| Vulnerability Database |
| ALTAIR | esCERT-UPC: The UPC University Computer Emergency Response Team | Vulnerability Database and Vulnerability Alerts | Spain | |
| CA Vulnerability Manager | CA | Vulnerability Management | United States | |
| CERIAS Cooperative Vulnerability Database | CERIAS/Purdue University | Vulnerability Database | United States | |
| Cert-IST Knowledge Base | Cert-IST | Vulnerability Database | France | |
| CERT Vulnerability Notes Database | CERT Coordination Center | Database | United States | |
| Cisco Security Center | Cisco Systems | Vulnerability Database | United States | |
| Criston Precision Vulnerability Management | Criston Software | Vulnerabilty Scanner | France | |
| CSI | LEXSI | Vulnerability Database and Notification Service | France | |
| DeepSight Alert Services | Symantec | Vulnerability Alerting Service and Database | United States | |
| DOVES | Computer Security Laboratory, Dept. of Computer Science, UC Davis | Vulnerability Database | United States | |
| DragonSoft Vulnerability Database | DragonSoft Security Associates, Inc. | Online Vulnerabilities and Exposures Database | Taiwan | |
| FrSIRT Security Advisories | French Security Incident Response Team (FrSIRT) | Security Advisories, Database and Archives | France | |
| HP Network Automation Software | Hewlett-Packard Company | Data Center Automation | United States | |
| HP Server Automation Software | Hewlett-Packard Company | Data Center Automation | United States | |
| IP360 Vulnerability Management System | nCircle Network Security, Inc. | Appliance-Based Enterprise-Class Vulnerability Management System | United States | |
| MSSecure.XML | Shavlik Technologies, LLC | Patch Data Repository | United States | |
| National Vulnerability Database (NVD) | National Institute of Standards and Technology | Online Vulnerability Database | United States | |
| Network Box Web Site | Network Box Corporation Ltd. | Vulnerability Database, Security Advisories and Archives | Hong Kong | |
| Open Source Vulnerability Database (OSVDB) | Open Source Vulnerability Database (OSVDB) | Vulnerability Database | United States | |
| Open Vulnerability and Assessment Language (OVAL) Web site | MITRE Corporation | Standard for Describing Vulnerability and Configuration Criteria | United States | |
| PatchAgent | Niscent s.l.r. | Patch Management Tool | Italy | |
| Secunia Advisories - Secunia Vulnerability Database | Secunia | Database and Archive of Alerts and Information About Vulnerabilities | Denmark | |
| SecurityAlert | SecurityReason | Security Advisories, Database, and Archive | Poland | |
| Security Database Website | Security Database | Web site services | France | |
| SecurityFocus Vulnerability Database | Symantec | Vulnerability Database | United States | |
| Shavlik Technologies Website | Shavlik Technologies, LLC | Patch Data WebSite | United States | |
| Symantec Security Response Web site | Symantec | Vulnerability Database, Security Advisories and Archives | United States | |
| ThreatEx | Spirenet Communications | Vulnerability Assessment Appliance and Database | United States | |
| Verletzbarkeits-Datenbank | scip AG | Free Vulnerability Database | Switzerland | |
| Vigil@nce | Silicomp-AQL | Online Vulnerability Database (French) | France | |
| Vulnera | Grupo S21sec Gestión S.A. | Daily Vulnerability Mail Service Based on a Daily Updated Database | Spain | |
| X-Force Database | IBM Internet Security Systems | Vulnerability Database | United States | |
| Security Advisories and Archives |
| Apache Week Web Server | Red Hat | Apache Web Server Vulnerability Database | United States | |
| Apple Product Security | Apple Computer, Inc. | Security Updates for Apple Products | United States | |
| CERT/CC Advisories | CERT Coordination Center | Archives | United States | |
| Cisco Security IntelliShield Alert Manager Service | Cisco Systems | Security Intelligense Service | United States | |
| Debian Security Advisories | Software in the Public Interest, Inc. | Advisories | United States | |
