Glossary
Plain-language definitions of the Nmap, scanning and vulnerability terms used across this site.
- CPE (Common Platform Enumeration)
- A standardized naming scheme for identifying software, hardware and operating systems, e.g. cpe:/a:openbsd:openssh:7.4 — how Nmap and vulnerability databases refer to the same product unambiguously.
- CVE (Common Vulnerabilities and Exposures)
- A unique identifier (e.g. CVE-2021-41773) assigned to a specific, publicly disclosed software vulnerability, used to cross-reference it across vendors, scanners and advisories.
- CVSS (Common Vulnerability Scoring System)
- An industry-standard 0–10 score describing how severe a vulnerability is, based on factors like attack complexity, privileges required and impact.
- NSE Script
- A script written in the Nmap Scripting Engine (Lua) that extends a scan beyond port/service detection — enumerating shares, checking default credentials, or testing for a specific known vulnerability.