VAPT Overview. Scope: 7 Applications + 2 Firewalls Assessment Type: Web & Network VAPT Overall Security Posture: MODERATE Findings: Critical: 0 | High: 3 | Medium: 26 | Low: 20 | Info: 2.
Scope of Assessment. Network Testing – 2 Firewalls (External) Web Application Testing – 7 Applications (Black Box).
Vulnerability Distribution. Majority of findings fall under Medium severity Limited High-risk issues identified No Critical vulnerabilities observed.
Top High-Risk Findings. No Rate Limiting – Risk of brute force attacks SSRF – Potential internal system access CORS Misconfiguration – Risk of data exposure.
Key Risk Themes. Authentication Weaknesses – Weak session & password controls Cryptographic Issues – TLS weaknesses & certificates Input Validation Risks – Injection & file upload issues.
Key Security Insights. Similar vulnerabilities observed across applications Security controls implemented inconsistently Primary impact areas: Authentication, Cryptography, Input Validation.
Security Posture Summary. No critical vulnerabilities identified Limited high-risk issues observed Overall environment is stable with scope for improving control consistency.