| FrSIRT Security Advisories | French Security Incident Response Team (FrSIRT) | Security Advisories, Database and Archives | France | |
| FrSIRT Vulnerability Notification Service | French Security Incident Response Team (FrSIRT) | Vulnerability and Exploit Tracking and Alerting Service | France | |
| Gentoo Linux Security Advisories | Gentoo Foundation | Security Advisories | United States | |
| HP Live Network Service | Hewlett-Packard Company | Internet Community Portal and Subscription Service | United States | |
| Mandriva Advisories | Mandriva | Linux Operating System Security Advisory Web Site | Canada | |
| Network Box Web Site | Network Box Corporation Ltd. | Vulnerability Database, Security Advisories and Archives | Hong Kong | |
| Open Source Vulnerability Database (OSVDB) | Open Source Vulnerability Database (OSVDB) | Vulnerability Database | United States | |
| Red Hat Security Advisories | Red Hat | Advisory Capability | United States | |
| Secunia Advisories - Secunia Vulnerability Database | Secunia | Database and Archive of Alerts and Information About Vulnerabilities | Denmark | |
| SecurityAlert | SecurityReason | Security Advisories, Database, and Archive | Poland | |
| Security Announcement Service RUS-CERT | RUS-CERT University of Stuttgart | Security Announcement Information Service | Germany | |
| Security Database Website | Security Database | Web site services | France | |
| SecurityTracker | SecurityTracker | Vulnerability Alerts | United States | |
| Symantec Security Response Web site | Symantec | Vulnerability Database, Security Advisories and Archives | United States | |
| Threat Intelligence | SecureWorks | Security Intelligence Service | United States | |
| X-Force Alerts and Advisories | IBM Internet Security Systems | Alerts & Advisories Archive | United States | |
| Vulnerability Assessment and Remediation |
| AppDetectivePro for IBM DB2 | Application Security, Inc. | Database Vulnerability Assessment Tool | United States | |
| AppDetectivePro for Lotus Notes/Domino | Application Security, Inc. | Database Vulnerability Assessment Tool | United States | |
| AppDetectivePro for Microsoft SQL Server | Application Security, Inc. | Database Vulnerability Assessment Tool | United States | |
| AppDetectivePro for MySQL | Application Security, Inc. | Database Vulnerability Assessment Tool | United States | |
| AppDetectivePro for Oracle | Application Security, Inc. | Database Vulnerability Assessment Tool | United States | |
| AppDetectivePro for Sybase | Application Security, Inc. | Database Vulnerability Assessment Tool | United States | |
| AppScan | IBM Rational | Application Security Assessment Tool | United States | |
| AppSentry | Integrigy Corporation | Vulnerability Assessment Tool | United States | |
| Assuria Auditor | Assuria Limited | Vulnerability Assessment and Remediation | United Kingdom | |
| Attack Tool Kit (ATK) | Computec.ch | Security Auditing and Penetration Testing | Switzerland | |
| AuditPro for SQL Server | NII Consulting | Vulnerability Assessment Tool | India | |
| AURORA RSAS | NSFocus Information Technology (Beijing) Co., Ltd. | Vulnerability Assessment Tool | P.R. China | |
| AVDS | Beyond Security Ltd. | Automated Vulnerabilities Scanner | Israel | |
| BigFix Security Configuration and Vulnerability Management | BigFix, Inc. | Vulnerability and Security Configuration Management Suite | United States | |
| C5 Enterprise Vulnerability Management (EVM) Suite | Secure Elements, Incorporated | Automated Vulnerability Remediation | United States | |
| CA Policy and Configuration Manager | CA | Configuration Management, Risk Assessment, and Policy Compliance | United States | |
| CA Vulnerability Manager | CA | Vulnerability Management | United States | |
| Cenzic Hailstorm Enterprise ARC | Cenzic, Inc. | Application Security Assessment Tool | United States | |
| Cenzic Hailstorm Professional | Cenzic, Inc. | Application Security Assessment Tool | United States | |
