This is a global view of all detected vulnerabilities, including application and network vulnerabilities, organized by our Problem Groups.
Global Vulnerabilities - Table of Contents
Global Vulnerabilities - Overview
The data is organized and can be sorted from the Problem Group Name pod. This includes the following:
Problem Count
Company Count
Asset Count
Once you have selected one of the Problem Group options from the left panel, the Problem Details pod on the right side of the screen will display the details, which include the Problem Name, Description, Assets, Score, and Severity data.
Global Vulnerabilities - Details
Problem Group Name
The system automatically classifies discovered vulnerabilities into the specific Problem Group Names in the table below.
Problem Group Name | Description / Use Case |
---|---|
0.85 > EPSS >= 0.90 | Vulnerabilities grouped by EPSS Scoring >=85/90% |
0.90 > EPSS >= 0.85 | Vulnerabilities grouped by EPSS Scoring >=90/95% |
0.95 > EPSS >= 0.90 | Vulnerabilities grouped by EPSS Scoring >=90/95% |
Antivirus Not Installed | Antivirus is not installed on the Asset |
Backup Not Performed | Backup Agent is not installed on the Asset |
CISA Notified Vulnerabilities | Vulnerabilities grouped by CISA classification; source CISA.GOV |
Critical Vulnerabilities | Vulnerabilities grouped by severity of Critical |
Database Vulnerabilities | Vulnerabilities grouped by classification of database |
EPSS >= 0.95 | Vulnerabilities grouped by EPSS Scoring >=95% |
Firewall Misconfiguration | Vulnerabilities grouped by classification of firewall misconfigure |
High Severity Vulnerabilities | Vulnerabilities grouped by severity of High |
Information Disclosure | Vulnerabilities grouped by classification of information disclosure |
Informational | This information captured is for information purpose |
Low Severity Vulnerabilities | Vulnerabilities grouped by severity of Low |
Mail Vulnerabilities | Vulnerabilities grouped by classification of e-mail |
Medium Severity Vulnerabilities | Vulnerabilities grouped by severity of Medium |
Operating System out of Support | The operating system has reached the End Of its Support |
Remote Access Vulnerabilities | Vulnerabilities grouped by classification of remote access |
Remote Login Vulnerabilities | Vulnerabilities grouped by classification of remote login |
Running Services | Vulnerabilities grouped by classification of running services |
SMB Vulnerabilities | Vulnerabilities related to SMB |
SSL Certificate Info | SSL Certificate information |
SSL/TLS Vulnerabilities | SSL/TLS-related Vulnerabilities |
Web Server Fingerprint | Vulnerabilities grouped by classification of web server fingerprint |
Problem Details
This screen gives detailed information about the selected Problem Group Name vulnerabilities. It includes the Problem Name, Description, Scoring Data, Assets count, and Companies affected.
Field | Description |
---|---|
Problem Name | Displays the unique CVE-ID or alike based on the vulnerability |
Description | Displays the full description with details about the discovered vulnerability |
Assets | Displays the number of assets; click to view additional details |
Score | Displays the Base Score, EPSS Score, Exploitability Score, and Impact Score values based on the selected CVE-ID |
Severity | Displays the severity of the selected vulnerability |
Problem Name
This includes the unique CVE-ID or vulnerability description, with a link to the threat source.
Click on the CVE-ID value to be directed to the source.
(IE: https://nvd.nist.gov/vuln/detail/CVE-2008-7144)
Description
Includes the full description of the vulnerability.
Assets
Displays the number of assets associated with the selected vulnerability.
Score
Displays scores based on the vulnerability, including Base Score, EPSS Score, Exploitability Score, and Impact Score details.
Severity
The severity of the selected vulnerability is displayed and categorized as Critical, High, Medium, or Low.
Global Vulnerabilities - Action Toolbar Actions
The standard Alerts feature is only available on the right navigation bar; this displays the standard System Events data.