Forum Discussion
Vulnerabilities file doesn't contain Vulnerabilities Found And Verified By IBM AppScan
This is what I got when I tried to import XML output from IBM AppScan to F5 ASM security policy (using vulnerability tool output). Did anyone got the same?
did the appscan find vulnerabilities? have you checked the version? i seem to recall there was a version issue for one of the scanning vendors.
- HarshaPotharajuNimbostratus
Here are the first two lines of XML.
Note: IBM AppScan is neither standard nor enterprise edition. It's in the cloud.
- PK_BhatiaNimbostratus
seems only supported version is standard edition. https://support.f5.com/csp/article/K14089
very possible, probably the best is to contact your F5 sales about this and please report back.
- HarshaPotharajuNimbostratus
The AppScan format that F5 supports is 9.0.3.1 and what we have is 2.42, Note that these are xmlExportVersions not xml versions. F5 Product Development has assigned ID 642185 to this issue and they have introduced the fix of this issue in version 13.0.1, which was released a week ago. Also they are trying to introduce the same fix for upcoming HFs' of other versions.
Thanks,
Harsha.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com