Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Template for manual ingestion of vulnerabilities

The template provides columns that must be filled with vulnerability and configuration item (CI) data. After the template is populated and uploaded, the data is processed.

Instructions for populating the template

To enter the details in the template, follow the instructions provided in the following table.

ColumnRequired/Optional?String length \(max\)/ Valid valuesDescription
Asset IDOptional255Universally unique identifier \(UUID\) or Asset ID. It can be the value generated by a scanner.
Enter information in at least one of the following five columns:
MAC AddressRequired24Host or asset information. The combination of all values provided must be unique for an asset.
FQDNRequired255
NETBIOSRequired255
IP AddressRequired255
HostnameRequired255
The remaining columns don't depend on each other.
Vulnerability IDRequired255Represents a vulnerability in the National Vulnerability Database \(NVD\) or an ID returned from a third-party scanner.
Vulnerability SummaryOptional512Brief description of the vulnerability. It is added to the database only when the Vulnerability ID is unavailable.
SeverityOptionalcritical, high, medium, low, noneSeverity of the vulnerability. It is added to the database only when the Vulnerability ID is unavailable. If the record is empty, then by default it is considered as critical.
PortOptionalNot applicablePort from which the vulnerability is detected. The value must be a valid integer. If there is an invalid input, the record is skipped.
ProtocolOptional40Type of network protocol used.
ProofOptional4000Represents the location or system path of the vulnerability.
StateOptionalopen, fixedStatus of the detection. If the record is empty, then by default it is considered open.