Reporting

  • At a minimum, the following information should be included for each finding: -Description of the finding and what platform(s) the vulnerability affects -Impact if the finding is left unresolved -Affected systems, networks, environments, or applications -Recommendation for how to address the problem -Reference links with additional information about the finding and resolving it -Steps to reproduce the issue and the evidence that you collected

Last updated