Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Components installed with Vulnerability Response

Several types of components are installed with activation of the Vulnerability Response application, including tables, user roles, and scheduled jobs.

View filtered lists for components installed with an application

Starting with v24.0.6 of Vulnerability Response, the most frequently used system properties are now accessible within the Vulnerability Response application. To view these system properties, navigate to AllVulnerability ResponseProperties.

Filter the Applications Files table so that only the roles, scheduled jobs, and tables that are installed with an application are displayed. The application you want to view these components for should be installed so that its files are loaded onto the instance and into the metadata table. Follow these steps to view filtered lists from the Applications Files table.

  1. In the filter navigator, enter sys_metadata.list to navigate to the metadata table.
  2. Select the condition builder (filter icon), and select, Application > is followed by the name of your application. For example, Application > is > Vulnerability Response.
  3. In the condition builder, to add a second filter, select AND, then select, Class > is a and choose one of the following classes from the list: Role, Scheduled job, or Table.
  4. Select Run.

The results for the class you selected are displayed in a filtered list.

Roles installed

Note: Roles, Scheduled jobs, and Tables for Application Vulnerability Response can be found in Components installed with Application Vulnerability Response.

Role title \[name\]DescriptionContains roles
sn\_vul\_prisma.configure\_prisma\_integrationSecures the CRUD + report\_view operations on sn\_vul\_prisma\_hosts\_import table and report\_view operation on sn\_vul\_prisma\_host\_attrb table. 
sn\_vul.view\_manager\_workspaceViews Vulnerability Manager Workspace. 
sn\_vul.deleteDeletes source records and vulnerable items. Prior to v23.0, the admin role had the privilege to delete the source records.- sn\_vul\_cmn.delete - sn\_vul.delete\_vulnerable\_items
sn\_vul\_cmn.deleteDeletes source records. 
sn\_vulc.bulk\_editPerforms bulk edit operation on test results. 
sn\_vul.app\_bulk\_editPerforms bulk edit operation on application vulnerable items \(AVITs\).sn\_vul.app\_write\_all
sn\_vul\_container.container\_bulk\_editPerforms bulk edit operation on container vulnerable items \(CVITs\).sn\_vul\_container.write\_all
sn\_vul\_cisa.configure\_intelligence\_integrationConfigures Intelligence integrations. 
Vulnerability managers and senior analysts\[sn\_vul.vulnerability\_admin or sn\_vul.admin \(deprecated\)\]Update properties and vulnerability integrations. The sn\_vul.vulnerability\_admin or sn\_vul.admin \(deprecated\) role is required for Vulnerability Response administration including vulnerability integrations, remediation task rules, calculators, and remediation target rules and tasks, reports, and third-party integration configuration.- sn\_vul.vulnerability\_write - sn\_vul.ciso\_write - sn\_sec\_cmn.admin - sn\_vul\_qualys.admin \(when the Qualys Vulnerability Integration is installed.\) - sn\_vul\_r7.admin \(when the Rapid7 Vulnerability Integration is installed.\) - sn\_vul\_shodan.admin \(when the Shodan Exploit Integration is installed.\) - sn\_vul.configure\_nvd\_integration \(when the NVD integrations are installed.\) - treemap\_admin \(when the Performance Analytics application is installed.\)
