Tenable
runZero integrates with Tenable Vulnerability Management (previously Tenable.io), Tenable Nessus, and Tenable Security Center to enrich your asset inventory and show you the vulnerabilities detected in your environment. The Tenable Vulnerability Management, Nessus Professional, and Tenable Security Center integrations pull data from the Tenable API. All versions of Tenable Nessus and Tenable Security Center (previously Tenable.sc) also work through Nessus v2 file imports (.nessus).
The API integration currently supports only the main Tenable Vulnerability Management cloud endpoint at https://cloud.tenable.com.
Asset inventory
The asset inventory page has a column with the count of vulnerabilities Tenable detected on each asset. Select an asset, and its vulnerabilities table lists every result for that asset. The type of vulnerability scan and your import settings can both affect the count.
Vulnerabilities table
The Vulnerabilities tab of the inventory lists every vulnerability result imported from Tenable. Selecting a result opens the page for the affected asset.
Severity and risk scores
Tenable describes vulnerability severity with the third-party Common Vulnerability Scoring System (CVSS) values from the National Vulnerability Database (NVD). Every vulnerability gets a severity rating (Info, Low, Medium, High, or Critical) based on its static CVSSv2 or CVSSv3 score. Tenable uses CVSSv2 by default, though you can opt for CVSSv3 instead. runZero displays the CVSSv2-based severity in the Inventory and Asset views.
Tenable also calculates a dynamic Vulnerability Priority Rating (VPR) for most vulnerabilities to supplement the severity rating. Where the CVSS score is static, Tenable updates the VPR to reflect current threats. VPR values range from 0.1-10.0, and a higher value means a higher likelihood of exploit. runZero displays the VPR-based risk in the Inventory and Asset views. Tenable’s documentation has more on how it handles severity and risk.