CVE Exposure - RiskSense

Block IPs and apply the tag to assets that are vulnerable to specified CVE.

Dependencies

This playbook uses the following sub-playbooks, integrations, and scripts.

Sub-playbooks

  • Block IP - Generic v2

Integrations

  • RiskSense

Scripts

  • IsIntegrationAvailable

Commands

  • risksense-apply-tag
  • risksense-get-hosts
  • risksense-get-host-findings

Playbook Inputs


NameDescriptionDefault ValueRequired
CVESSpecify Common Vulnerabilities and Exposures (CVE). You can mention multiple CVEs using a comma-separated list.Required
TagNameTags in RiskSense can be applied to assets, web applications, and vulnerabilities. Tags are useful in the soft grouping, workflow creation, and to identify compliance-related assets.Required

Playbook Outputs


PathDescriptionType
RiskSense.TagAssociationTag association details including tag name, association ID, created.unknown
RiskSense.HostFindingList of the host finding details.unknown
RiskSense.HostList of the host details.unknown

Playbook Image


CVE Exposure - RiskSense