Patch orchestrationConfigures supported third-party patch vendor integrations. View and apply patch data and patch records.- sn\_vul\_patch\_orch.configure\_patch Configure and apply patches. - sn\_vul\_patch\_orch.read\_patch Can view patch records and data. - sn\_vul\_bigfix.configure\_integration Configures the BigFix Patch Orchestration Integration application. This role contains the sn\_vul\_bigfix.read\_integration and connection\_admin granular roles that permit the user to connect to the BigFix console. - sn\_vul\_sccm.configure\_integration This role contains the sn\_vul\_sccm.read\_integration and connection\_admin granular roles that permit the user to connect to the SCCM console. - sn\_vul\_bigfix.read\_integration Users with this role can view \(read only\) the  records of the Vulnerability Response and the BigFix Patch Orchestration Integration application and patch orchestration data. - sn\_vul\_sccm.read\_integration Users with this role can view \(read only\) the  records of the Vulnerability Response and the Microsoft SCCM Patch Orchestration Integration application and patch orchestration data.
Vulnerability analysts\[sn\_vul.vulnerability\_write\]The sn\_vul.vulnerability\_write role is required for managing remediation tasks and vulnerable items, and monitoring remediation progress.- sn\_vul.read\_all - sn\_sc\_cmn.write - sn\_vul\_qualys.user \(when the Qualys Vulnerability Integration is installed.\) - sn\_vul\_shodan.write \(when the Shodan Exploit Integration is installed.\)
V19.0: Vulnerability Event Manager\[sn\_vul\_analyst.vul\_event\_manager\]The sn\_vul\_analyst.vul\_event\_manager role is used to assess the impact of a new vulnerability or software, or add a zero-day vulnerability to identify the impacted assets and create vulnerable items \(VIs\).- sn\_sec\_cmn.read - canvas\_user - sn\_vul\_analyst.emergency\_response - sn\_vul.manage\_exposure\_assessment
Others\[sn\_vul.read\_all\] The sn\_vul.vulnerability\_read role is deprecated.The sn_vul.read_all role is required for anyone needing visibility into vulnerability management. For example, IT and security executives or someone who wants to drill down from high-level dashboards to the items that comprise the dashboard visuals.Important: Starting with v24.0.6 of Vulnerability Response, the sn_vul.read_all role has the privilege to access the Vulnerability Manager Workspace.- sn\_sec\_cmn.read - sn\_vul\_qualys.read \(when the Qualys Vulnerability Integration is installed. - sn\_vul\_shodan.read \(when the Shodan Exploit Integration is installed.\) - pa\_viewer \(when the Performance Analytics application is installed.\) - sn\_vul\_tenable.read\_integration \(when the Tenable Vulnerability Integration is installed.\) - sn\_vul.view\_manager\_workspace
sn\_vul.read\_assignedView vulnerable items assigned to you or your assignment groups in both the Classic UI and IT Remediation Workspace.Important: Starting with v24.0.6 of Vulnerability Response, the sn_vul.read_assigned role has the privilege to access the IT Remediation Workspace.sn\_vul.view\_rem\_workspace
VR System import administrator\[sn\_vul.vr\_import\_admin\]System run-as user. Runs scheduled jobs.Note: This user is the default run-as user for each integration record. Don’t change.- import\_admin - sn\_vul.vulnerability\_write
Remediation owner \[sn\_vul.remediation\_owner\]View and update permission for vulnerable items, remediation tasks assigned to you or your group. Can view all vulnerabilities and solutions. Has write access to theInternal notes field on the solution record.Contained in the itil role.
CISOs and vulnerability executives \[sn\_vul.vulnerability\_ciso\]View the CISO dashboard in Performance Analytics for Vulnerability Response.- sn\_vul.ciso\_read - sn\_vul.read\_all
False positive approver\[sn\_vul.false\_positive\_approver\]Approves/rejects false positive requests.sn\_vul.view\_manager\_workspace
Exception approver\[sn\_vul.exception\_approver\]Approves/rejects exception requests.sn\_vul.view\_manager\_workspace

