Network Vulnerabilities (CVE) (server)
The server responds according to the CVE scenario. The server does not have Targets or CPS settings. Its CVE set and mode must match the client's.
- Receiver — same as for the HTTP server plugin.
- CVE settings — same as on the client: attack/FP mode, first/all scenarios, CVE selection, and step timeout (
blocked_timeout). For details on interpreting outcomes (completed/blocked_*), see Network Vulnerabilities (CVE). - Session settings — timeout only.
- IP header (L3) — same as for the HTTP server plugin.
- TCP header (L4) — same as for the HTTP server plugin.
- TLS settings — same as for the HTTP server plugin.
- Duration — same as for the HTTP server plugin.
- Network tunnels (optional).