The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Burp Professional and Burp Enterprise Reports Issue

sania | Last updated: Mar 11, 2020 09:53AM UTC

Hi Team, I am scanning a application in Burp Enterprise Version: 2020.2-3025 and Burp Professional Version v2020. As per my observation Burp Pro is showing more number issues and Burp ENT pro is showing very less number of issue. Burp PRO ISSUE: Burp Professional Version v2020 Scan Time: 2m 1.Cookie scoped to parent domain 2. Password field with autocomplete enabled 3. Long redirection response 4.Input returned in response (reflected) 5.TLS cookie without secure flag set 6. Email addresses disclosed 7. TLS certificate Burp ENT Issue: Scan Time: 1m 24s 1.Input returned in response (reflected) 2.TLS certificate Could you please let me know the root cause for it and why ENT is showing is less vulnerability. As I am using the same PRO configuration JSON file in ENT to get the same report. Regards, Sania

Michelle, PortSwigger Agent | Last updated: Mar 11, 2020 11:52AM UTC