Scheduled jobs installed

Scheduled jobDescription
  
Populate OOTB saved filters for Host and App moduleMigrates modules related to Host and App module.
Populate OOTB saved filters for CC moduleMigrates modules related to CC module.
Populate OOTB saved filters for Container moduleMigrates modules related to container module.
Refresh Host related Saved filtersRefreshes all the aggregation data related to saved filters of Host module.
Refresh CC related Saved filtersRefreshes all the aggregation data related to saved filters of CC module.
Refresh Container related Saved filtersRefreshes all the aggregation data related to saved filters of Container module.
Refresh App related Saved filtersRefreshes all the aggregation data related to saved filters of App module.
Trigger aggregation creation and running for saved filterCreates, updates, runs, and refreshes the aggregations related to the saved filter.
Version 19.0 of Vulnerability Response and v4.0 of the Veracode Vulnerability IntegrationThe Veracode CWE Integration retrieves Veracode - specific Common Weakness Enumeration \(CWE\) data for threat information and remediation recommendations. The Veracode SBOM Integration ingests release, version, and vulnerability information that originates in Veracode about the components in your software projects. The integration generates SBOMs in CycloneDx JSON format and uploads them into your instance Veracode Categories Integration retrieves enhanced Categories data from Veracode. The Veracode DevOps Integration lets DevOps users view summary details for third-party vulnerability scans without a SecOps license. JSON-based APIs for the following Veracode integrations: Application Vulnerable Item, Scan Summary, Application List. The XML-based API versions of these integrations are deprecated.
Associate existing VIs with Auto Exception RuleAutomatically associates the Auto Exception Rule with existing VIs.
Auto-Close Vulnerable DetectionsAutomatically closes the stale vulnerable detections based on the configuration defined in the table ‘sn\_vul\_auto\_close\_config’.
Version 16.1: HCL BigFix Collection, Fixlet, and Actions Integrations.Manage patches and patch deployments for vulnerabilities with patches from the HCL BigFix product.
Calculate Related Counts for All SolutionsInactive by default. Processes solutions data once nightly instead of continuously. Starting with v22.0, you can run this job only on demand. As this scheduled job processes all the solutions, it can impact performance. Therefore, it is recommended to run this job only once if the solution data is corrupted.
Calculate Related VI Counts for Vulnerability and Remediation TaskCaptures manual and VI import changes for the day. Reconciles vulnerability and solution relationships and recalculates totals. Solutions data is queued and processed separately by the Process Vulnerability Solution Metrics Queue scheduled job.
Check Mid-Server TimeoutPings the Mid-Server and errors out after 30 seconds.
V19.0: Check potential vulnerability exposureProcesses the delta CVEs, software, and installations to get the exposure.
Check Run State WaitCompleteMarks an integration run as complete once they’re verified as fully done.
Check Vulnerable Item and Groups Deferment ExpirationSends notifications if vulnerable items or vulnerabilities have expired (and if they expire in one week).Checks if any exception rule is applicable on a deferred VI and updates the Reason and Until fields according to the exception rule. The state of the VI remains Deferred until the latest expiry date.
Close cancel VITs that do not have a CI associatedAutomatically closes vulnerable items that don’t have an associated configuration item \(CI\) and haven’t been updated for three days. State is set to Closed/Cancelled.
Close VI on exp record deleteCloses a VI when it’s deleted.
Compliance Results IntegrationImports test results along with policies, configuration tests \(controls\) and citations with authoritative sources for processing in the Configuration Compliance application.
Compliance Results Backfill IntegrationPart of a chained integration run with the Tenable.io Assets Integration, imports configuration assessment data for ignored assets that are discovered \(imported through assets integration\).
CR State SynchronizationScript retrofits all existing remediation task to CHG relationships so they are synchronized. Enables synchronization going forward.
Version 15.0 Scan Credential IntegrationImports and securely stores temporarily Tenable.io credentials used to access the scanner for on-demand rescans.
CWE Comprehensive 2000 IntegrationVulnerability integration that pulls in vulnerability information from the Common Weakness Enumeration \(CWE\) dataset, curated by the MITRE Corporation.
V18.0: Delete Stale Split Action RecordsDaily job to clean up stale records in split task intermediate tables.
Disable VR solutions when solutions application not activeDisables and hides the Vulnerability Solution Management feature when the Solution Management for Vulnerability Response application isn’t installed.
Evaluate remediation targetsSets or updates remediation target dates on all vulnerable items. Determines the status of remediation target dates against rules.
- Fixing the detections for updated key for Rapid7 - Fixing the detections for updated key for Qualys - Fixing the detections for updated key for TenableCleans up detection data automatically by an integration-specific scheduled job that is triggered post-upgrade to Vulnerability Response.
Version 16.1: Generate remediation digestThis job automatically generates an email digest for any users in the Remediation Owner user group. The job is activated by default.
V19.0: Insert CISA exploited CVE to exposure configInserts CISA CVEs into the Exposure Configuration table to calculate the exposure.
V18.0: Insert Classic Remediation Tasks Into Unified Remediation TaskOne-time scheduled job to insert all the remediation tasks created in the classic UI into the Unified remediation task \(sn\_vul\_remediation\_task\).
Microsoft Security Response Center Solution integrationVulnerability Solution Management integration that retrieves solutions from the Microsoft Security Response Center.
Version 16.1: Microsoft SCCM Collection, Patch Update, and Deployments IntegrationsManage patches and patch deployments for vulnerabilities with Microsoft SCCM patches.
Pick up throttled integration processCreates the integration process for the Shodan Exploit Integration.
Populate affected products textAfter upgrade, handles existing solutions to populate affected products text. This job runs only once.
Populate new CR Count ColumnAutomatically populates the new CR count column for customers with existing data in the remediation task \[sn\_vul\_vulnerability\] table.
Process Vulnerability Solution Metrics Queue

Processes the queued solutions data by:- Rolling up solutions from NVD entries to third-party entries - Populating preferred solutions on vulnerabilities, and - Updating the remediation status metrics on the solutions

In addition, it also processes the solutions that are marked for update statuses.Note: If you’re using only Rapid7, you can disable this schedule job to improve performance.

