View Findings Details
Required Tenable Web App Scanning User Role: Basic, Scan Operator, Standard, Scan Manager, or Administrator
On the Findings page, you can click a Tenable Web App Scanning vulnerability finding to view basic details about the finding in the preview panel.
To view details for a specific finding:
-
In the upper-left corner, click the button.
The left navigation plane appears.
-
In the left navigation plane, click Findings.
The Findings page appears, showing a table that lists your findings.
- In the findings table, click the row for the finding for which you want to see details.
The Findings Details page appears.
-
(Optional) In the upper-right corner, turn on Include Info Severity to list findings with info-level severity. This option is off by default. For more information on severity level, see Vulnerability Severity Indicators.
The following tables describe the information that appears in each option:
Section | Description |
---|---|
Affected Application |
Information about the affected application detected in the finding, including:
|
Description |
A description of the Tenable plugin that identified the vulnerability detected in the finding. |
Solution |
A brief summary of how you can remediate the vulnerability detected in the finding. Only appears if an official solution is available. |
See Also | Links to external websites that contain helpful information about the vulnerability detected in the finding. |
Vulnerability Properties |
Information about the vulnerability that the plugin identified, including:
|
Discovery |
Information about when Tenable Web App Scanning first discovered the vulnerability, including:
|
VPR Key Drivers |
VPR Key Drivers are the vulnerability and threat intelligence attributes that were significant factors in the calculation of the VPR:
|
Plugin Details |
Information about the plugin that detected the vulnerability detected in the finding, including:
|
Risk Information |
Information about the relative risk that the vulnerability presents to the affected asset, including: Note: Some CVSS score types may not be available for a particular plugin ID.
|
Reference Information | A list of references to third-party information about the vulnerability, exploit, or update associated with the plugin. |