| CORE IMPACT | Core Security Technologies | Automated Penetration Testing | United States | |
| Criston Precision Vulnerability Management | Criston Software | Vulnerabilty Scanner | France | |
| Cybervision Vulnerability Assessment and Mangement System | Beijing Venus Information Security Technology, Inc. | Vulnerability Scanner | P.R. China | |
| DragonSoft Secure Scanner | DragonSoft Security Associates, Inc. | Vulnerabilities and Exposures Assessment Software | Taiwan | |
| EventTracker | Prism Microsystems, Inc. | Change and Vulnerability Assessment Tool | United States | |
| FusionVM Consultant | Critical Watch | Appliance-Based Managed Service | United States | |
| FusionVM Enterprise System | Critical Watch | Appliance-Based Managed Service | United States | |
| FusionVM MSSP | Critical Watch | Appliance-Based Managed Service | United States | |
| FusionVM PCI | Critical Watch | Remote Scanning Service | United States | |
| FusionVM Software as a Service (SaaS) | Critical Watch | Remote Scanning Service | United States | |
| GFI LANguard Network Security Scanner | GFI Software Ltd. | Network Vulnerability Assessment & Remediation Product | United States | |
| HACKER FREE | Xentinel Digital Security, Inc. | Remote Vulnerability Assessment | United States | |
| HP Network Automation Software | Hewlett-Packard Company | Data Center Automation | United States | |
| HP Server Automation Software | Hewlett-Packard Company | Data Center Automation | United States | |
| HP WebInspect Software | Hewlett-Packard Company | Web Assessment | United States | |
| Internet Scanner | IBM Internet Security Systems | Vulnerability Assessment Tool | United States | |
| IP360 Vulnerability Management System | nCircle Network Security, Inc. | Appliance-Based Enterprise-Class Vulnerability Management System | United States | |
| ipLegion | E*MAZE Networks S.p.A. | Internet/Intranet Vulnerability Scanner | Italy | |
| LANDesk Patch Manager | LANDesk Software Inc. | Patch Management System | United States | |
| LANDesk Security Suite | LANDesk Software Inc. | Active Endpoint Security Management | United States | |
| ManageEngine Security Manager Plus | AdventNet, Inc. | Vulnerability Management Software for Windows and Linux Systems | India | |
| McAfee Foundstone Appliances | McAfee, Inc. | Vulnerability Assessment Appliance | United States | |
| McAfee Policy Auditor | McAfee, Inc. | Automated Vulnerability Remediation | United States | |
| McAfee Remediation Manager | McAfee, Inc. | Automated Vulnerability Remediation | United States | |
| McAfee Risk and Compliance Manager | McAfee, Inc. | Automated Audit and Policy Assurance System | United States | |
| McAfee Secure | McAfee, Inc. | Security Auditing and Certification | United States | |
| McAfee Vulnerability Manager | McAfee, Inc. | Vulnerability Management and Risk Mitigation | United States | |
| mySSE for Web (Online PC Vulnerability Assessment Service) | NileSOFT Ltd. | Online PC Vulnerability Assessment Service | Korea | |
| Nessus 3 Security Scanner | Tenable Network Security Inc. | Vulnerability, Patch and Configuration Auditing Tool | United States | |
| NetClarity Analyst and Update Service | NetClarity | Vulnerability Assessment Appliance and Update Service For Small Mobile Networks | United States | |
| NetClarity Auditor 128 and Update Service | NetClarity | Vulnerability Assessment Appliance and Update Service For Small Mobile Networks | United States | |
| NetClarity Auditor Enterprise and Update Service | NetClarity | Vulnerability Assessment Appliance and Update Service For Large Networks | United States | |
| NetClarity Auditor XL and Update Service | NetClarity | Vulnerability Assessment Appliance and Update Service For Small to Medium
Enterprises | United States | |
| NetIQ Vulnerability Manager | NetIQ | Vulnerability Assessment Tool | United States | |
| Netpower Network Security Assessment System | Beijing Netpower Technologies Inc. | Vulnerability Assessment Tool | P. R. China | |
| NeXpose | Rapid 7, Inc. | Vulnerability Assessment Tool | United States | |
