Skip to main content

Prisma Cloud Compute - Audit Alert Vulnerabilities Enrichment

This Playbook is part of the Prisma Cloud Compute by Palo Alto Networks Pack.#

Supported versions

Supported Cortex XSOAR versions: 6.10.0 and later.

This is a sub-playbook of the "Prisma Cloud Compute - Audit Alert v2" playbook. It creates CVE indicators based on image or host vulnerabilities.

Dependencies#

This playbook uses the following sub-playbooks, integrations, and scripts.

Sub-playbooks#

This playbook does not use any sub-playbooks.

Integrations#

This playbook does not use any integrations.

Scripts#

SetAndHandleEmpty

Commands#

createNewIndicator

Playbook Inputs#


NameDescriptionDefault ValueRequired
ImageVulnerabilitiesImage vulnerabilities that were retrieved.Optional
HostVulnerabilitiesHost vulnerabilities that were retrieved.Optional
CVEsIndicatorsSeveritiesA list of the image or host CVE severities that the playbook creates indicators from.
Available options (not case sensitive):
- Critical
- High
- Medium
- Low
- Negligible

Default value: high, critical.
High, CriticalOptional

Playbook Outputs#


PathDescriptionType
CVEReportCVE report.unknown

Playbook Image#


Prisma Cloud Compute - Audit Alert Vulnerabilities Enrichment