Populate records in vulnerability vendor mapping table Populate records in vulnerability vendor mapping table for Rapid7 vulnerabilitiesInserts records into vulnerability vendor mapping table for existing vulnerabilities.
Re-open deferred vulnerability groupsReopens deferred remediation tasks when the deferment date has passed.
Reapply all vulnerability assignment rulesReevaluates assignment rules against all Open VIs.
Version 16.5: Reassignment count for assignment rulesRuns daily and posts the total number of VIs and remediation tasks that are unassigned by this feature for a particular assignment rule.
Red Hat Solution IntegrationVulnerability Solution Management integration that retrieves solutions from the Red Hat Security Advisory.
V17.1: Refresh and resolve duplicate VITs on remediation taskFinds duplicate vulnerable items for the items in the remediation task with the ‘Automatically refresh duplicate VIs’ as active.
Refresh associated vulnerable items for non-remediation task rule-based remediation taskUpdates the remediation task with vulnerable items matching the Filter Group and Condition groups criteria.
Repair erroneous Vulnerable Items Last Opened and ClosedRepairs existing UI data corrupted by defects previously fixed.
Rerun calculatorsReapplies the calculators to any vulnerable items affected by the change. This triggers a recalculation of the cumulative risk scores of their remediation tasks. Note: Rerunning calculators can take a long time depending on your environment.
Retry Cancelled Integration Import SetsRetries canceled integration import sets. Retries 5 times before returning an error.
Retry Integration ProcessesRetries integration processes. Retries 5 times before returning an error.
Rollup vulnerable item values to vulnerability and groupComputes the risk score, number of vulnerable items, and remediation target status for remediation tasks, using the rollup calculator.Note: Starting with v23.0 of Vulnerability Response, the scheduled job is enhanced to create background jobs with multithreading capabilities. This upgrade involves segmenting the job into several smaller child jobs, which are executed either in parallel or concurrently. This modification enables processing of multiple records simultaneously, thus significantly speeding up the overall task.
Run severity calculator after vuln entry promotionRuns the severity calculator after a previously missing vulnerability has been updated with its score and other data from a third-party provider, such as Qualys Cloud Platform, Rapid7 Nexpose.Note: Starting with v25.0.3 of Vulnerability Response, the scheduled job is enhanced to create background jobs with multithreading capabilities. This upgrade involves segmenting the job into several smaller child jobs, which are executed either in parallel or concurrently. This modification enables processing of multiple records simultaneously, thus significantly speeding up the overall task.
V19.0: Run exposure assessment for configured CVEsCalculates exposure for all the CVE records in the Exposure Configuration table.
V19.0: Run software exposureCalculates exposure for all the software records in the Exposure Configuration table.
Scheduled Vulnerability Data Source ProcessorChecks the import queue for entries to process and assigns a scheduled import job based on available resources.
Scheduled Vulnerability integration process attachment cleanupRemoves integration XML attachments once they’re 14 days old. This retention time isn’t configurable.
Scheduled Vulnerability Integration timeout checkerCancels integration runs that take over 60 minutes to complete.
Set related CI services for VIOnce the integration import is complete, it links the affected business services to CIs connected to vulnerable items, at the specified time. For more information, see Service Mapping in Vulnerability Response.
Set deferral countsCollects the number of times a vulnerable item, application vulnerable item, a container vulnerable item, or a remediation task is deferred.
Trigger next integrationTriggers the next integration in a chained integration run.
Template IntegrationA single template record is sent to Tenable.io during rescan.
Update Ungrouped Vulnerable ItemsDetermines whether a vulnerable item is in a remediation task and adds or removes it from the Ungrouped Vulnerable Items list.Note: This job runs post-upgrade and, depending on your data set, can take a long time to complete.
Update Vulnerability on VGUpdates the Vulnerability field on the Remediation Task (sn_vul_vulnerabilty) table after upgrade. This job is triggered once and inactive afterward.
Vulnerability Import TemplateEngine that processes the import queue. One of 10.
Vulnerability Response Age Closed UpdateUpdates Age closed column on VI table.
Vulnerability Response CI countCalculates the number of CIs scanned by third-party scanners in the last 30 days.
Vulnerability Response Risk and Remediation Status UpgradeUpdates the risk rating on data when you upgrade.
v20.0: Check Risk Mitigation ExpirationChecks if compensatory controls have expired for a Vulnerable Item and Remediation Task. If they expired, it reverts the risk score to original risk score and sends an email notification indicating that compensatory controls have expired. Also sends an email notification if compensatory controls are set to expire within 7 days.

