Streamlining Third-Party Result Integration in the Platform

The Platform facilitates the importation of results from external vendors, allowing for centralized management and analysis. This article details the process for importing Issues. To import asset information (Hosts), please refer to the relevant section.

Using the Data Import Wizard

  1. Start the Import:

  2. Upload File:

  3. Complete the Import:

Manual Import of Issues

The Platform supports various formats including see for more details Connected Accounts

Steps for Manual Import:

  1. Create a Project:

  2. Add Phases to the Project:

  3. Import the Results:

  4. Review and Publish:

If importing Qualys XML format results please also review the following article: No CVSS Scores with Qualys XML

Additional Import Options

When using either method to import, once your file has been parsed you have additional options to affect the behaviour of the import process:

This option will include the port table information from the results.

This option will omit the technical details of the results.

Uploaded files are parsed and the results are displayed in a review list for your examination before importing. Once the import process begins the review list will be cleared with all issues deleted from it.

Should you want to import multiple subsets of issues, you can select this option to choose a subset of issues, import them, and then remove them from the review list, leaving the rest available for further search and filtering.

For example, you have a results set containing Apache, php, mysql and SSL vulnerabilities. If you only wish to import php and SSL vulnerabilities you should filter on “php”, ensure this option is selected, and perform the import. The review list will now only contain Apache, mysql and SSL vulnerabilities. This process can be repeated as many times as required.

Preparing Your Spreadsheet for Import

Accepted Column Headings:

Note: Capitalization and underscores are flexible (e.g., ‘risk_rating’ or ‘risk rating’), and the order of headings is not critical. Additional headings are ignored.