| N-Stalker Enterprise Edition | N-Stalker, Inc. | Vulnerability Assessment Tool | Brazil | |
| N-Stalker Infrastructure Edition | N-Stalker, Inc. | Vulnerability Assessment Tool | Brazil | |
| N-Stalker QA Edition | N-Stalker, Inc. | Vulnerability Assessment Tool | Brazil | |
| NX Enterprise | NX Security | Vulnerability Assessment Service | Brazil | |
| NX Express | NX Security | Vulnerability Assessment Service | Brazil | |
| NX Express for Web Applications | NX Security | Vulnerability Assessment Service | Brazil | |
| Passive Vulnerability Scanner | Tenable Network Security Inc. | Passive Network Monitor | United States | |
| PatchAdvisor Enterprise | PatchAdvisor, Inc. | Patch Management | United States | |
| PatchLink Scan | Lumension Security, Inc. | Assessment Tool | United States | |
| PatchLink Update | Lumension Security, Inc. | Enterprise-Wide Patch Management and Vulnerability Remediation | United States | |
| Proventia Enterprise Scanner | IBM Internet Security Systems | Vulnerability Management Assessment System | United States | |
| QualysGuard Enterprise and Express Suite | Qualys | Network and Application Vulnerability Assessment Platform For Large Distributed
Organizations | United States | |
| QualysGuard PCI Compliance (Enterprise and Express Editions) | Qualys | Network and Application Vulnerability Assessment Platform For Large Distributed
Organizations | United States | |
| QualysGuard SANS/FBI Top 20 Vulnerabilities Scanner | Qualys | Free Vulnerability Assessment Service | United States | |
| QualysGuard Vulnerability Management (Enterprise and Express Editions) | Qualys | Network and Application Vulnerability Assessment Platform For Large Distributed
Organizations | United States | |
| Rational AppScan | IBM | Application Security Assessment Tool | United States | |
| Retina Network Security Scanner | eEye Digital Security | Vulnerability Assessment Tool | United States | |
| Risk Management System (RMS) | SecureInfo Corporation | Compliance Framework Tool | United States | |
| RJ-iTop Network Vulnerability Scanner System | FuJian RongJi Software Company, Ltd | Vulnerability Assessment Tool | P.R. China | |
| SAINTbox | SAINT Corporation | Network Vulnerability Scanning Appliance | United States | |
| SAINTmanager | SAINT Corporation | Network Vulnerability Assessment Management Console | United States | |
| Sandcat Pro | Syhunt, Inf. Ltd. | Web Application Security Scanner | Brazil | |
| Scan-edge | e-Project s.r.l. | Vulnerability Assessment and Remediation Service | United States | |
| SecPoint Penetrator | SecPoint | Vulnerability Assessment and Penetration Testing Appliance | Denmark | |
| Secuguard NSE (Network Security Explorer) | NileSOFT Ltd. | Network based Vulnerability Assessment Tool | Korea | |
| Secuguard SSE (System Security Explorer) | NileSOFT Ltd. | Host based Vulnerability Assessment Tool | Korea | |
| Secunia Network Software Inspector (NSI) | Secunia | Tool for Tracking, Mapping, and Managing Vulnerabilities in Corporate Networks | Denmark | |
| Secunia Online Software Inspector (OSI) | Secunia | Enterprise Tool for Tracking, Mapping, and Managing Vulnerabilities in Corporate
Networks | Denmark | |
| Secunia Personal Software Inspector (PSI) | Secunia | Enterprise Tool for Tracking, Mapping, and Managing Vulnerabilities in Corporate
Servers | Denmark | |
| SecuPlat ESM | Inzen | Vulnerability Assessment Management Platform | Korea | |
| SecureScout NX | netVigilance, Inc. | Single User Network-Based Vulnerability Assessment Tool | United States | |
| SecureScout SP | netVigilance, Inc. | Enterprise Network-Based Vulnerability Assessment Tool | United States | |
| Security Administrator's Integrated Network Tool (SAINT) | SAINT Corporation | Vulnerability Assessment Tool | United States | |
| Security Auditor's Research Assistant (SARA) | Advanced Research Corporation | Vulnerability Assessment Tool | United States | |
| Security Center | Tenable Network Security Inc. | Enterprise Security Management System | United States | |
