Create Vulnerable Items with SAM NVD

Bel_n Dom_nguez
Giga Contributor

Hello everyone!

I'm implementing Vulnerability Response for a client and I did the upgrade to Madrid yesterday.

I'm trying to update my VIs through SAM NVD. I did import all the feeds on the NVD libraries.

Nothing is created.... all the business rules related with Vulnerability Response are active.

¿Any idea of what is happening?

Thank you!!!

find_real_file.png

find_real_file.png

1 ACCEPTED SOLUTION

maulik_shah
ServiceNow Employee
ServiceNow Employee

If the vulnerable software doesn't match the software discovery model exactly, the system doesn't create the vulnerable items. You will have to manually select the software discovery model.

 

Thanks

Maulik

View solution in original post

10 REPLIES 10

andy_ojha
ServiceNow Employee
ServiceNow Employee

Hey there,

Just to confirm, when you save that configuration - are you seeing Vulnerable Item records created, but perhaps with empty CI values?

Are there records visible in the "Software Installations" module / table?  

  • Navigate to [Software Asset -> Discovery -> Software Installations]

Can we try to set a filter to the "Vulnerability filter" on the [SAM NVD Detection Page]?   

  • Example: ID | Is anything 
    -OR-
  • Example: Vulnerability score | is greater than | 3

On your "CI filter" - I would try out a more aggressive filter on there to ensure that you are actually pulling in valid CIs for your Vulnerable Items 

  • Example: CI Class | is | Hardware

Hope you get a win here. 

If there are still issues, it might be best to reach out to ServiceNow HI Support.

Reference:

 

 

 

 

 

 

Hi Andy, thanks for reply the post.

Software Integrations were created:

find_real_file.png

 

I have tried with different filters:

 

find_real_file.png

Mmy vulnerable items list is empty  😞find_real_file.png

In London version I did get to create them with no problem.... I don't know what I'm doing wrong

Bel_n Dom_nguez
Giga Contributor

I'm trying to do manual scans and the result is always FAILED.....

 

find_real_file.png

I think it has to be related with the discovery of the CMDB, is it possible??

The ITSM team is running all the discovery process and I don't know If the parameters they are discovering are the problem here...

 

 

maulik_shah
ServiceNow Employee
ServiceNow Employee

Hello -

There are a couple of things that need to be in place before the VIs can get created automatically such as: 

1. Detect Vulnerabilities using SAM data should be enabled before the NVD import or you need to click the "Save and Create vulnerable item button on the SAM NVD Vulnerability Detection form.

Can you please help me understand what you mean by "trying to do manual scan" and "update my VIs through SAM NVD". I can better serve you once I understand what you are trying to achieve.

 

Thanks

Maulik