What Does NeXpose Scan?

While there are many vulnerability assessment products on the market, most focus their effort only on operating systems, network devices and system files. Although this is one important aspect of vulnerability scanning, the complexity of today's systems requires vulnerability assessment to be taken to a new level.

NeXpose provides complete coverage for all systems, software and devices in your IT environment, including:

  • Network and Operating System Vulnerability Assessment - The first step in securing your IT environment is to ensure all systems and network devices have been properly audited and exposures eliminated. NeXpose offers a vulnerability management solution that is enterprise-class and ideal for distributed networks of any size. NeXpose enables organizations to audit their networks, track open vulnerabilities through resolution, and ensure policy compliance.
  • Web Application Vulnerability Assessment - Web applications are one of the biggest security risks in any organization’s structure today because they exist as a conduit between external users and a company’s internal databases. NeXpose scans the Web application server and all web applications for serious threats to your environment, such as SQL injection and cross-site scripting.
  • Database Vulnerability Assessment - NeXpose provides comprehensive database scanning for vulnerabilities in Oracle, Microsoft SQL Server, Sybase, PostgreSQL, MySQL, IBM DB2 and IBM DB/400 for vulnerabilities that effect databases such as default accounts, default permissions on database objects such as tables, views, and stored procedures, buffer overflows and denial of service.
  • Compliance Scanning - There are a growing number of government and industry-specific regulations designed to protect corporate information. Most of these regulations require organizations to put into place policies that regularly audit the environment and produce reports to validate compliance. NeXpose Vulnerability Management provides SOX, HIPAA, PCI, FISMA and GLBA reports that documents and demonstrates compliance to auditors.

Rapid7 is committed to providing a vulnerability management solution that not only finds network and operating system exposures, but also scans databases and web applications for issues that could compromise data. NeXpose is the only product that scans web applications, network devices, operating systems, databases and other software applications for exposures that can put your IT environment at risk.

back next