Tables installed

TableDescription
v24.0.6Prisma Hosts Import \[sn\_vul\_prisma\_hosts\_import\]Import set table for the hosts.
v24.0.6Prisma Host Attributes \[sn\_vul\_prisma\_host\_attrb\]Asset attribute table for hosts integration.
v22.0sn\_vul\_cmn\_auto\_close\_ruleCloses stale detections automatically based on filter conditions.
sn\_vul\_cmn\_ws\_saved\_filterStores the data of saved filter.
sn\_vul\_licensing\_usageContains the duplicate asset, Incomplete IP Asset, Total scanner assets counts and Final usage.
sn\_vul\_m2m\_entry\_compensating\_controlRepresents association between vulnerability entries and compensating controls.
v21.0Rapid7 Scan Engine \[sn\_vul\_r7\_scan\_engine\)Store the records imported Scan Engine data responsible for discovering assets during a scan and checking them for vulnerabilities.
v21.0Rapid7 Scan Engine Import \[sn\_vul\_r7\_scan\_engine\_import\]Used by the Rapid7 Scan Engine integration to stage import data prior to processing.
Version 19.0: \[sn\_vul\_veracode\_cwe\_import\]Extends the Veracode Category table for CWE remediation recommendations.
Version 19.0: \[sn\_vul\_veracode\_category\_import\]Stores imported category data.
Version 19.0: \[sn\_vul\_veracode\_sbom\_import\]Stores imported SBOM data originating from Veracode.
V17.1: Add Proof to the VI Key\[sn\_vul\_proof\_key\_vulnerability\]Rapid7 vulnerabilities for which proof must be included in the VI key.Starting with v24.0.6 of Vulnerability Response, a column 'Regular Expression to Split Tenable VITs' is added. It stores the regular expression entered by a user that is used to parse the proof from the payload.
Assessed Vulnerable Items\[sn\_vul\_m2m\_exp\_sw\_vi\]Assigns a remediation task to an assignment group during remediation task creation.
Assignment Rule\[sn\_vul\_vgr\_assignment\_rule\]Assigns a remediation task to an assignment group during remediation task creation. Prior to v15.0: Assigns a remediation task to an assignment group during remediation task creation.
Associate Change Request\[sn\_vul\_action\_associate\_cr\]Staging table used to process new remediation task-CHG associations. Prior to v15.0: Staging table used to process new VG-CHG associations.
Asynchronous Vulnerable Item Job\[sn\_vul\_async\_vi\_job\]Contains background jobs that process vulnerable items. Only one job type is supported; used to edit vulnerabilities in bulk.
Asynchronous Vulnerable Item Job Type\[sn\_vul\_async\_vi\_job\_type\]Contains the types of background jobs, and references the relevant script. Only has one processor, the VulnerabilityBulkEditProcessor
Auto-Close Stale Detections\[sn\_vul\_auto\_close\_config\]Stores the configuration for how stale detections are automatically closed.
Configure Vulnerable Item Granularity \[sn\_vul\_action\_vi\_granularity\_config\]Stores the UI form used to enable or disable Include Port from the configuration page in the Configure VI Granularity module.
Create change request\[sn\_vul\_action\_create\_cr\]Used to create change requests from remediation task.
Create Vulnerable Items\[sn\_vul\_action\_create\_vi\]A staging table which is used as a place holder for information. This table does not store any records.
Collection \[sn\_vul\_patch\_orch\_collection\]Stores collection data from distinct instances.
CWE\[sn\_vul\_cwe\]Catalog of Common Weakness and Enumeration \(CWE\) software vulnerabilities.
CWE Applicable Platform \[sn\_vul\_cwe\_m2m\_cwe\_platform\]Contains the imported CWE applicable platform data.
CWE Category \[sn\_vul\_cwe\_category\]Contains the imported CWE category data.
CWE Common Consequence \[sn\_vul\_cwe\_consquence\]Contains the imported CWE common consequence data.
CWE External Reference \[sn\_vul\_cwe\_reference\]Contains the imported CWE external reference data.
CWE Observed Example \[sn\_vul\_m2m\_cwe\_cve\]Contains the imported CWE CVE data.
CWE Platform \[sn\_vul\_cwe\_platform\]Contains the imported CWE platform data.
CWE External Reference \[sn\_vul\_cwe\_reference\]Contains the imported CWE related external reference data.
CWE Relationship \[sn\_vul\_m2m\_cwe\_relation\]Contains the imported CWE relationship data.
CWE View \[sn\_vul\_cwe\_view\]Contains the imported CWE view data.
CWE Weakness \[sn\_vul\_cwe\_weakness\]Contains the imported CWE weakness data.
Version 16.1: Device Collection \[sn\_vul\_patch\_orch\_m2m\_src\_ci\_collection\]Stores collections data about discovered items.
