Software Secure Workload
Activity Configure

Cisco Security Risk Score Attributes-Based Filters

The Cisco Security Risk Score attributes can be used in inventory filters. The following operations are supported in the query filter:

  • =: Returns hosts with packages that are affected by vulnerabilities matching the filter.

  • : Returns hosts with packages that are not affected by vulnerabilities matching the filter.

Table 1. Cisco Security Risk Score Attributes with Description

Attribute

Description

Active Internet Breach

Indicates whether CVE is part of Active Internet Breach activity across organisations.

Easily Exploitable

Indicates whether CVE has known exploit kits.

Fix Available

Indicates whether a fix is available for the CVE.

Malware Exploitable

Indicates whether CVE can be actively exploited with malware including trojans, worms, ransomware, and others.

Popular Target

Indicates whether CVE is detected in high volume by other Cisco Vulnerability Management clients.

Predicted Exploitable

Indicates whether CVE is expected to have an Active Internet Breach in the future.

The values of the attributes are booleans; enter either true or false to filter the CVEs based on the attributes.