| Security Risk Assessment | Information Risk Management Plc | Security Risk Assessment Service | United Kingdom | |
| ServerShield | Blue Lane Technologies Inc. | Inline Security Patch Proxy | United States | |
| Shavlik Technologies HFNetChkPro | Shavlik Technologies, LLC | Patch Management | United States | |
| Skybox View | Skybox Security Inc. | Exposure Risk Management Solution | Israel | |
| Sourcefire 3D System | Sourcefire, Inc. | Enterprise Threat Management Solution | United States | |
| StillSecure VAM | StillSecure | Vulnerability Management System | United States | |
| Sunbelt Network Security Inspector | Sunbelt Software | Vulnerability Assessment Tool | United States | |
| ThreatGuard On Demand | ThreatGuard, Inc. | Continuous Security Auditing and Compliance Management | United States | |
| ThreatGuard Traveler | ThreatGuard, Inc. | Continuous Security Auditing and Compliance Management for Service Providers | United States | |
| ThreatGuard Vulnerability Management System | ThreatGuard, Inc. | Continuous Security Auditing and Compliance Management | United States | |
| TraceAssess | TraceSecurity, Inc. | Vulnerability Lifecycle Management Utility | United States | |
| Trend Micro Vulnerability Assessment | Trend Micro, Inc. | Vulnerability Assessment Product with Virus Info Association | Japan | |
| Visionael Service Automation Suite | Visionael | Vulnerability Assessment and Remediation Tool | United States | |
| Xacta IA Manager | Telos Corporation | Vulnerability Assessment and Remediation | United States | |
| Vulnerability Assessment Service |
| ATTAKA | Openware | On Demand Vulnerability Management and Assessment Service | Argentina | |
| AVDS Server | Beyond Security Ltd. | Automated Vulnerabilities Scanner Platform For Service Providers | Israel | |
| AVDS Services | Beyond Security Ltd. | Automated Vulnerabilities Scanning Service | Israel | |
| BigFix Security Configuration and Vulnerability Management | BigFix, Inc. | Vulnerability and Security Configuration Management Suite | United States | |
| Catbird V-Security | Catbird | Security Service | United States | |
| Cenzic ClickToSecure | Cenzic, Inc. | Application Security Assessment Service | United States | |
| CORE IMPACT | Core Security Technologies | Automated Penetration Testing | United States | |
| Edgeos Security Services Platform | Edgeos, Inc. | Network Security Analysis Service | United States | |
| FAV - Falcon Vulnerabilities Analysis | TMC y Cia | Vulnerability Analysis Service/Appliance | Colombia | |
| Foresight | Cubico Solutions CC | Continuous Risk Analysis Solution | South Africa | |
| FusionVM Consultant | Critical Watch | Appliance-Based Managed Service | United States | |
| FusionVM Enterprise System | Critical Watch | Appliance-Based Managed Service | United States | |
| FusionVM MSSP | Critical Watch | Appliance-Based Managed Service | United States | |
| FusionVM PCI | Critical Watch | Remote Scanning Service | United States | |
| FusionVM Software as a Service (SaaS) | Critical Watch | Remote Scanning Service | United States | |
| GamaScan | GamaSec Ltd. | Web Site Vulnerability-Assessment Service | Israel | |
| HACKER FREE | Xentinel Digital Security, Inc. | Remote Vulnerability Assessment | United States | |
| McAfee Vulnerability Management Service | McAfee, Inc. | Managed Security Assessment Service | United States | |
| mySSE for Web (Online PC Vulnerability Assessment Service) | NileSOFT Ltd. | Online PC Vulnerability Assessment Service | Korea | |
| National Security Agency INFOSEC Evaluation Methodology (IEM) Certification Course | Security Horizon, Inc. | THE NSA IEM course materials | United States | |
| NetClarity Analyst and Update Service | NetClarity | Vulnerability Assessment Appliance and Update Service For Small Mobile Networks | United States | |
| NetClarity Auditor 128 and Update Service | NetClarity | Vulnerability Assessment Appliance and Update Service For Small Mobile Networks | United States | |