Version 16.1: Device Update \[sn\_vul\_patch\_orch\_m2m\_src\_ci\_update\]Stores data about the deployed patches, along with deployment status, that are on displayed on discovered item records.
Discovery Model Vulnerable Software Match\[sn\_vul\_discovery\_model\_software\_match\]Supplements the matching of vulnerable software to a discovery model.
Exception Management Configuration \[sn\_vul\_exception\_config\]Stores the configuration settings for the exception management feature.
Exception Rule \[sn\_vul\_auto\_exception\_rule\]Contains the set of rules evaluated for Exception Management.
Exploit\[sn\_vul\_exploit\]Contains the definitions of exploits: publicly available code that takes advantage of a vulnerability.
Exploit Frameworksn\_vul\_exploit\_frameworkContains the names of exploit frameworks: full software packages that are capable of running many exploits.
Exposed Discovery Models\[sn\_vul\_m2m\_exp\_sw\_model\]Stores the mapping between the Discovery model and Vulnerability Exposure Assessment.
Exposure Assessment\[sn\_vul\_exp\_by\_sw\]Stores the records for exposure assessment.
V19.0: Exposure Manifestsn\_vul\_analyst\_exposure\_manifestManifest table for delta processing.
Exposure Vulnerability Entries\[sn\_vul\_m2m\_entry\_exp\]Stores the mapping between Vulnerability \(sn\_vul\_entry\) and Exposure Assessment.
Malware Kit\[sn\_vul\_malware\_kit\]Contains the details of malware kits: pre-written tools that make it easy to run an exploit or set of related exploits without doing additional coding or configuration work
Missing asset table \[sn\_vul\_tenable\_missing\_asset\]Contains temporary asset IDs for ignored configuration compliance assessment data with unmatched assets.
Microsoft Response Center Solution Update \[sn\_vul\_msrc\_update\]Contains the last time that the solution data was updated by Microsoft. Used to compare against the nightly import to determine the delta data for download.
Microsoft Security Response Center Solution Import\[sn\_vul\_msrc\_solution\_import\]Used by the Microsoft Security Response Center Solution integration to stage import data prior to processing.
Microsoft Security Response Center Solution Integration \[sn\_vul\_msrc\_integration\]Extends the Vulnerability Integration \[sn\_vul\_integration\] table for the Microsoft Security Response Center Solution Integration.
National Vulnerability Database Entry\[sn\_vul\_nvd\_entry\]Documented vulnerability from the NIST National Vulnerability Database.
NVD CVSS Import \[sn\_vul\_nvd\_cvss\_import\]Contains staging data that hasn’t yet been transformed to the Vulnerability Response schema during NVD import.
Version 16.1 \[sn\_vul\_patch\_orch.patch\_approval\_required\]When patch deployments are scheduled from a patch integration, requests are submitted for review and approval to users assigned to the Level 1 - Patch update approval group. This property is activated by default.
Version 16.1: Patch Deployment \[sn\_vul\_patch\_orch\_deployment\]Stores information about deployed patches about Collections and CIs.
Version 16.1: Patch Update \[sn\_vul\_patch\_orch\_update\]Stores information about the patches that are available on distinct instances.
Version 16.1: Potential Patch \[sn\_vul\_patch\_orch\_m2m\_vuln\_patch\]Stores data about patches and vulnerabilities that identify the patches that might be used to resolve a vulnerability.
V19.0: Potential Vulnerability Exposuresn\_vul\_analyst\_m2m\_pot\_exp\_sw\_modelExposure assessment table for CVE.
Product category\[sn\_vul\_product\_category\]Contains the imported product category data.
Red Hat Security Advisory \[sn\_vul\_rhsa\_update\]Compares the Red Hat solutions against the nightly job to determine the delta data for import.
Red Hat Solution Imports \[sn\_vul\_rh\_solution\_import\]Used by the Red Hat Solution Integration to stage import data prior to processing.
Red Hat Solution Integration \[sn\_vul\_rh\_integration\]Extends the Vulnerability Integration \[sn\_vul\_integration\] table for the Red Hat Solution Integration.
Related Business Services\[sn\_vul\_m2m\_ci\_services\]Links CIs to Business Services for impacted services lookup. Contains a flag indicating whether it was added by Service Mapping.
V18.0: Remediation Effort Counts\[sn\_vul\_daily\_count\_re\]Daily count of remediation efforts. This table is updated daily.
V18.0: Remediation Effort Record\[sn\_vul\_remediation\_effort\_record\]Tracks the remediation progress for remediation efforts \(RE\). Contains references to the REs.
