Groups
Groups
Sign in
Groups
Groups
ZAP User Group
Conversations
About
Send feedback
Help
The meaning of "Confidence" in an alert
1,325 views
Skip to first unread message
Pongkiat Jongtriluck
unread,
Nov 30, 2019, 3:02:42 AM
11/30/19
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to OWASP ZAP User Group
As seen the attached image which is the HTML alert report.
The risk level is "High" and the confidence is "Medium".
Could anyone explain the meaning of "Confidence" for me?
Thanks
Screen Shot 2562-11-30 at 11.29.33.png
kingthorin+owaspzap
unread,
Nov 30, 2019, 5:27:47 AM
11/30/19
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to OWASP ZAP User Group
The "confidence" of or in the finding. In other word how sure ZAP is (or rather the original author of the particular scan rule) in the finding/alert.
https://github.com/zaproxy/zap-core-help/wiki/HelpUiDialogsAddalert#confidence
Pongkiat Jongtriluck
unread,
Dec 1, 2019, 9:49:46 PM
12/1/19
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to OWASP ZAP User Group
Thanks for your answer and useful link.
I'll take a look for more detail in wiki.
Reply all
Reply to author
Forward
0 new messages