Tag: security
Questions Related to security
-
Custom
-
Industry Standard
-
Compliance
-
Delta Analysis
-
Track the page parameter
-
Set the link limit to 2
-
Set the redundant path limit to 5
-
Ignore the productid parameter
-
Broken links
-
Cookies
-
Javascripts
-
Visited URLs
-
Appscan could not login to your application
-
Redundant path limit was set to 55
-
Link limit was set to 500
-
Additional servers and domains were not listed properly
-
/transfer.asp?fromacct=”account1”&toaccount=”account2”&amount=200.45&trnsactToken=”121431ersw”
-
/email.jsp&to=”[email protected]”&subject=”hi”
-
Use https for all secured pages
-
Use encryption for session cookies
-
Display “Welcome, user!” on the home page
-
Display only “Welcome” on the home page
-
Invalidate and destroy the session when user logs out
-
Use persistent cookies for session management
-
Send 403 return code
-
Send 302 return code and redirect the user to the home page
-
Send 404 return code
-
Send 200 return code
-
Cross site request forgery
-
Cross site scripting
-
HTTP Response Splitting
-
SQL injection
-
Reset password functionality was invoked during the testing
-
Change password form was submitted by appscan
-
Somebody changed your password while the scan was running
-
This is a result of an SQL injection test by appscan
-
Somebody put those files there during the test
-
Appscan created those files
-
Third party domain was not excluded from the scan
-
It’s a result of cross site scripting attack