Vulnerabilities database import
Hello, We are working on an SecOps Vulnerability Response opportunity where customers is looking for to import vulnerability entries from following sources: What is the best way to do it? Thx, Marco
Interested in a ServiceNow event built for developers? Registration for now[dev]26 is officially open!
Hello, We are working on an SecOps Vulnerability Response opportunity where customers is looking for to import vulnerability entries from following sources: What is the best way to do it? Thx, Marco
Hi I'm still having issues with Remediation Task and when they run. We bundle up Remediation Tasks based on vulnerability name and assignment group being populated. If we run our remediation task rule it tears everything down and rebuilds all the Rem...
Hey everybody,We have just begun trying to use the recent added Exception Rules option within Vulnerability Response. Trying to formulate some of the procedural use cases in doing so, and I am wondering what others might have done to utilize this fe...
Hey all, How can we get a false positive VI/VG to automatically close without setting an expiration date in the request exception to avoid it opening to its previous state? According to the following VR state workflow diagram that is out of the box c...
Nexpose closes the vulnerable items when issue is fixed for assets/configuration items which is alive/operational in nexpose scanning but it is not happening for dead/non-operational assets, may i know why?I want to know is there any process to close...
We are attempting to calculate our customer usage for the last 90 days in the Security Operations module, Discovered items (sn_sec_cmn_src_ci table). The KB0861920 indicates that what is counted is; a server, a desktop, a laptop, a printer, a firewa...
Hey all, We been live with Vulnerability Response in our environment for 4 months now. Remediation Users like to fill in the work notes and then change the assignment group back to us (Vuln Admins) so that we get the message. This ends up skewing the...
Hi, Do Vulnerable Items get created and assigned a risk score based off of the risk score in the third party entries? Thanks,
Team, What's the best practice to handle the out of the box Security Incident Calculators Groups? The group can't be toggled inactive, but the calculators within can. What if a customer wants to customize them? Disable the calculators so they don't r...
Dear Team, We are integrating Tenable with ServiceNow and we are connecting Tenable with ServiceNow by entering API details through mid servers but Servicenow is not connecting with Tenable, here is the error log, Could you please help us on the same...
Hi Experts! We are working on integrating Qualys & ServiceNow and having issue on Host Detection Import. I can see the Host Asset Import working fine, but not the Host Detection Import. While checking the ecc queue I can see the XML response in Paylo...
I am looking to solution an issue where RHEL doesn't name vulnerabilities based on the operating system. I was thinking I could fix it by creating a new remediation task rule that only applies to Linux operating systems via a condition. I would then ...
Hello all, I know there is a means to use the "User Reported Phishing" options in the new release, however - most of our user reported phishing does not go to an analyst internally for review in a mailbox. This feature states that it parses an eml...
Hello, I am tasked with setting up the Tenable Connector to sync assets from ServiceNow to Tenable. I followed the instructions on Tenable Developer site and it works but there's a "but". In one run I can only import up to 100 asset IPs which should ...
How specifically does Servicenow VR account for vulnerability CVSS risk score changes for the Qualys integration? We have noticed QIDs update CVSS scores at Qualys, but not in ServiceNow. Qualys does not always update its Modified date, when a CVSS s...
