home/glossary/vulnerability scanning parameter

vulnerability scanning parameter

nounverified·updated Sep 1, 2026

A configurable attribute or setting that governs the behavior of a vulnerability scanning process — such as scan scope (IP ranges, ports, or asset types), scan frequency, authentication credentials, scanning depth, and included or excluded checks. Standards and compliance frameworks treat these settings as security-relevant information, because their unauthorized disclosure or modification could allow an adversary to evade detection or narrow the scan's coverage. In practice, documents such as NIST SP 800-171r3 group them alongside intrusion-detection parameters and filtering rules as items requiring access controls and least-privilege protections.

MWELegacy lexicon import

Senses

NIST SP 800-171r3attested usage reviewer confirmed

No definition is given in NIST SP 800-171r3. The term is attested in use at 1 citation in that document; a definition is pending curation.

Classifications

Entity Type

Control85%manual reviewllm:claude-haiku-4-5
?unassignedlast reviewed

Sensitivity

Regulated88%manual reviewllm:claude-haiku-4-5
?unassignedlast reviewed

Information Class

Cui82%manual reviewllm:claude-haiku-4-5
?unassignedlast reviewed

Variants

plural
vulnerability scanning parameters
possessive
vulnerability scanning parameter's
pluralpossessive
vulnerability scanning parameters'