WebApp Sec mailing list archives

Re: nikto output question


From: "sunzi" <sunzi () mod-x co uk>
Date: Thu, 14 Nov 2002 13:37:43 -0500

One of Nikto's listed features is: Captures/prints any Cookies received.
Look about right to me.

sunzi
----- Original Message -----
From: "Martin Wasson" <martin_wasson () mastercard com>
To: <webappsec () securityfocus com>
Sent: Tuesday, November 12, 2002 1:17 PM
Subject: nikto output question


When scanning one of our sites with Nikto,  I got many outputs of this
nature:

Got Cookie on file '/' with value 'AnalysisUserId=10.1.2.194278741036737
926; path=/; expires=Friday, 31-Dec-2010 23:59:59 GMT'

One of the web admins told me this is not a problem, and is supposed to be
the case.  Is that accurate, or no?  Thanks.


Marty Wasson
Mastercard International





Current thread: