Nessus Sample Reports
Below is a sample of the reports you can generate with the Nessus® vulnerability scanner.
Nessus reports display vulnerabilities by plugin or by host. Below is information about the report types.
- "Vulnerabilities by plugin" — This report type lists each vulnerability found during your scan, and then lists the hosts affected by the vulnerability. Systems administrators will find it easy to read this report and fix the problems which have been identified.
- "Vulnerabilities by host" — This report type lists each host found during the scan and its associated vulnerabilities. Systems administrators will often use this report to address specific issues with certain hosts, follow-up scans, PCI scans, and targeted assessments.
Network-based Scans (Uncredentialed)
- Exploitable Vulnerabilities
Network scans showing exploitable vulnerabilities by plugin and by host - Vulnerabilities by Plugin, Detailed Findings
Network scan showing details of vulnerabilities by plugin - Hosts Summary, Executive/Management Summary
Summary of a network scan showing host status and vulnerabilities sorted by severity - Uncredentialed Windows 2000 Network Scan, Vulnerabilities by Host, Detailed Findings
Uncredentialed Windows 2000 network scan showing details of vulnerabilities by host
Credentialed Vulnerability Scans
- Linux Hosts Summary, Executive/Management Summary
Summary of a Linux host scan showing status and vulnerabilities sorted by severity - Credentialed Windows Hosts Summary, Executive/Management Summary
Summary of a credentialed Windows host scan showing vulnerabilities sorted by severity
Compliance Audits
- PCI Compliance Scans
Failed PCI compliance scans by plugin and by host - MySQL CIS Compliance Audits
Center for Internet Security (CIS) compliance scans of SQL databases - Windows CIS Compliance Audits
CIS compliance scans of a Windows network
Patch Audits
- Linux Host Local Patch Audit
Linux host scan for missing patches - Windows Host Patch Audit
Windows host scan for missing patches
Web Application Testing
- Web Application Fuzz Testing: Finding previously-unknown web application vulnerabilities using fuzzing techniques
Results of fuzz testing a web application- Hosts Summary, Executive/Management Summary
- Vulnerabilities by Host and by Plugin, Detailed Findings (single report combines different chapters)