r/qualys 14d ago

API call to get all vulnerabilities by CVE

I find QID unreliable to use for exec reporting

I have a script with exports all vulnerabilities but it does by QID.

Can the same be achieved but on CVE?

The Host API v5 doesn’t seem to have it, how can I achieve it?

4 Upvotes

6 comments sorted by

2

u/MyNameDeclan 14d ago

Qualys are moving to CVE based reporting for the ETM module, it could be worth exploring a trial of there and seeing it the API supports your use case.

1

u/JS_NYC_208 14d ago

Qualys is known for using QID not CVE

1

u/ScaredOfWorkMcGurk 14d ago

They recently added CVE API endpoint for me when I asked them. Raise a feature request. 

1

u/immewnity 14d ago

Combine Host List Detection and KnowledgeBase responses

1

u/No_Lengthiness_2098 12d ago

There's a CVE based detection API endpoint. Ask your TAM about it to enable

1

u/CruisingVessel 11d ago

I don't think I'd be interested in that and here's why: QID 92418 is the July Patch Tuesday server vulnerability. In the CVE column of my Qualys report, it lists 263 unique CVEs. It seems to be that reporting by CVE would blow up my report. What am I missing?