Skip to main content

Varaxon Scan Hub

Vulnerability reports that state what your scan data can actually support

Upload a Nessus or Greenbone / OpenVAS export and receive a structured report. Where the export carries no structured CVE references, the report says so — it never presents missing data as a clean result.

The pre-flight assessment is free and anonymous. No account, no card and no email address are required.

What you get

  • A report built only from what is present in your export.
  • Explicit coverage statements, including “CVE data unavailable”.
  • Conflicting scanner records preserved and flagged, never silently merged.
  • Two downloadable sample reports so you can judge the output before signing up.

What Varaxon Scan Hub does

Four capabilities define the output. Each one is a statement about evidence, not a promise about coverage.

Evidence-led reporting

Every statement in the report traces back to a record in your export. Nothing is inferred to fill a gap.

Explicit coverage limits

Where CVE-based assessment cannot be performed, the report names the limitation instead of leaving a blank section.

Conflict quarantine

Disagreeing records for the same plugin are preserved side by side and flagged for review, never merged.

Export-aware parsing

Nessus and Greenbone / OpenVAS exports are read on their own terms, with scanner metadata and plugin identifiers retained.

The problem with most scan-to-report tooling

Missing data looks like good news

When an export carries no structured CVE references, many tools produce an empty section that reads as a clean result. Varaxon Scan Hub reports the CVE set as Unknown and explains why.

Conflicting records get merged away

Where one scan produces two different CVE sets for the same plugin, the conflict is evidence. Varaxon Scan Hub quarantines the finding rather than choosing a value for you.

Scanner families are not interchangeable

Nessus and Greenbone / OpenVAS exports carry different metadata. The report reflects the export in front of it instead of assuming a common shape.

How it works

  1. 1

    Upload your scanner export

    Provide a Nessus .nessus XML export or a Greenbone / OpenVAS XML export. No agents and no scanner credentials are involved.

  2. 2

    The export is parsed and validated

    Findings, hosts, plugin identifiers and any structured CVE references are extracted, and conflicting records are flagged instead of merged.

  3. 3

    You receive a structured report

    An executive summary, per-finding detail and an explicit statement of coverage limits — including where CVE-based assessment could not be performed.

Supported scanners

Varaxon Scan Hub supports two export families. Support is defined by the export format, not by the scanner edition or version.

Tenable Nessus

.nessus XML export

Nessus exports normally carry structured CVE references alongside plugin metadata, so CVE-based assessment is usually available.

Nessus vulnerability reports

Greenbone / OpenVAS

Greenbone / OpenVAS XML export

Greenbone exports may carry no structured CVE references at all. In that case the report states that CVE-based assessment is unavailable rather than reporting a clean result.

Greenbone / OpenVAS vulnerability reports

Conflicting records are quarantined

When a single scan yields two different CVE sets for the same plugin, that disagreement is recorded rather than resolved automatically.

Illustration only. Plugin 999001 is a fictional identifier used to show the behaviour; it is not customer data and not a benchmark.

Same scan, same plugin

  • Variant A — CVE-2024-0001, CVE-2024-0002
  • Variant B — CVE-2024-0009

Data-quality state: quarantined

Both variants are preserved and the conflict is recorded. Varaxon Scan Hub does not pick a winner, and the prioritized output marks the CVE set for this finding as Unknown until a human resolves it.

Sample reports

Both samples below are synthetic demonstration reports generated from test exports. They contain no customer data.

First page of the Nessus sample vulnerability report generated by Varaxon Scan Hub

Tenable Nessus

Tenable Nessus report sample

.nessus XML export

Generated from a Nessus export that carries structured CVE references and scanner metadata. The report groups validated evidence and keeps the technical detail available behind the executive summary.

Synthetic demonstration report generated from a test export. Not a customer report.

Download sample PDF (Tenable Nessus)
First page of the Greenbone Community Edition sample vulnerability report generated by Varaxon Scan Hub

Greenbone / OpenVAS

Greenbone / OpenVAS report sample

Greenbone Community Edition XML export

An unmodified Greenbone Community Edition sample. It intentionally demonstrates the state where the export carries no structured CVE references, so CVE-based assessment is reported as unavailable. That is not the same as a clean scan.

Synthetic demonstration report generated from a test export. Not a customer report.

Download sample PDF (Greenbone / OpenVAS)

Security and data handling

Scan exports describe your infrastructure, so the handling rules are published rather than implied.

  • Uploads are used only to produce your report. They are never sold, never shared for advertising and never used to train third-party models.
  • The pre-flight assessment is anonymous: no account, no card, no email address and no identifier tying the export to you.
  • Any optional identifier enrichment runs server-side under our control — your export is never sent from your browser to a third party.
  • This marketing site loads no third-party scripts, fonts, trackers, analytics, cookies or embeds. Every font and image is served from this domain.
  • Data handling commitments are published in writing, and a signed Data Processing Addendum is available on request.

Pricing at a glance

Your first three reports are free — no credit card and no automatic conversion. After that, choose a monthly or yearly plan, or buy reports individually.

Starter

$49 / month

or $490 / year

10 reports per month

Core

$99 / month

or $990 / year

25 reports per month

Growth

$199 / month

or $1,990 / year

60 reports per month

Scale

$299 / month

or $2,990 / year

150 reports per month

Pay-as-you-go report: $9 per report, with no subscription. Plans renew until cancelled and can be cancelled online at any time.

Start with the free pre-flight assessment

Check what your export supports before you create anything. Free, anonymous, and no card required.