Skip to content

Vulnerability and misconfiguration scanner

The appliance looks for what someone could walk in through: outdated versions, weak algorithms, forgotten services and systems that reached end of life.

severity score for every finding
CVSSseverity score for every finding
quality of detection indicator
0-100 %quality of detection indicator
scan types
4scan types
Vulnerability scanner · Log
Журнал сканера уязвимостей: найденные уязвимости с оценкой CVSS, уровнем опасности, портом, хостом и качеством обнаружения QoD
Findings with severity level and numeric score, port and host. On the right, the distribution of findings by level and the task details.

How it works

An administrator creates a task: an address range and a scan type. The task can be started, paused, resumed and deleted, and its progress is visible as a percentage right in the list.

When it finishes, every finding lands in the log with a CVSS score and a colour coded severity level. Next to it sits the quality of detection value, from zero to one hundred per cent: it honestly states how reliable a particular conclusion is, so nobody wastes time on scanner guesses.

The key difference from a plain CVE list is that every threat card contains a ready solution. Not just update, but a specific instruction on what to raise and to which version, with a solution type and an impact assessment.

What it finds in practice

Examples of real findings from the appliance interface, with their severity levels.

High severity
  • Operating system reached end of life
  • Authentication bypass in OpenSSH up to version 8.6
  • Denial of service through Diffie-Hellman key exchange
Medium severity
  • OpenSSH vulnerabilities below version 9.6, Terrapin attack
  • Prefix truncation in the SSH specification
  • Information disclosure in OpenSSH
Low severity
  • Weak MAC algorithms supported in SSH
  • Information disclosure through TCP timestamps
  • Information disclosure through ICMP timestamp replies
Vulnerability scanner · Threat card
Карточка уязвимости: сводка, описание, готовая рекомендация по устранению, способ обнаружения и влияние
For every finding: summary, description, impact on the infrastructure, detection method and a Solution section with a concrete action. The text switches between Russian and English.

Scan types

Basic scan

A quick check of a host or a range for vulnerabilities. Suitable for routine daily control.

Full scan

A deep check with a choice of port range: all ports, default ports, top 5000 or top 1000.

Host discovery

Finding live hosts in a given address range, without vulnerability checks.

System discovery

Identifying target systems, including installed operating systems and hardware in use.

We will prepare a quote for your network

Tell us about your infrastructure: how many sites, which switch sits in the core, whether you already run a SIEM. We will pick the edition and the connection scheme, and calculate the cost.

  • We reply within one business day
  • We design the connection scheme for your topology
  • We show the interface on a live demo unit

Request a quote

Leave a phone number or an email so we can reply.

By submitting this form you agree to our privacy policy.