ServiceNow ITSM Pro Incident Rule Fields

The ServiceNOW integration with Tenable Vulnerability Management produces incident rule fields and pushes the following asset attributes to ServiceNow ITSM Pro.

Incident Rule Fields and Asset Attributes

Label Name
cvssV4Supplemental u_cvssv4supplemental
seolDate u_seoldate
epssScore u_epssscore
recastRiskRuleComment u_recastriskrulecomment
acceptRiskRuleComment u_acceptriskrulecomment
hostUUID u_hostuuid
acrScore u_acrscore
Agent UUID u_agent_uuid
First Found u_first_found
IPs u_ips
Operating System u_operating_system
Plugin Modification Date u_plugin_modification_date
Priority u_priority
Scan u_scan
severity_modification_type u_severity_modification_type
XREF u_xref
Description u_description
indexed u_indexed
Netbios Name u_netbios_name
Plugin Family Type u_plugin_family_type
Port Port u_port_port
risk_accepted u_risk_accepted
severity_default_id u_severity_default_id
VPR Context u_vprcontext
Configuration Item u_ci
Hostname u_hostname
Last Found Date u_last_found_date
Plugin Description u_plugin_description
Plugin Synopsis u_plugin_synopsis
Repository ID u_repository_id
SC Unique u_scunique
Tenable Plugin ID u_tenable_plugin
FQDN u_fqdn
last_fixed u_last_fixed
pluginName u_pluginname
Plugin Publication Date u_plugin_publication_date
Reopened u_reopened
Scan Started At u_scan_started_at
State u_state
vulnUniqueness u_vulnuniqueness
vulnUUID u_vulnuuid

Incident Rule Fields and Asset Attributes (cont'd)

Label Name
cvssV4BaseScore u_cvssv4basescore
cgiScanEnabled u_cgiscanenabled
keyDrivers u_keydrivers
assetExposureScore u_assetexposurescore
thoroughScanEnabled u_thoroughscanenabled
paranoidScanEnabled u_paranoidscanenabled
finding_id u_finding_id
BIOS UUID u_bios_uuid
hasBeenMitigated u_hasbeenmitigated
Last Found u_last_found
Plugin CVE u_plugin_cve
Plugin Solution u_plugin_solution
Repository Data Format u_repository_data_format
Scan UUID u_scan_uuid
Substate u_substate
Asset Hostname u_asset_hostname
First Found Date u_first_found_date
Job Type u_job_type
Output u_output
Plugin Name u_plugin_name
Product Type u_product_type
Scan Completed At u_scan_completed_at
Source Name u_source_name
Device Type u_device_type
IP u_ip
operatingSystem u_operatingsystem
Plugin ID u_plugin_id
Port Protocol u_port_protocol
Risk Recasted u_risk_recasted
Severity ID u_severity_id
VPR Score u_vpr_score
source u_source
Connector u_connector
hostUniqueness u_hostuniqueness
MAC Address u_mac_address
Plugin Family u_plugin_family
Port u_port
Repository Name u_repository_name
Severity u_severity
uniqueness u_uniqueness
attachment u_attachment
cvssV4Vector u_cvssv4vector
cvssV4ThreatScore u_cvssv4threatscore
cvssV4ThreatVector u_cvssv4threatvector