A single ticket (Host Vulnerability) is created for every unique combination of detected Host, QID and Port only if the detection status is in New/Active/Reopen.
Vulnerability tickets are generated for vulnerabilities that haven't been marked for exclusion by the VM. To incorporate vulnerabilities designated for exclusion into ticketing schemes, use the "include_ignored=1" value in the filter parameter.
The table below lists the custom fields you can add for ticketing scheme 2. Refer to Creating Custom Fields to start adding the custom fields to your ticketing scheme.
Issue Type |
Field Name |
Field Type |
Searchable |
---|---|---|---|
Host Vulnerability
|
Host ID |
Number |
Yes |
Asset ID |
Number |
Yes |
|
IP |
Text - single line |
Yes |
|
IPV6 |
Text - single line |
Yes |
|
Tracking Method |
Text - single line |
Yes |
|
OS |
Text - single line |
Yes |
|
Last Scan Datetime |
Text - single line |
Yes |
|
Last VM Scanned Date |
Text - single line |
Yes |
|
Asset Tag |
Labels |
Yes |
|
QID |
Number |
Yes |
|
QDS |
Number |
Yes |
|
Port |
Number |
Yes |
|
Severity |
Number |
Yes |
|
Vuln Type |
Text - single line |
Yes |
|
Patchable |
Text - single line |
Yes |
|
PCI Flag |
Text - single line |
Yes |
|
Vuln Category |
Text - single line |
Yes |
|
Published Datetime |
Text - single line |
Yes |
|
CVSS Base |
Number |
Yes |
|
CVSS Temporal |
Number |
Yes |
|
Detection Status |
Text- single line |
Yes |
|
CVSS V3 Base |
Number |
Yes |
|
CVSS V3 Temporal |
Number |
Yes |
|
Last Service Modification Datetime |
Text - single line |
Yes |
|
CVEs |
Text - Multi line |
Yes |
|
Diagnosis |
Text - Multi-line |
Yes |
|
Consequence |
Text - Multi-line |
Yes |
|
Solution |
Text - Multi-line |
Yes |
|
Primary Key |
Text - Read-only |
Yes |
|
TruRisk Score |
Number
|
Yes |
|
Asset Criticality Score |
Number
|
Yes |