Recommended Actions Export File Contents

The following is not supported in Tenable FedRAMP Moderate environments. For more information, see the Tenable FedRAMP Moderate Product Offering.

You can export recommended actions (solutions) from two recommended action pages. The export contents from each page are unique to that page.

Recommended Actions Export for a Group of Assets

If you export recommended actions and assets affected files from the Recommended Actions page for a group of assets, your export files contain the following data.

Export Field Description
detail.csv — the Assets Affected file
solution_id The solution's UUID.
solution_title

A description for the solution.

asset_uuid The asset's unique identifier.
hostname The asset's hostname.
ipv4 The asset's IPv4 address.
operating_system The asset's operating system.
cve_count The number of vulnerabilities on this asset addressed by the solution.
cve_instance_count

The total number of vulnerability instances on this asset addressed by the solution.

Tip: A vulnerability instance is a single instance of a vulnerability appearing on an asset, identified uniquely by plugin ID, port, and protocol.

solution.csv — the Selected Actions file
solution_id The solution's UUID.
solution_title A description for the solution.
assets_affected The total number of assets affected by the vulnerabilities addressed by the solution.
cve_count The total number of vulnerabilities addressed by the solution.
vpr The highest VPR for the vulnerabilities addressed by the solution.
cvss

The highest CVSSv2 score (or CVSSv3 score, when available) for the vulnerabilities addressed by the solution.

Recommended Actions Export for All Assets

If you export recommended actions and assets affected files from the Recommended Actions page for all assets, your export files contain the following data.

Export Field Description
detail.csv — the Assets Affected file
solution_id The solution's UUID.
solution_title

A description for the solution.

asset_uuid The asset's unique identifier.
hostname The asset's hostname.
ipv4 The asset's IPv4 address.
operating_system The asset's operating system.
acr_score The asset's ACR.
acr_severity (Requires Tenable One or Tenable Lumin license) The ACR category of the ACR calculated for the asset.
aes_score The AES for the asset.
aes_severity (Requires Tenable Lumin license) The AES category of the AES calculated for the asset.
vuln_count The number of vulnerabilities on this asset addressed by the solution.
vuln_instance_count

The total number of vulnerability instances on this asset addressed by the solution.

Tip: A vulnerability instance is a single instance of a vulnerability appearing on an asset, identified uniquely by plugin ID, port, and protocol.

summary.csv — the Selected Actions file
solution The solution's UUID.
summary A description for the solution.
assets_affected The total number of assets affected by the vulnerabilities addressed by the solution.
vulnerabilities The total number of vulnerabilities addressed by the solution.
exploit_code_maturity The key driver value for the highest VPR for the vulnerabilities addressed by the solution.
vpr The highest VPR for the vulnerabilities addressed by the solution.
cvss

The highest CVSSv2 score (or CVSSv3 score, when available) for the vulnerabilities addressed by the solution.