Scantide / Scantide Software Analyzer / CVE Enrichment and Evidence Sources
CVE Enrichment and Evidence Sources

Turn a CVE identifier into a richer investigation record.

Scantide uses enrichment records to attach useful context to CVEs. The analyzer is designed to display the evidence that exists rather than manufacture certainty when a source has no supporting record.

DefensiveEvidence basedRead-only referenceScantide

Why this matters

Scantide uses enrichment records to attach useful context to CVEs. The analyzer is designed to display the evidence that exists rather than manufacture certainty when a source has no supporting record.

Start with a concrete record

Use a product, identifier or documented record as the starting point instead of relying on a generic risk label.

Keep the supporting context

Scantide is designed to retain useful context around the finding so an administrator can understand why it deserves attention.

Connect it to operational work

Use the result as input to inventory, remediation, hardening, assessment or deeper investigation.

What to look for

  • Affected products and devices
  • CWE context
  • Advisory evidence
  • Package and source-specific status where available
Use the evidence in context. A lookup or intelligence record is a starting point for administration and investigation, not a substitute for confirming the actual deployed product, version, configuration and exposure.

Frequently asked questions

What does Scantide Software Analyzer search?

It is designed to search Scantide software and vulnerability intelligence, including CVE records and supporting affected-product, lifecycle, weakness and advisory context where available.

Does every CVE have the same enrichment?

No. The available evidence depends on the records and sources present for that CVE. Scantide is designed to show available evidence rather than imply that every field exists for every vulnerability.

Is this a vulnerability scanner?

The Software Analyzer is an intelligence interface. Scantide Online and Auditor provide assessment and inventory workflows that can use CVE intelligence in a broader context.

Use the working Scantide tool

These pages explain the capability and its use cases. The existing Scantide interface remains the working tool and primary source of current functionality.