...
Note |
---|
IMPORTANT NOTE: The Platform rates imported vulnerabilities/issues based on their CVSS v3 score by default (and uses CVSS v2 score - when a v3 score is not available). When reviewing and comparing results in the Nessus Console to those same results in the platform, ensure that Nessus is configured to use a CVSS Base Score of version 23. Otherwise there will likely be discrepancies between the severity rating in Nessus Console and the severity rating in the Platform |
...
In the Nessus Console, we’ll take a look at the “Scan Summary” for our completed scan, paying attention to “Scan Details” and “Details” (highlight in blue below)
...
The ‘Details’ section provides further information on the scan execution itself - pay attention to the CVSS_Score value; currently set toCVSS_V2. If the scan results are based on CVSS version 3, there will likely be discrepancies between the severity rating in the Nessus Console and the severity rating in the PlatformThe ‘Scan Details’ section breaks down the number vulnerabilities into of Critical, High, Medium and Low severity.
...