| NetClarity Auditor Enterprise and Update Service | NetClarity | Vulnerability Assessment Appliance and Update Service For Large Networks | United States | |
| NetClarity Auditor XL and Update Service | NetClarity | Vulnerability Assessment Appliance and Update Service For Small to Medium
Enterprises | United States | |
| Netcraft Network Examination Service | Netcraft Ltd. | Managed Vulnerability Scanning Service | United Kingdom | |
| One Stop PCI Scan | Backbone Security.com, Inc. | PCI Approved Scanning Service | United States | |
| Penetration Study | Clear North Technologies, Inc. | Penetration Study | United States | |
| QualysGuard Enterprise and Express Suite | Qualys | Network and Application Vulnerability Assessment Platform For Large Distributed
Organizations | United States | |
| QualysGuard PCI Compliance (Enterprise and Express Editions) | Qualys | Network and Application Vulnerability Assessment Platform For Large Distributed
Organizations | United States | |
| QualysGuard SANS/FBI Top 20 Vulnerabilities Scanner | Qualys | Free Vulnerability Assessment Service | United States | |
| QualysGuard Vulnerability Management (Enterprise and Express Editions) | Qualys | Network and Application Vulnerability Assessment Platform For Large Distributed
Organizations | United States | |
| Safend Auditor | Safend | On Demand Vulnerability Assessment Service | Israel | |
| Scan-edge | e-Project s.r.l. | Vulnerability Assessment and Remediation Service | United States | |
| SECNAP Managed Security Services | SECNAP Network Security Corporation | Managed Network Security Services For Precise Attack Prevention | United States | |
| SecPoint Penetrator | SecPoint | Vulnerability Assessment and Penetration Testing Appliance | Denmark | |
| SecureScout EagleBox | netVigilance, Inc. | Network Scanning Appliance-Based Service | United States | |
| SecureScout Perimeter | netVigilance, Inc. | Web-Based, Internet-Side Vulnerability Assessment Service | United States | |
| SecuritySpace Security Audits | E-Soft, Inc. | Vulnerability Assessment Service | Canada | |
| Symantec Control Compliance Suite | Symantec | Comprehensive, Policy-Based Security Assessment and Manager | United States | |
| ThreatEx | Spirenet Communications | Vulnerability Assessment Appliance and Database | United States | |
| Trend Micro Vulnerability Assessment | Trend Micro, Inc. | Vulnerability Assessment Product with Virus Info Association | Japan | |
| TrustKeeper | Trustwave | Vulnerability Scanning Service | United States | |
| VeriSign Vulnerability Management Service | VeriSign, Inc. | Vulnerability Assessment Service | United States | |
| Vulnerability Scanning Service | SecureWorks | Managed Security Service | United States | |
| WebSAINT | SAINT Corporation | Web-based Vulnerability Scanning Service | United States | |
| Westpoint Enterprise Scan | Westpoint Ltd. | Managed Vulnerability Assesssment Service | United Kingdom | |
| Security Information Management |
| CASPER | SecurView Inc. | Risk Management and Event Monitoring | United States | |
| Intellitactics Security Manager | Intellitactics, Inc. | Information Security Management | United States | |
| Log Radar | TecForte Sdn Bhd | Security Information Management (SIM) Software | Malaysia | |
| MindStorm Enterprise Edition | Secure Associates | Security Information Management | Hong Kong | |
| MindStorm MSSP Edition | Secure Associates | Security Information Management | Hong Kong | |
| nFX Open Security Platform (nFX OSP) | netForensics, Inc. | Security Information Management | United States | |
| SIMCommander | SIMCommander LLC | Security Information Management | United States | |
| SIMCommander Analyzer | SIMCommander LLC | Security Information Management | United States | |
| Policy Compliance |
| Archer Threat Management | Archer Technologies | Threat Management | United States | |
| Risk Management System (RMS) | SecureInfo Corporation | Compliance Framework Tool | United States | |
| TrustKeeper | Trustwave | Vulnerability Scanning Service | United States | |