Cyver offers the possibility of importing findings using a csv file. In order to make a successful import, the provided csv file needs to follow a specific format.
These are the rules for the columns to be met on the provided csv file:
Field | Values |
Code | default: auto-generated |
Title (required field) | |
Type | Vulnerability Noncomformity Observation default: Vulnerability |
Assets | |
Description | |
Labels | |
Severity | Info Low Medium High Critical default: Info |
CVSS20Score | |
CVSS20Vector | |
CVSS30Score | |
CVSS30Vector | |
CVSS31Score | |
CVSS31Vector | |
Impact | 0 1 2 3 4 5 default: 0 |
ImpactDescription | |
Likelihood | 0 1 2 3 4 5 default: 0 |
LikelihoodDescription | |
VulnerabilityTypes | DoS CodeExecution Overflow MemoryCorruption SqlInjection XSS DirectoryTraversal HttpResponseSplitting BypassSomething GainInformation GainPrivileges CSRF FileInclusion |
CWEList | for example: CWE-1; CWE-721 |
CVEList | for example: CVE-1; CVE-721 |
Controls | |
BackgroundInformation | |
Recommendation | |
ExternalReferences | |
Status | Draft PendingFix Fixed ReadyRetest Accepted ToReview Reviewed default: Draft |
EvidenceTitle | |
EvidenceLocation | |
EvidenceVersion | |
EvidenceReproduce | |
EvidenceDescription | |
EvidenceIssueDetails |