ServiceNow, Inc.
SYSTEM AND METHOD FOR SOLUTION RESOLUTION FOR VULNERABILITIES IDENTIFIED BY THIRD-PARTY VULNERABILITY SCANNERS
Last updated:
Abstract:
A vulnerability-solution resolution (VSR) system is disclosed that is designed to create and maintain associations between vulnerabilities identified by third-party scanners (TPSs) and solutions, such as software patches received from third-party vendors. The VSR system includes a data scheme that enables information regarding vulnerabilities and solutions to be stored, and enables certain relationships to be automatically created between these vulnerabilities and solutions. In particular, the VSR system is designed to automatically form certain relationships between particular vulnerabilities and solutions based on solution supersedence and inheritance. Additionally, the VSR system includes a graphical user interface (GUI) that enables a user to exclude particular relationships from consideration when recommending solutions to resolve a vulnerability or when calculating metrics regarding the vulnerability.
Utility
9 Mar 2020
20 May 2021