policy compliance_error ai_generated true

PCI DSS vulnerability scan failed: high severity findings

ID: policy/pci-dss-scan-failure

Also available as: JSON · Markdown
78%Fix Rate
83%Confidence
3Evidence
2023-01-01First Seen

Version Compatibility

VersionStatusIntroducedDeprecatedNotes
any active

Root Cause

PCI DSS compliance scan found vulnerabilities.

generic

Workarounds

  1. 90% success Remediate vulnerabilities by severity: critical and high first
  2. 85% success Implement compensating controls where direct fix not possible

Dead Ends

Common approaches that don't work:

  1. Dispute all findings without remediation 82% fail

    Fails next scan too

  2. Remove cardholder data environment from scope 75% fail

    May not be possible for payment processing