How to Approach CVEs Marked as "DISPUTED" and "WON’T FIX" in PCI-DSS Pentest

When conducting penetration testing in a PCI-DSS compliance context, we found a known security vulnerability that’s identified by a CVE number.
In this case, the finding in question is CVE-2016-20012, which is marked on the CVE database as… Continue reading How to Approach CVEs Marked as "DISPUTED" and "WON’T FIX" in PCI-DSS Pentest