Help with interpreting Fortify scan results
Hi -
We are using EBS 12.2.9, which is running on RH Linux 7. Our company recently scanned an externally facing URL that is used in conjunction with eAuction on a DMZ/external-facing server.
There was some findings that were marked as low priority and we wanted to see if there was anything the may need to be done ... or, at the very least, have a better understanding as to what they mean.
Here are the findings in terms of the categories (there were 4 altogether):
System Information Leak: External Cache Management: Insecure Policy Cookie Security: Missing SameSite Attribute HTML5: Misconfigured Content Security Policy