Open navigation

NIST NVD

Modified on: Tue, 20 Jun, 2023 at 8:00 PM

Overview

Using the NIST NVD Transforms for Maltego, investigators are able to quickly discover context and insights around CVEs, CPEs and CWEs using the NIST National Vulnerability Database.

 

The National Institute of Standards and Technology (NIST) is a non-regulatory federal agency within the U.S. Department of Commerce.

 

The National Vulnerability Database (NVD) is a product of the NIST Computer Security Division, Information Technology Laboratory. NVD is the U.S. government repository of standards-based vulnerability management data.

 

NVD data is represented using the Security Content Automation Protocol (SCAP) and enables automation of vulnerability management, security measurement, and compliance. The NVD includes databases of security checklist references, security-related software flaws, misconfigurations, product names, and impact metrics.

 

The NVD performs analysis on CVEs that have been published to the CVE Dictionary. The NVD team analyzes CVEs by aggregating data points from the description, references supplied and any supplemental data that can be found publicly at the time. This analysis results in association impact metrics (Common Vulnerability Scoring System - CVSS), vulnerability types (Common Weakness Enumeration - CWE), and applicability statements (Common Platform Enumeration - CPE), as well as other pertinent metadata.

 

Investigators can leverage NIST NVD data for:


Risk and Vulnerability Assessment and Management

Assess an organization's possible exposure to threats, especially with the help of CPEs.


Risk Mitigation

Understand the cause of vulnerabilities and how to proactively detect and prevent them.


Evaluation of Cybersecurity Compliance

Monitor and remediate your organization's security protocols against NIST standards, consisting of security best practices controls, in a broad set of industries. Complying with NIST guidelines and recommendations will help ensure compliance with other regulations, such as HIPAA, FISMA, or SOX.


You can read more about the benefits of NIST NVD on our website here.

 

Be sure not to miss our blog post, Protect Your Organization with NIST NVD and Maltego, to find out exactly what kind of information can be discovered using the NIST NVD Transforms and what a typical investigation using this integration would entail.

 

Pricing & Access

NIST NVD is freely available to both Maltego Commercial and Maltego Community Hub users. The Hub item can be installed directly from the Maltego Transform Hub.

 


NIST NVD Transforms

Get CVE details [NIST NVD]

Description

This Transform returns the CVE details from the National Vulnerability Database.


Transform Meta Info

InformationValue
Display NameGet CVE details [NIST NVD]
Owner 
AuthorMaltego Technologies
Data SourceNIST NVD
Transform Namemaltego.nistnvd.cveToCveDetails
Short DescriptionThis Transform returns the CVE details from the National Vulnerability Database
Input Entitiesmaltego.CVE
Output Entitiesmaltego.CVE

To CPE [NIST NVD]

Description

This Transform returns the CPEs on which the input CVE was found.


Transform Settings

Setting NameDisplay NameSetting TypeDefault ValueOptionalPopupAuthentication
maltego.nistnvd.cveToCpe.addOnsAdd Ons (Include Official CPE Names. Example, dictionaryCpes)stringdictionaryCpesTrueTrueFalse

Transform Meta Info

InformationValue
Display NameTo CPE [NIST NVD]
Owner 
AuthorMaltego Technologies
Data SourceNIST NVD
Transform Namemaltego.nistnvd.cveToCpe
Short DescriptionThis Transform returns the CPEs on which the input CVE was found
Input Entitiesmaltego.CVE
Output Entitiesmaltego.CPE

To CWE [NIST NVD]

Description

The Transform returns the CWE for the input CVE.


Transform Meta Info

InformationValue
Display NameTo CWE [NIST NVD]
Owner 
AuthorMaltego Technologies
Data SourceNIST NVD
Transform Namemaltego.nistnvd.cveToCwe
Short DescriptionThe Transform returns the CWE for the input CVE
Input Entitiesmaltego.CVE
Output Entitiesmaltego.CWE

To CVSS [NIST NVD]

Description

The Transform returns the CVSS for the input CVE.


Transform Meta Info

InformationValue
Display NameTo CVSS [NIST NVD]
OwnerMaltego Technologies GmbH
AuthorMaltego Technologies GmbH
Data SourceNIST NVD
Transform Namemaltego.nistnvd.cveToCvss
Short DescriptionThe Transform returns the CVSS for the input CVE.
Input Entitiesmaltego.CVE
Output Entitiesmaltego.CVSS

Search for CVEs [NIST NVD]

Description

This Transform searches National Vulnerability Database for CVEs.


