ECS::LogEntry::Vulnerability
Inherits JSON::Serializable < Struct < Value < Object
Constructors
Instance methods
vulnerability.category
The type of system or architecture that the vulnerability affects. These may be platform-specific (for example, Debian or SUSE) or general (for example, Database or Firewall). For example (https://qualysguard.qualys.com/qwebhelp/fo_portal/knowledgebase/vulnerability_categories.htm[Qualys vulnerability categories])
This field must be an array.
Level: Extended Type: Keyword Example:
["Firewall"]
vulnerability.category
The type of system or architecture that the vulnerability affects. These may be platform-specific (for example, Debian or SUSE) or general (for example, Database or Firewall). For example (https://qualysguard.qualys.com/qwebhelp/fo_portal/knowledgebase/vulnerability_categories.htm[Qualys vulnerability categories])
This field must be an array.
Level: Extended Type: Keyword Example:
["Firewall"]
vulnerability.classification
The classification of the vulnerability scoring system. For example (https://www.first.org/cvss/)
Level: Extended Type: Keyword Example:
CVSS
vulnerability.classification
The classification of the vulnerability scoring system. For example (https://www.first.org/cvss/)
Level: Extended Type: Keyword Example:
CVSS
vulnerability.description
The description of the vulnerability that provides additional context of the vulnerability. For example (https://cve.mitre.org/about/faqs.html#cve_entry_descriptions_created[Common Vulnerabilities and Exposure CVE description])
Level: Extended Type: Keyword Example:
In macOS before 2.12.6, there is a vulnerability in the RPC...
vulnerability.description
The description of the vulnerability that provides additional context of the vulnerability. For example (https://cve.mitre.org/about/faqs.html#cve_entry_descriptions_created[Common Vulnerabilities and Exposure CVE description])
Level: Extended Type: Keyword Example:
In macOS before 2.12.6, there is a vulnerability in the RPC...
vulnerability.enumeration
The type of identifier used for this vulnerability. For example (https://cve.mitre.org/about/)
Level: Extended Type: Keyword Example:
CVE
vulnerability.enumeration
The type of identifier used for this vulnerability. For example (https://cve.mitre.org/about/)
Level: Extended Type: Keyword Example:
CVE
vulnerability.id
The identification (ID) is the number portion of a vulnerability entry. It includes a unique identification number for the vulnerability. For example (https://cve.mitre.org/about/faqs.html#what_is_cve_id)[Common Vulnerabilities and Exposure CVE ID]
Level: Extended Type: Keyword Example:
CVE-2019-00001
vulnerability.id
The identification (ID) is the number portion of a vulnerability entry. It includes a unique identification number for the vulnerability. For example (https://cve.mitre.org/about/faqs.html#what_is_cve_id)[Common Vulnerabilities and Exposure CVE ID]
Level: Extended Type: Keyword Example:
CVE-2019-00001
vulnerability.reference
A resource that provides additional information, context, and mitigations for the identified vulnerability.
Level: Extended Type: Keyword Example:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-6111
vulnerability.reference
A resource that provides additional information, context, and mitigations for the identified vulnerability.
Level: Extended Type: Keyword Example:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-6111
vulnerability.report_id
The report or scan identification number.
Level: Extended Type: Keyword Example:
20191018.0001
vulnerability.report_id
The report or scan identification number.
Level: Extended Type: Keyword Example:
20191018.0001
vulnerability.severity
The severity of the vulnerability can help with metrics and internal prioritization regarding remediation. For example (https://nvd.nist.gov/vuln-metrics/cvss)
Level: Extended Type: Keyword Example:
Critical
vulnerability.severity
The severity of the vulnerability can help with metrics and internal prioritization regarding remediation. For example (https://nvd.nist.gov/vuln-metrics/cvss)
Level: Extended Type: Keyword Example:
Critical