This is a presentation Hernan S. Abbamonte did some time ago.
It contains a summary of some common web app attacks.
The document and slides are in spanish only.