Ticketing Scheme 2: Per Detection Separate Ticket Scheme

A single ticket (Host Vulnerability) is created for every unique combination of detected Host, QID and Port only if the detection status is in New/Active/Reopen.

Vulnerability tickets are generated for vulnerabilities that haven't been marked for exclusion by the VM. To incorporate vulnerabilities designated for exclusion into ticketing schemes, use the "include_ignored=1" value in the filter parameter.

Host Vulnerability:

host vulnerability

Custom Fields for Ticketing Scheme 2 – Per Detection Separate

The table below lists the custom fields you can add for ticketing scheme 2. Refer to Creating Custom Fields to start adding the custom fields to your ticketing scheme.

Issue Type Field Name Field Type Searchable
Host Vulnerability Host ID Number Yes
Asset ID Number Yes
IP Text - single line Yes
IPV6 Text - single line Yes
Tracking Method Text - single line Yes
OS Text - single line Yes
Last Scan Datetime     Text - single line Yes
Last VM Scanned Date     Text - single line Yes
Asset Tag Labels Yes
QID     Number Yes
QDS Number Yes
Port Number Yes
Severity Number Yes
Vuln Type Text - single line Yes
Patchable Text - single line Yes
PCI Flag Text - single line Yes
Vuln Category Text - single line Yes
Published Datetime Text - single line Yes
CVSS Base Number Yes
CVSS Temporal Number Yes
Detection Status Text- single line Yes
CVSS V3 Base Number Yes
CVSS V3 Temporal Number Yes
Last Service Modifi­cation Datetime Text - single line Yes
CVEs Text - Multi line Yes
Diagnosis Text - Multi-line Yes
Consequence Text - Multi-line Yes
Solution Text - Multi-line Yes
Primary Key Text - Read-only Yes
TruRisk Score Number Yes
Asset Criticality Score Number Yes