Transform Settings

Setting NameDisplay NameSetting TypeDefault ValueOptionalPopupAuthentication
maltego.nistnvd.phraseToCve.addOnsAdd Ons (Include Official CPE Names. Example, dictionaryCpes)stringdictionaryCpesTrueTrueFalse
maltego.nistnvd.phraseToCve.cpeMatchStringCPE Match StringstringNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.cvssV2MetricsCVSS V2 MetricsstringNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.cvssV2SeverityCVSS V2 Severity (LOW, MEDIUM, HIGH)stringNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.cvssV3MetricsCVSS V3 Metrics (Example, AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)stringNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.cvssV3SeverityCVSS V3 Severity (LOW, MEDIUM, HIGH, CRITICAL)stringNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.cweIdCWE IDstringNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.includeMatchStringChangeInclude Match String Change (Check if vulnerabilities or associated product names were modified)booleanNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.isExactMatchExact MatchbooleanNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.modRangeModification Date Range (120 days max)daterangeNoneTrueTrueFalse
maltego.nistnvd.phraseToCve.pubRangePublication Date Range (120 days max)daterangeNoneTrueTrueFalse

Transform Meta Info

InformationValue
Display NameSearch for CVEs [NIST NVD]
Owner 
AuthorMaltego Technologies
Data SourceNIST NVD
Transform Namemaltego.nistnvd.phraseToCve
Short DescriptionThis Transform searches National Vulnerability Database for CVEs
Input Entitiesmaltego.Phrase
Output Entitiesmaltego.CVE

Search for CPEs [NIST NVD]

Description

This Transform searches National Vulnerability Database for CPEs.


Transform Settings

Setting NameDisplay NameSetting TypeDefault ValueOptionalPopupAuthentication
maltego.nistnvd.phraseToCpe.cpeMatchStringCPE Match StringstringNoneTrueTrueFalse
maltego.nistnvd.phraseToCpe.includeDeprecatedInclude DeprecatedbooleanNoneTrueTrueFalse
maltego.nistnvd.phraseToCpe.modRangeModification Date Range (120 days max)daterangeNoneTrueTrueFalse

Transform Meta Info

InformationValue
Display NameSearch for CPEs [NIST NVD]
Owner 
AuthorMaltego Technologies
Data SourceNIST NVD
Transform Namemaltego.nistnvd.phraseToCpe
Short DescriptionThis Transform searches National Vulnerability Database for CPEs
Input Entitiesmaltego.Phrase
Output Entitiesmaltego.CPE

To CVE [NIST NVD]

Transform Settings

Setting NameDisplay NameSetting TypeDefault ValueOptionalPopupAuthentication
maltego.nistnvd.cweToCve.addOnsAdd Ons (Include Official CPE Names. Example, dictionaryCpes)stringdictionaryCpesTrueTrueFalse
maltego.nistnvd.cweToCve.cpeMatchStringCPE Match StringstringNoneTrueTrueFalse
maltego.nistnvd.cweToCve.cvssV2MetricsCVSS V2 MetricsstringNoneTrueTrueFalse
maltego.nistnvd.cweToCve.cvssV2SeverityCVSS V2 Severity (LOW, MEDIUM, HIGH)stringNoneTrueTrueFalse
maltego.nistnvd.cweToCve.cvssV3MetricsCVSS V3 Metrics (Example, AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)stringNoneTrueTrueFalse
maltego.nistnvd.cweToCve.cvssV3SeverityCVSS V3 Severity (LOW, MEDIUM, HIGH, CRITICAL)stringNoneTrueTrueFalse
maltego.nistnvd.cweToCve.includeMatchStringChangeInclude Match String Change (Check if vulnerabilities or associated product names were modified)booleanNoneTrueTrueFalse
maltego.nistnvd.cweToCve.isExactMatchExact MatchbooleanNoneTrueTrueFalse
maltego.nistnvd.cweToCve.keywordKeywordstringNoneTrueTrueFalse
maltego.nistnvd.cweToCve.modRangeModification Date Range (120 days max)daterangeNoneTrueTrueFalse
maltego.nistnvd.cweToCve.pubRangePublication Date Range (120 days max)daterangeNoneTrueTrueFalse

Transform Meta Info

InformationValue
Display NameTo CVE [NIST NVD]
Owner 
AuthorMaltego Technologies
Data SourceNIST NVD
Output Entitiesmaltego.CVE

Variants

Transform NameShort DescriptionInput Entities
maltego.nistnvd.cweToCveThis Transform returns the CVEs associated with the input CWEmaltego.CWE
maltego.nistnvd.cpeToCveThis Transform returns the CVEs associated with input CPEmaltego.CPE

Get CPE details [NIST NVD]

Description

This Transform returns the CPE details from the CPE Dictionary.


Transform Meta Info

InformationValue
Display NameGet CPE details [NIST NVD]
Owner 
AuthorMaltego Technologies
Data SourceNIST NVD
Transform Namemaltego.nistnvd.cpeToCpeDetails
Short DescriptionThis Transform returns the CPE details from the CPE Dictionary
Input Entitiesmaltego.CPE
Output Entitiesmaltego.CPE

Did you find it helpful? Yes No

Send feedback
Sorry we couldn't be helpful. Help us improve this article with your feedback.