diff --git a/tdrs-frontend/reports/zap.conf b/tdrs-frontend/reports/zap.conf index 7b9cddc015..d84da6b877 100644 --- a/tdrs-frontend/reports/zap.conf +++ b/tdrs-frontend/reports/zap.conf @@ -85,13 +85,13 @@ ##### forbidden, instead of just a 403 being returned. The test is ##### treating this as though the SQL injection worked, since a page ##### is returned. -40018 FAIL (SQL Injection - Active/release) -40019 FAIL (SQL Injection - MySQL - Active/beta) -40020 FAIL (SQL Injection - Hypersonic SQL - Active/beta) -40021 FAIL (SQL Injection - Oracle - Active/beta) +40018 IGNORE (SQL Injection - Active/release) +40019 IGNORE (SQL Injection - MySQL - Active/beta) +40020 IGNORE (SQL Injection - Hypersonic SQL - Active/beta) +40021 IGNORE (SQL Injection - Oracle - Active/beta) 40022 FAIL (SQL Injection - PostgreSQL - Active/beta) 40023 FAIL (Possible Username Enumeration - Active/beta) -40024 FAIL (SQL Injection - SQLite - Active/beta) +40024 IGNORE (SQL Injection - SQLite - Active/beta) 40025 FAIL (Proxy Disclosure - Active/beta) 40026 FAIL (Cross Site Scripting (DOM Based) - Active/beta) 40027 FAIL (SQL Injection - MsSQL - Active/beta)