IBM AppScan Why does the "Application Error" still appeared where implementation already done? -
i using ibm app scan , have found error shown "informational" rather severity = high. have implemented codes countermeasure after second round scan still there. may know purpose of these informational scan results?
appscan telling able trigger application error in app. application isn't correctly checking value appscan put parameter. isn't security vulnerability, why listed informational. informational issues there review , potentially take action.
if click issue, can see more details in 'issue details' pane. information there includes advisory, explains nature of problem. shows full http request , response, including parameter or cookie value appscan modified in order trigger issue. should review information see why fix has apparently not solved problem.
Comments
Post a Comment