Uploaded image for project: 'WORKTERRA'
  1. WORKTERRA
  2. WT-12633

[Security] ZAP- Scan report Issue : Application Error Disclosure

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Low
    • Resolution: Cannot Reproduce
    • Affects Version/s: None
    • Fix Version/s: None
    • Component/s: None
    • Labels:
      None
    • Environment:
      Production
    • Bug Severity:
      Medium
    • Level:
      Admin, Partner
    • Module:
      BenAdmin - Security
    • Reported by:
      Harbinger
    • Company:
      All Clients/Multiple Clients
    • Item State:
      Development - In Analysis

      Description

      This page contains an error/warning message that may disclose sensitive information like the location of the file that produced the unhandled exception. This information can be used to launch further attacks against the web application. The alert could be a false positive if the error message is found inside a documentation page.

      For more details please refer attached HTML report.

      CC SamirRakesh RoyJaideep Vinchurkaranirudha joshi

        Attachments

          Issue Links

            Activity

            prasadp Prasad Pise (Inactive) created issue -
            prasadp Prasad Pise (Inactive) made changes -
            Field Original Value New Value
            Link This issue relates to NF-2714 [ NF-2714 ]
            prasadp Prasad Pise (Inactive) made changes -
            Attachment StaticReport_Spider.html [ 69274 ]
            prasadp Prasad Pise (Inactive) made changes -
            Attachment SearchEmp_Spider.html [ 69276 ]
            prasadp Prasad Pise (Inactive) made changes -
            Attachment EnrollNowWithPartnerLogin.html [ 69277 ]
            santosh.balid Santosh Balid (Inactive) made changes -
            Attachment InternalErrorScreen.jpg [ 69783 ]
            santosh.balid Santosh Balid (Inactive) made changes -
            Status Open [ 1 ] In Development [ 10007 ]
            santosh.balid Santosh Balid (Inactive) made changes -
            Item State Parent values: Development(10200)Level 1 values: In Analysis(10204)
            santosh.balid Santosh Balid (Inactive) made changes -
            Assignee Santosh Balid [ santosh.balid ] Prasad Pise [ prasadp ]
            sachin.hingole Sachin Hingole (Inactive) made changes -
            Status In Development [ 10007 ] Local Testing [ 10200 ]
            rakeshr Rakesh Roy (Inactive) made changes -
            Status Local Testing [ 10200 ] Reopen in Local [ 10018 ]
            rakeshr Rakesh Roy (Inactive) made changes -
            Status Reopen in Local [ 10018 ] In Development [ 10007 ]
            santosh.balid Santosh Balid (Inactive) made changes -
            Resolution Cannot Reproduce [ 5 ]
            Status In Development [ 10007 ] Rejected [ 10004 ]
            prasadp Prasad Pise (Inactive) made changes -
            Status Rejected [ 10004 ] Closed [ 6 ]
            vijayendra Vijayendra Shinde (Inactive) made changes -
            Link This issue relates to DEV-13718 [ DEV-13718 ]

              People

              Assignee:
              prasadp Prasad Pise (Inactive)
              Reporter:
              prasadp Prasad Pise (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: