I am trying to activate my webinspect license from SLD portal but I am asking to insert an Activation Code and Additional Instructions so from where I get the Activation Code
I am getting 2 false positives for LDAP Injection and was hoping to help the scanner out instead of marking them. Does anyone happen to know what the expected response should be so that it isn't triggered. I tried returning 400 when it's syntax is found…
Hi,
I am migrating the WebInspect DB server from a host which has reached EOL. Here's how I plan to test the migration:
1. Install MS SQL server 2019 on a test VM with new OS.
2. Migrate the data.
3. Point the Production WebInspect agents to the…
I want to perform SCA analysis on my source code. By following some tutorials, I learned that we need a setup like the one below:
SSC (Software Security Center) Scan Central SAST Controller Sensor SCA Client
However, the trial version for Software…
Hello, I have made scan with Basic scan and then try to generate Aggregate report.
And this error has been appeared.
[7/11/2024 9:13:26 AM]: Report Failed System.InvalidOperationException: The given ColumnMapping does not match up with any column…
While creating a report after a successful automated scan, the following error gets generated:
[6/18/2024 6:00:58 PM]: Report Failed System.Data.SqlClient.SqlException (0x80131904): Failed to load Msxmlsql.dll. Could not find prepared statement with…
Hello, I have run a basic scan to " ">http://testphp.vulnweb.com" with OWASP Top 10 - 2023 Policy.
The problem here is that Webinspect doesn't scan parameters inside listproducts as shown here.
Hello, I have run an API scan with enable Traffic Monitor then the scan has been stopped and this message appeared.
Error in details:
System.AppDomain Build:23.2.0.121
Exception type: System.Data.SQLite.SQLiteException
database disk image is…
Hi everyone, I have installed Webinspect exe and Webinspect API on Windows server 2019 together.
The Webinspect API was configured with none Authentication and none use the HTTPs.
The problem here is that ScannerWorkerService not starting.
This…
Hi everyone, I have installed Webinspect exe on Windows server 2019.
I want to activate Webinspect from LIM, so I have created a license pool and tried to connect it from Webinspect and it gives me an error.
"Could not obtain a license from the pool…
We're experiencing storage used-up-issue for the MS SQL Server (used by WebInspect). Currently, the top tables which consume most of the storage are:
"Session", "SessionComplationID" and "ScanStatistics"
Is it possible we can have a SQL statement…
I am basically trying to generate reports of scan(s) using the WebInspect REST API in order to automate our post scan workflow.
Environment details :
WebInspect - 23.2.0.121
OS - Windows Server 2016
WebInspect API service is running as the…
Hi All,
When I scan the Web Application (Build on modern frontend technology stack -SPA), then i notice that in the audit phase of the scan the scan is freeze, but the scan status is still running and scan duration is also increasing even I didn't…
Hi during my scan i receive this error
1/15/2024 11:17:12 AM Error in Write, swallowing exception System.InvalidOperationException: Cannot access destination table 'ScanStatistics'. ---> System.Data.SqlClient.SqlException: Execution Timeout Expired…
Hi Everyone,
I have an issue with my Fortify ScanCentral DAST. The scan ran for 1-2 hours than it went to unknown or sometimes interrupted status with no logs can be downloaded from Fortify SSC. I have tried all the suggestion that I can found in this…
Hello everyone,
I faced an issue when I wanted to upload GraphQL file in Fortify ScanCentral DAST scan setting. The error is invalid file extension.
Has anyone faced the same error like this? If yes, what should I check to resolve this issue?
Any…
Hi All,
Need to know the best practices that is followed for Web Inspect Scan. Kindly provide your valuable Inputs.
Below is the practice we followed initially for the
Crawl and Audit: · Thorough Crawl. · Audit with policy OWASP Top 10 2021/OWASP…
Hello,
I need to scan this app that does not support Firefox browser (cannot ask the developer to change this because we need to comply with company policy).
When I want to setup the login macro, I tried to change the user agent in the TruClient setting…
H ello Dears, I hope everything is well . I have a quick question for SCA and SSC and webinspect . I already installed them in a different Azure cloud instance I also installed and configured the scan central controller and sensor. after I finished the…
Hello,
I have an issue to run the DAST scan in SC DAST. I am using version 23.1.
The issue is the application cannot be rendered using Firefox, so when I recorded the login macro, I had to specify in the TruClient Webinspect setting to use Chrome…
Hello Everyone,
I have just configured scancentral dast 23.1.0 and link it to Fortify Software Security Center.
When creating new settings I always enable the option "Traffic monitor".
I'm also running the WebInspect as a sensor using docker.…