Tenable SC Attribute Reference
Focus
Focus
Device Security

Tenable SC Attribute Reference

Table of Contents

Tenable SC Attribute Reference

This reference lists the attributes that Device Security collects from Tenable SC, their names as stored in Device Security, and the Device Security fields they map to.
When Device Security integrates with Tenable SC, it enhances vulnerability management for your devices. The attributes in this reference cover scanned IP summaries, device details from vulnerability scan results, and individual vulnerability findings such as CVE identifiers, severity scores, and OS information.
The third-party attribute name in Device Security refers to the attribute name as it appears in the Assets Inventory table and in Query Engine. This follows the format of third-party-name.attribute-name. When viewing the attribute name in the Assets Inventory table column selector or on a Device Details page, where the third-party name can be found as a header for the attributes section, then the third-party name is removed from the attribute name.
For example, micrsoft_defender_xdr.macAddress would appear in the Query Builder and in the Assets Inventory table, but under Device DetailsAttributesIntegration Specific AttributesMicrosoft Defender, the attribute would appear as macAddress.

IP Address Attributes

Device Security collects ip address attributes from Tenable SC. The following table lists each Tenable SC attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Tenable SC Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
dnsName
tenable_sc.dnsName
hostname
Dns name
ip
—
IP Address
IP
macAddress
—
MAC Address; id
MAC address
osCPE
tenable_sc.osCPE
raw_os
OS CPE
assetExposureScore
tenable_sc.assetExposureScore
—
Asset exposure score
lastAuthRun
tenable_sc.lastAuthRun
—
Last auth run
lastUnauthRun
tenable_sc.lastUnauthRun
—
Last unauth run
netbiosName
tenable_sc.netbiosName
—
Netbios name
pluginSet
tenable_sc.pluginSet
—
Plugin set
policyName
tenable_sc.policyName
—
Policy name
repository.id
tenable_sc.repository_id
—
Unique identifier
repository.name
tenable_sc.repository_name
—
Name of the device
uuid
tenable_sc.uuid
—
UUID

Device Vulnerability Attributes

Device Security collects device vulnerability attributes from Tenable SC. The following table lists each Tenable SC attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Tenable SC Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
dnsName
tenable_sc.dnsName
hostname
Dns name
ip
—
IP Address
IP
lastSeen
—
Last Activity
Last seen
macAddress
—
MAC Address; id
MAC address
operatingSystem
—
raw_os
Operating system
assetExposureScore
tenable_sc.assetExposureScore
—
Asset exposure score
netbiosName
tenable_sc.netbiosName
—
Netbios name
repository.id
tenable_sc.repository_id
—
Unique identifier
repository.name
tenable_sc.repository_name
—
Name of the device

Vulnerability Attributes

Device Security collects vulnerability attributes from Tenable SC. The following table lists each Tenable SC attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Tenable SC Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
cve
tenable_sc.cve
cve
CVE
baseScore
—
cvss_base_score
Base score
cvssV3BaseScore
—
cvss_v3base_score
Cvss v3 base score
description
—
Description
Description
firstSeen
tenable_sc.firstSeen
detected_time; First Seen
First seen
macAddress
—
id
MAC address
ip
—
IP Address
IP
lastSeen
tenable_sc.lastSeen
last_seen
Last seen
operatingSystem
—
raw_os
Operating system
severity.name
—
risk_level
Name of the device
solution
tenable_sc.solution
solution
Solution
pluginName
tenable_sc.pluginName
title
Plugin name
pluginID
tenable_sc.pluginID
vulnerability_id
Plugin ID
assetExposureScore
tenable_sc.assetExposureScore
—
Asset exposure score
hasBeenMitigated
tenable_sc.hasBeenMitigated
—
Has been mitigated
patchPubDate
tenable_sc.patchPubDate
—
Patch pub date
pluginPubDate
tenable_sc.pluginPubDate
—
Plugin pub date
port
tenable_sc.port
—
Port
protocol
tenable_sc.protocol
—
Protocol
repository.id
tenable_sc.repository_id
—
Unique identifier
repository.name
tenable_sc.repository_name
—
Name of the device
seolDate
tenable_sc.seolDate
—
Seol date
vulnPubDate
tenable_sc.vulnPubDate
—
Vuln pub date
* Only some attributes map to a Device Security Common Attribute.