vulnerability scanning parameter
A configurable attribute or setting that governs the behavior of a vulnerability scanning process — such as scan scope (IP ranges, ports, or asset types), scan frequency, authentication credentials, scanning depth, and included or excluded checks. Standards and compliance frameworks treat these settings as security-relevant information, because their unauthorized disclosure or modification could allow an adversary to evade detection or narrow the scan's coverage. In practice, documents such as NIST SP 800-171r3 group them alongside intrusion-detection parameters and filtering rules as items requiring access controls and least-privilege protections.
Senses
No definition is given in NIST SP 800-171r3. The term is attested in use at 1 citation in that document; a definition is pending curation.
Classifications
Entity Type
Sensitivity
Information Class
Variants
- plural
- vulnerability scanning parameters
- possessive
- vulnerability scanning parameter's
- pluralpossessive
- vulnerability scanning parameters'