October 5, 2026
TA-Vulnerability catalog
Brings the CISA KEV catalog, CISA Vulnrichment and FIRST.org EPSS scores into Splunk, normalized to the CIM Vulnerabilities data model.Built by hiroaki ogawaSplunk Enterprise, Splunk Cloud
Platform Version: 10.6, 10.5, 10.4, 10.3, 10.2
CIM Version: 5.x
Log in to rate this app
*ENGLISH* **TA-Vulnerability catalog** ingests three public vulnerability catalogs into Splunk and normalizes them to the CIM **Vulnerabilities** data model: the CISA KEV catalog, CISA Vulnrichment (CVE Record 5.x with CISA ADP enrichment) and FIRST.org EPSS scores. Together they answer the three questions that drive patch prioritization — is this CVE being exploited, how likely is it to be, and how bad would it be. Collection is incremental, and Vulnrichment events retain the complete raw CVE record. *JAPANESE* **TA-Vulnerability catalog** は、3つの公開脆弱性カタログを Splunk に取り込み、CIM **Vulnerabilities** データモデルに正規化する Technology Add-on です。対象は CISA KEV カタログ、CISA Vulnrichment(CVE Record 5.x + CISA ADP による拡充)、FIRST.org EPSS スコア。 「その CVE は悪用されているか」「悪用される確率はどれだけか」「悪用されたら影響はどれだけか」 という、対応優先度を決める3つの問いに答えるためのデータが揃います。取り込みは差分方式で、 Vulnrichment は CVE レコードの原本をそのまま保持します。
Log in to report this app listing.