View Plugin Attachments

The following feature is only available in Tenable FedRAMP Moderate environments.

Required Tenable Vulnerability Management User Role: Basic, Scan Operator, Standard, Scan Manager, or Administrator

Required Scan Permissions: Can View

Certain plugins include attachments that provide more details about specific vulnerabilities. For example, Plugin ID 92365 collects the hosts file from a remote host. After a scan is complete, you can view and save the attachment.

Note: Not all vulnerability output details include attachments.

Note: Attachments have a size limit of 1 MB.

To view plugin attachments for Tenable Vulnerability Management scans:

  1. View individual scan details for a scan that includes plugin attachments.
  2. On the Vulns by Plugin tab, click a vulnerability row with a plugin that includes attachments.

    The Vulnerability Details page appears.

  3. Click the Output tab.

    Tenable Vulnerability Management shows the plugin output.

  4. In the output table, in the row for the plugin that includes attachments, click the Attachment button.

    The attachment plane appears. This plane contains a table that lists available attachments.

  5. In the attachments table, click the attachment you want to view.

    The attachment contents appear in a new browser tab.

To view plugin attachments for Tenable Web App Scanning scans:

  1. In the upper-left corner, click the Menu button.

    The left navigation plane appears.

  2. In the left navigation plane, in the Web App Scanning section, click Scans.

    The Tenable Web App Scanning Scans page appears.

    Note: If your Tenable Web App Scanning license expires, your web application scans no longer appear in the scans table.

  3. In the scans table, click the scan that has a plugin attachment you want to view.

    The Scan Details page appears.

  4. In the Vulns by Plugin tab, click the plugin you want to view.

    The Vulnerability Details page appears.

  5. Click the Instances tab.

    A list of instances found for that plugin appears, categorized by URL.

  6. Click the instance that has attachments you want to include.

    The instance details plane appears.

  7. In the instance details plane, click the Attachments tab.

    The attachments table appears.

    Note: The Attachments tab appears only if the plugin instance includes an attachment.

  8. Click the attachment you want to view.

    The attachment opens as a .png image or complete HTTP web page.