Skip to content

Glossary

Plain-language definitions of the Nmap, scanning and vulnerability terms used across this site.

CPE (Common Platform Enumeration)
A standardized naming scheme for identifying software, hardware and operating systems, e.g. cpe:/a:openbsd:openssh:7.4 — how Nmap and vulnerability databases refer to the same product unambiguously.
CVE (Common Vulnerabilities and Exposures)
A unique identifier (e.g. CVE-2021-41773) assigned to a specific, publicly disclosed software vulnerability, used to cross-reference it across vendors, scanners and advisories.
CVSS (Common Vulnerability Scoring System)
An industry-standard 0–10 score describing how severe a vulnerability is, based on factors like attack complexity, privileges required and impact.
NSE Script
A script written in the Nmap Scripting Engine (Lua) that extends a scan beyond port/service detection — enumerating shares, checking default credentials, or testing for a specific known vulnerability.