Burp Suite User Forum

Create new post

Checking setting/parameter after ZAP report

Alex | Last updated: Jul 25, 2022 09:33AM UTC

Hi, I found that our Burp Suit Professional report did contain only informational and Low severity after scanning. On the other hand, our Dev team has scanned the same website with Zap. I was surprised that it has rich information including Critical and High severity the report. I would like to know which setting/parameter on Burp I need to handle if I want to have a similar Zap report. Thank you. Regards, Alex

Hannah, PortSwigger Agent | Last updated: Jul 25, 2022 11:59AM UTC

Hi Alex Could you provide some further information on your site and scan configuration? Does your site include a login area? Did you set up any application logins as part of your scan? Did the Scanner encounter any errors whilst scanning? What scan configuration did you use while scanning? If you'd prefer, you can drop us an email at support@portswigger.net

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.