Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
CORE IMPACT Pro
Penetration Testing Software
SHARE

CORE IMPACT Pro Penetration Testing Reports: 
Web Application Vulnerability Report


Testing Vectors:
Web Applications

The Web Application Vulnerability Report provides comprehensive information about every security flaw that can be successfully exploited during penetration testing, including those available to SQL Injection, Cross-Site Scripting and Remote File Inclusion attacks. Driven by the solution’s industry-leading ability to dynamically scan URLs and applications to find vulnerabilities and test any issues that are discovered, the Web Application Vulnerability Report allows organizations to gain immediate insight into one of the most pressing areas of risk they face today as cybercriminals increase their focus on web-based targets.

Targeted Report Results:

  • Basic vulnerability data: provides specific URL, object and parameter information allowing you to target costly remediation efforts.
  • Advanced vulnerability data: shows you precisely how individual flaws can be compromised to feed overall risk assessment.
  • Vulnerability background data: informs you exactly which types of flaws are most ubiquitous and exploitable across multiple vectors.
  • Risk level intelligence: illustrates how attackers can use vulnerabilities to escalate privileges across applications and connected systems.

Takeaways:

  • Comprehensive understanding of web apps vulnerabilities and the ability of real-world attacks to exploit any flaws discovered.
  • In-depth intelligence that allows organizations to target expensive application re-coding efforts on their most significant risks.
Related Content



Learn more about penetration testing, the approach used by CORE IMPACT security testing software solutions.

Additional Reporting Features

CORE IMPACT Pro reports offer the following additional features for meeting your unique assessment goals:

SCAP Support
In support of the SCAP standard, CORE IMPACT Pro incorporates CVE, CVSS and CPE data into the product's reports and can also export this data in XML format for use in centralized security databases.

Customization
Many CORE IMPACT Pro reports can be tailored to meet the needs of different internal constituencies by providing tailored results for groups including IT management, network administrators, remediation staff, and other IT/security professionals. Additionally, the reports are exportable to other applications for integration with complimentary sets of data.

Aggregation
CORE IMPACT Pro report consolidation capabilities enable customers to create overarching reports of enterprise penetration testing results. Users can import and consolidate results from different penetration tests - conducted at various times using multiple workspaces and consoles - into each of IMPACT Pro’s standard report templates.