GovWay Console di Configurazione

Generated on Sat, 11 Apr 2026 17:09:14 ZAP Version: 2.17.0 ZAP by Checkmarx

Most Severe Alert
Informational

Report Description

  • Analisi per la console di configurazione di GovWay

Most Common Bug

Vulnerability Impact

Vulnerability Descriptions
# Name Impact
1 Session Management Response Identified [1]
The given response has been identified as containing a session management token. The 'Other Info' field contains a set of header tokens that can be used in the Header Based Session Management Method. If the request is in a context which has a Session Management Method set to "Auto-Detect" then this rule will change the session management to use the tokens identified.
2 User Controllable HTML Element Attribute (Potential XSS) [1]
This check looks at user-supplied input in query string parameters and POST data to identify where certain HTML attribute values might be controlled. This provides hot-spot detection for XSS (cross-site scripting) that will require further review by a security analyst to determine exploitability.