The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Different results Automated Scan vs Manual Active Scan

Artur | Last updated: Jun 10, 2022 04:34PM UTC

I am pretty sure this is some misconfiguration issue but I would like to clarify this. When I do Automated scan with "crawl fast" and "audit maximum" configurations I am not getting same results as when I do "active scan" on a single request via intercept. So the question is: what is Active Scan's configuration and how to configure Automated scanner to use it? Here is the request being send to Active Scan ... I'd imagine Automated scan is capable of triggering the "Action buttons" or I do need to enabled it somehow? POST /acXXX/SystemInfo.asp HTTP/1.1 Host: 192.168.229.107 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Firefox/91.0 Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8 Accept-Language: en-US,en;q=0.5 Accept-Encoding: gzip, deflate Content-Type: application/x-www-form-urlencoded Content-Length: 71 Origin: http://192.168.229.107 Connection: close Referer: http://192.168.229.107/AcXXX/SystemInfo.asp Cookie: toc-toggle=true; ASPNETSessionId=pw4bwho5mqnj; __RequestVerificationToken_L0FjdGl2YXRvcg2=Yo0eQ4-luF8NF0rk1T26LosO4dHrKjK-cZY8IoQTBAahYXBY01 Upgrade-Insecure-Requests: 1 Action=Update&description=testqa&contact=test+&name=test+&location=test

Ben, PortSwigger Agent | Last updated: Jun 13, 2022 09:25AM UTC