CVE Scan

CVE vulnerabilities detected directly in GLPI assets

CVE Scan cross-references the software and versions registered in GLPI assets with the NIST CVE vulnerability database, identifying which inventory items have known security flaws. Results are displayed directly on the asset, with severity (critical, high, medium, low) and a link to the official description.

Features

Automatic cross-referencing of software with the NIST CVE database

Severity classification: critical, high, medium, low

Scheduled automatic scans

Alerts for those responsible for assets with critical vulnerabilities

Direct link to the official CVE description on NIST

Consolidated vulnerability dashboard by severity

How it works

Step 1

Activate and schedule the scan

After installing the plugin, configure the frequency of automatic scans (daily, weekly). The first scan can be triggered manually.

Step 2

Plugin cross-references with the CVE database

CVE Scan collects software and versions from GLPI assets and queries the NVD/NIST database for known vulnerabilities.

Step 3

Results displayed on the asset

The CVEs found appear directly on the asset record in GLPI, with severity, description and a link to details on NIST.

Start using CVE Scan

View available plans or read the full article about this module.

View plans Read full article Download on GitHub
Need help?