<?xml version="1.0" encoding="UTF-8" standalone="no"?>
<configuration>
    <policy>QA Standard</policy>
    <statsId>std-qa-std</statsId>
    <readonly>true</readonly>
    <scanner>
        <level>OFF</level>
        <strength>MEDIUM</strength>
    </scanner>
    <plugins>
        <p0>
            <name>Directory Browsing</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p0>
        <p6>
            <name>Path Traversal</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p6>
        <p7>
            <name>Remote File Inclusion</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p7>
        <p10058>
            <name>GET for POST</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p10058>
        <p20012>
            <name>Anti-CSRF Tokens Check</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p20012>
        <p20019>
            <name>External Redirect</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p20019>
        <p40009>
            <name>Server Side Include</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40009>
        <p40012>
            <name>Cross Site Scripting (Reflected)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40012>
        <p40014>
            <name>Cross Site Scripting (Persistent)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40014>
        <p40016>
            <name>Cross Site Scripting (Persistent) - Prime</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40016>
        <p40017>
            <name>Cross Site Scripting (Persistent) - Spider</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40017>
        <p40018>
            <name>SQL Injection</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40018>
        <p40019>
            <name>SQL Injection - MySQL (Time Based)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40019>
        <p40020>
            <name>SQL Injection - Hypersonic SQL (Time Based)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40020>
        <p40021>
            <name>SQL Injection - Oracle (Time Based)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40021>
        <p40022>
            <name>SQL Injection - PostgreSQL (Time Based)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40022>
        <p40026>
            <name>Cross Site Scripting (DOM Based)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40026>
        <p40027>
            <name>SQL Injection - MsSQL (Time Based)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40027>
        <p40040>
            <name>CORS Header</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40040>
        <p40044>
            <name>Exponential Entity Expansion (Billion Laughs Attack)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p40044>
        <p50000>
            <name>Script Active Scan Rules</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p50000>
        <p90017>
            <name>XSLT Injection</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90017>
        <p90019>
            <name>Server Side Code Injection</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90019>
        <p90020>
            <name>Remote OS Command Injection</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90020>
        <p90021>
            <name>XPath Injection</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90021>
        <p90023>
            <name>XML External Entity Attack</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90023>
        <p90025>
            <name>Expression Language Injection</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90025>
        <p90026>
            <name>SOAP Action Spoofing</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90026>
        <p90029>
            <name>SOAP XML Injection</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90029>
        <p90035>
            <name>Server Side Template Injection</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90035>
        <p90037>
            <name>Remote OS Command Injection (Time Based)</name>
            <enabled>true</enabled>
            <level>MEDIUM</level>
        </p90037>
    </plugins>
</configuration>
