/ | | || | \___ /|__| (____ /____/\____ | |__||__| /_____/ \/ \/ grep rough audit - static analysis tool v2.8 written by @Wireghoul =================================[justanotherhacker.com]=== libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/waf/rules/IPRule.java-64- libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/waf/rules/IPRule.java:65: String sourceIP = request.getRemoteAddr() + ""; libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/waf/rules/IPRule.java-66- ############################################## libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/waf/rules/Rule.java-40- public void log( HttpServletRequest request, String message ) { libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/waf/rules/Rule.java:41: logger.warning(Logger.SECURITY_FAILURE,"[IP=" + request.getRemoteAddr() + libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/waf/rules/Rule.java-42- ",Rule=" + this.getClass().getSimpleName() + ",ID="+id+"] " + message); ############################################## libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/filters/SecurityWrapperRequest.java-270- */ libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/filters/SecurityWrapperRequest.java:271: public String getLocalAddr() { libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/filters/SecurityWrapperRequest.java:272: return getHttpServletRequest().getLocalAddr(); libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/filters/SecurityWrapperRequest.java-273- } ############################################## libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/filters/SecurityWrapperRequest.java-528- */ libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/filters/SecurityWrapperRequest.java:529: public String getRemoteAddr() { libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/filters/SecurityWrapperRequest.java:530: return getHttpServletRequest().getRemoteAddr(); libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/filters/SecurityWrapperRequest.java-531- } ############################################## libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/DefaultUser.java-421- setLastLoginTime(new Date()); libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/DefaultUser.java:422: setLastHostAddress( ESAPI.httpUtilities().getCurrentRequest().getRemoteAddr() ); libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/DefaultUser.java-423- logger.trace(Logger.SECURITY_SUCCESS, "User logged in: " + accountName ); ############################################## libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/Log4JLogger.java-434- if (ESAPI.currentRequest() != null && logServerIP) { libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/Log4JLogger.java:435: appInfo.append(ESAPI.currentRequest().getLocalAddr()).append(":").append(ESAPI.currentRequest().getLocalPort()); libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/Log4JLogger.java-436- } ############################################## libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/JavaLogFactory.java-308- if ( ESAPI.currentRequest() != null && logServerIP ) { libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/JavaLogFactory.java:309: appInfo.append( ESAPI.currentRequest().getLocalAddr() + ":" + ESAPI.currentRequest().getLocalPort() ); libowasp-esapi-java-2.1.0/src/main/java/org/owasp/esapi/reference/JavaLogFactory.java-310- } ############################################## libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/waf/MustMatchTest.java-37- request = new MockHttpServletRequest( url ); libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/waf/MustMatchTest.java:38: request.setRemoteAddr("192.168.1.5"); // necessary to pass IPRule libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/waf/MustMatchTest.java-39- request.getSession().setAttribute("ESAPIUserSessionKey", user); ############################################## libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/waf/MustMatchTest.java-49- request.addHeader("x-roles", "admin" ); libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/waf/MustMatchTest.java:50: request.setRemoteAddr("192.168.1.100"); libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/waf/MustMatchTest.java-51- request.getSession().setAttribute("ESAPIUserSessionKey", user); ############################################## libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java-518- */ libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java:519: public String getLocalAddr() { libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java-520- return "10.1.43.6"; ############################################## libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java-632- */ libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java:633: public String getRemoteAddr() { libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java-634- return remoteHost; ############################################## libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java-636- libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java:637: public void setRemoteAddr(String remoteHost) { libowasp-esapi-java-2.1.0/src/test/java/org/owasp/esapi/http/MockHttpServletRequest.java-638- this.remoteHost = remoteHost;