Remediation Target Rule \[sn\_vul\_ttr\_rule\]Defines the expected time frame for remediating a vulnerable item. Extends Application File.
V18.0: Remediation Task\[sn\_vul\_remediation\_task\]Stores all the remediation tasks for VR, AVR, CVR, and test result groups.Consists of information related to \[sn\_vul\_vulnerability\] table records. Users who cannot view records in \[sn\_vul\_vulnerability\] table list view, can see those records information in the \[sn\_vul\_remediation\_task\] table list view. This table is accessible to the users in Vulnerability Manager workspace or IT Remediation Workspace
REST Integration \[sn\_vul\_rest\_integration\]Extends the Vulnerability Integration \[sn\_vul\_integration\] table for the REST-based Integrations.
SAM NVD Vulnerability Detection \[sn\_vul\_sam\_config\]Contains which CI and Vulnerabilities are monitored with SAM NVD and whether SAM NVD vulnerability detection is enabled or not.
Scheduled Import Pool\[sn\_vul\_sched\_import\_pool\]Collection of scheduled import set records used to facilitate simultaneous data source imports.
Select Vulnerable Item\[sn\_vul\_action\_select\_vi\]Base staging table used to handle split VG, create CHGs, and associate CHGs
Setup Status\[sn\_vul\_setup\_status\]Internal only: Used by the Setup Assistant. Whenever Setup Assistant is opened, it shows the status of the steps Completed, and the percentage on the right top corner comes from this table.
Severity Map \[sn\_vul\_severity\_map\]Contains the mappings from source severity to normalized severity.
Solution Scanner Mapping \[sn\_vul\_solution\_scanner\_mapping\]Maps vendor, scanner, and keywords for exclusion or inclusion.
Split remediation task\[sn\_vul\_action\_split\_vg\]Staging table used to split remediation tasks.
Third Party Vulnerability Entry\[sn\_vul\_third\_party\_entry\]Documented vulnerability from a third-party source.
\[sn\_vul\_tenable\_io\_templateA template record is sent to Tenable.io and then imported during rescan for items that have Tenable.io as a source.
Update Manifest \[sn\_vul\_update\_manifest\]List of remediation tasks that have been updated and require recalculation by the rollup calculator.
V17.1: Usage by CI classes\[sn\_vul\_licensing\_usage\_by\_ci\_classes\]Contains the usage count aggregated by the CI class.
VR Configuration Item Count\[sn\_vul\_vr\_configuration\_item\_count\]Contains the 90-day rolling cumulative average of configuration items imported from third-party integrations.
Vulnerability Assignment Rule\[sn\_vul\_assignment\_rule\]Contains the set of rules evaluated to set the assignment group on VIs.
Vulnerability Calculator \[sn\_vul\_calculator\_group\]Contains the vulnerability calculator rules. The order of the calculator determines which calculator is evaluated first, and in each calculator, one calculator rule, at most, is used.
Vulnerability Calculator Rule\[sn\_vul\_calculator\]Contains the rules for all of the calculators. For each calculator, the calculator rules are reviewed in order. The first calculator matching the condition uses the values within that rule.
Vulnerability CVEs\[sn\_vul\_m2m\_entry\_cve\]Links NVD Common Vulnerability Exposures \(CVE\) data to vulnerable entries.
Vulnerability Data Source Import Queue Entry\[sn\_vul\_ds\_import\_q\_entry\]Queue for attachments before they’re processed by a data source. Utilized by vulnerability integrations.
Vulnerability Entry\[sn\_vul\_entry\]Documented vulnerability.
Vulnerability Entry Scan \[sn\_vul\_entry\_scan\]Stores the relationship between a scan and vulnerability entry.
Vulnerability Exploit Framework\[sn\_vul\_m2m\_framework\_vul\]Contains the relationship between Exploit frameworks and vulnerabilities.
V19.0: Vulnerability Exposure Assessmentsn\_vul\_analyst\_sam\_configExposure assessment configuration table for CVE.
Vulnerability Granularity Configuration \[sn\_vul\_granularity\_config\]Stores and maintains the state of include or exclude Port for the Configure VI Granularity module.
Remediation Tasks\[sn\_vul\_vulnerability\]Collection of vulnerable items organized for remediation.
Remediation Task Change Requests\[sn\_vul\_m2m\_vg\_change\_request\]Stores the association of remediation tasks and CHG requests.
Remediation Task Items\[sn\_vul\_m2m\_vul\_group\_item\]Association of remediation tasks and vulnerable items.
Remediation Task Rules\[sn\_vul\_grouping\_rule\]Contains the rules that define the criteria with which groups are automatically created for a set of vulnerable items.
