Advisory tab
The second tab of the Detail pane is the advisory.
The information on the Advisory tab provides technical details on the selected issue and reference links for more information. This information is essential when you need to explain what has to be fixed and why.
The Advisory tab may include any of the following sections:
- Test Name
- The name of the test as it appears in the Result List.
- Severity
- The severity assigned to this vulnerability.
- Type
- Whether this vulnerability is application-level or infrastructure-level.
- WASC Threat Classification
- An Internet link to the page of the web Application Security Consortium that describes this class of threat.
- CVE ID(s)
- The Industry Standard number(s) for this type of vulnerability (see CVE support.)
- CWE ID(s)
- The Industry Standard number(s) for this issue (see CWE support.)
- XFID
- The X-Force ID for this issue (see X-Force support.)
- Security Risk
- An explanation of how this issue is a security risk to your application.
- Training Module
- An Adobe® Flash presentation that explains the and demonstrates the issue.
- Possible Causes
- Suggests how the issue came to exist in your application
- Technical Description
- Detailed technical description of the issue
- Affected Products
- Third Party products that could be affected by the issue.
- References and Relevant Links
- Links to additional information.