Applicable to Entuity v23.0 P02 upwards. If you are using an earlier version of Entuity, see version 1 of this article.
To view the CPEs to/by which an existing CPE has been updated/deprecated (Navigate to Deprecated By)
Introduction:
From the CPE Search tab of the Vulnerability Monitoring page, you can search for CPEs amongst those listed in the CPE Dictionary.
From the search results, you can select and assign CPE Names to specified devices, and also filter your search down to the CPEs to/by which an existing CPE has been updated/deprecated.
This tab is applicable only to servers, not configuration sets.
This tab contains a table displaying the following information.
| Column Name | Description |
|---|---|
| CPE Name | full CPE Name. |
| Title | CPE's title/description (polled from NIST) |
| Official ID | CPE's official ID, if one exists (polled from NIST). This column is hidden by default. |
| Part |
This column is hidden by default. |
| Vendor | product vendor/manufacturer. |
| Product | product title or name. |
| Version | vendor-specific alphanumeric string of the product release version. |
| Update | vendor-specific alphanumeric string of the product update, service pack, or point release. |
| Edition | (deprecated field - only required for backwards compatibility with CPE v2.2) edition-related terms applied by the vendor to the product. |
| Language | language supported in the product UI. Must be valid language tags as defined by RFC 5646. This column is hidden by default. |
| SW Edition | product market or end user class. This column is hidden by default. |
| Target SW | software computing environment on which the product operates. This column is hidden by default. |
| Target HW | instruction set architecture (e.g. x86) on which product operates.. This column is hidden by default |
| Other | other vendor- or product-specific descriptive or identifying information that does not logically fit any other attribute above. This column is hidden by default. |
| Deprecated Status | If the CPE is deprecated, either true or false. |
| Deprecated By | This column is hidden by default |
To search for a CPE:
-
Navigate to the CPE Search tab of the Vulnerability Monitoring page, and click Search at the top of the tab (or from Overflow Menu).
The CPE Name Search form is displayed. - Enter values in the different sections of the form.
Search
-
Search - enter the CPE Names and/or keywords.
Entuity matches these search terms against the CPE Names and CPE Titles stored in the local CPE Dictionary. Keep the following in mind:- search terms must be separated by commas, not by whitespace. Terms with whitespace are considered a single search term value.
- enclosing search criteria in speech marks (" ") disables separation. For example: hello, world will split into hello and world, but "hello, world" does not.
- 'hello, world' splits into 'hello' and world' but '"hello, world"' does not.
- Search Term Relationship - specify the logical relationship between the comma-separated search terms, either AND or OR.
- Include Deprecated - specify if you want the search results to include deprecated CPE Names.
Match Using
- Regular Expression - specify whether to enable use of regular expression in the Search field, which allows for more advanced searching.
- Whole Attribute - specify whether to find only whole matches from your Search field input.
Advanced Settings
The Advanced Settings fields let you refine your search through specific values for CPE attribute fields.
- You can enter multiple values per attribute, separated by commas, which are logically ORed.
- Each attribute is logically ANDed.
The CPE attributes are as follows.
| Attribute | Description |
|---|---|
| part |
|
| vendor | product vendor/manufacturer. |
| product | product title or name. |
| version | vendor-specific alphanumeric string of the product release version. |
| update | vendor-specific alphanumeric string of the product update, service pack, or point release. |
| edition | (deprecated field - only required for backwards compatibility with CPE v2.2) edition-related terms applied by the vendor to the product. |
| language | language supported in the product UI. Must be valid language tags as defined by RFC 5646. |
| sw_edition | product market or end user class. |
| target_sw | software computing environment on which the product operates. |
| target_hw | instruction set architecture (e.g. x86) on which product operates. |
| other | other vendor- or product-specific descriptive or identifying information that does not logically fit any other attribute above. |
Click Done to save your selections on the Advanced form, and then click Done on the CPE Name Search form to execute your search. Otherwise, click Cancel. The CPE Search table then populates with the search results.
To assign a CPE to a device:
- From the list of search results on the CPE Search tab under the Vulnerability Monitoring page, select the CPE that you want to assign, and click Assign to Device at the top of the tab (or from the Overflow Menu or right-click Context Menu).
The Devices form is displayed. - Search/filter for, and select, the devices to which you want to assign the CPE, and then click Done.
To view the CPEs to/by which an existing CPE has been updated/deprecated (Navigate to Deprecated By):
In your search results, if your CPE Name has a Deprecated Status, you can use the Navigate to Deprecated By feature to filter the search results down to this CPE and the CPE to or by which an existing CPE has been updated or deprecated.
- Select the CPE and click Navigate to Deprecated By at the top of the tab (or from the Overflow Menu or right-click Context Menu).
The filtered CPEs are then displayed in the table.
Comments
0 comments
Please sign in to leave a comment.