Vulnerability Integration\[sn\_vul\_integration\]Schedulable record to import vulnerability data from an external source. Extends Scheduled Script Execution.
Vulnerability Integration Data Source\[sn\_vul\_int\_data\_src\]Data source to use with a vulnerability integration.
Vulnerability Integration Log \[sn\_vul\_integration\_log\]Records log information output by vulnerability integration runs.
Vulnerability Integration Process\[sn\_vul\_integration\_process\]Single process occurrence for a vulnerability integration.
Vulnerability Integration Queue\[sn\_vul\_integration\_queue\]Queues the import requests for an integration run when all the Data Sources are in use.
Vulnerability Integration Run\[sn\_vul\_integration\_run\]Vulnerability integration invocations.Note: If an integration run is in progress, only one integration can be in ready state in the backlog.
Vulnerability Integration Run Stats \[sn\_vul\_integration\_stats\]Stores the breakdown of each step: for example, REST API time, VI creation time, and so on for an integration run
Vulnerability Item Task\[sn\_vul\_m2m\_item\_task\]Vulnerable items associated with problems, changes, and security incidents.
Vulnerability Malware Kit \[sn\_vul\_m2m\_malware\_kit\_vul\]Contains the relationships between vulnerabilities and malware kits.
Vulnerability Prerequisite Solution\[sn\_vul\_m2m\_solution\_prerequisite\]Contains the source-specific prerequisites to applying a solution, when available.
Vulnerability Rate limit\[sn\_vul\_rate\_limit\]Defines a rate limit to be used on a scanner.
Vulnerability Reference\[sn\_vul\_reference\]External references for known vulnerabilities.
Vulnerability Remediation Status\[sn\_vul\_m2m\_ttr\_status\]Status of the vulnerable item against the closest applied remediation target rule.
Vulnerability Risk Rule\[sn\_vul\_calc\_risk\]Specialized calculator rule used with the Risk Score calculators. Takes weights indicating which values, related to a VI, to use to calculate the Risk Score.
Vulnerability Rollup Calculator\[sn\_vul\_rollup\]List of vulnerability rollup calculators.
Vulnerability Scan\[sn\_vul\_scan\]Vulnerability scan. Contains what to scan, with what scanner, and a summary of the scan results.
Vulnerability Scan Configuration Item\[sn\_vul\_m2m\_scan\_configuration\_item\]Associates CMDB CIs that are queued to be scanned.
Vulnerability Scan Queue Entry\[sn\_vul\_scan\_q\_entry\]Scan record queued for scanning or processing. Facilitates the requests within stated rate limits.
Vulnerability Scan Source\[sn\_vul\_m2m\_scan\_source\]Associates sources to a scan record and signifies all the records that are queued to be scanned.
Vulnerability Scan Task\[sn\_vul\_m2m\_scan\_vulnerability\]Associates vulnerability tasks for the sources of a scan record.
Vulnerability Scanner\[sn\_vul\_scanner\]Defines third-party scanners to use in scans.
Vulnerability Scanner Rate Limit\[sn\_cmn\_scanner\_rate\_limit\]Associates a scanner with a rate limit.
Vulnerability Software\[sn\_vul\_m2m\_entry\_software\]Contains associations between vulnerabilities and vulnerable software.
Vulnerability Solution \[sn\_vul\_solution\]Contains the relationship data between the vulnerability and the possible solutions for it. Starting with v24.0.6 of Vulnerability Response, a new column titled Scanner Bulletin is added to this table.
Vulnerability Solution \[sn\_vul\_m2m\_vulnerability\_solution\]Links the Vulnerability Entry \(sn\_vul\_entry\) table to the Vulnerability Solution \(sn\_vul\_solution\) table.
Vulnerability State Change Approval\[sn\_vul\_change\_approval\]Tracks the approval process for vulnerabilities.
Vulnerability Superseding Solution\[sn\_vul\_m2m\_solution\_supersedence\]Contains the source-specific relationship between solutions.
Vulnerability Update Manifest\[sn\_vul\_vuln\_update\]Contains a list of vulnerabilities that need their rollup data updated after their vulnerable items are updated, closed, or have risk score changes.
Vulnerability Vendor Mapping \[sun\_vul\_vulnerability\_vendor\_mapping\]Contains a list of vulnerabilities and their vendors.
Vulnerable Item\[sn\_vul\_vulnerable\_item\]Contains the occurrence of a vulnerability on a configuration item.
Vulnerable Item Detection \[sn\_vul\_detection\]Contains the vulnerable item detections from third-party integrations.
Vulnerable Software\[sn\_vul\_software\]Software that is known to have certain vulnerabilities.