Support
Scan Results

Checking the VDB version in Invicti Enterprise On-Premises

This document is for:
Invicti Enterprise On-Premises

The Vulnerability Database (VDB) is a file that contains information that allows Invicti Enterprise to identify the version of applications and their components. This in turn allows Invicti Enterprise to report vulnerabilities based on the version detected. So for example XSS or SQLi are not defined in the VDB. These vulnerabilities are systematically cataloged and continuously updated to ensure that the latest security threats are included. When a vulnerability scan is conducted, Invicti Enterprise refers to the VDB to identify and report vulnerabilities found in your target or application.

This document explains how to check the latest available VDB version for Invicti Enterprise On-Premises, how to identify the VDB version used in previous scans, and how to find the VDB version currently present on your server.

How to check the latest available VDB version

Some Invicti Enterprise On-Premise environments may not have an internet connection and therefore require manual updates of the VDB. Knowing the latest VDB version available from Invicti will help ensure the correct file is obtained and applied for scans. 

The latest version number of the VDB file that is available for Invicti Enterprise On-Premises can be found on this URL:

If your VDB file is out of date, submit a ticket through our Help Center to get the latest version.

NOTE: Every time a scan is started, the scan engine checks the VDB file version. If the file is outdated, it tries to download the latest version. If the download fails, the scan uses the VDB file version that is available.

How to find the VDB version used during any previous security scan

When a scan is conducted, it refers to the VDB file on your server. To check what version was used during a particular scan, follow these steps:

  1. Open Invicti Enterprise.
  2. Go to Scans > Recent Scans.
  3. Click Report on the right-hand side of one of the scans.

  1. On the Scan Summary page, scroll down to the Technical Report > Scan Summary section.
  2. The version of the VDB file that was used for the selected scan is mentioned in the Agent field.

TIP: The VDB file version number 202405281500 can be decoded as follows:

YYYYMMDDxxxx where xxxx is the version number.

How to find the version number of the VDB file currently present on your server

  1. On the computer where the Invicti Enterprise Web Application is installed, open the following file location:
  • C:\Program Files (x86)\Invicti Enterprise Web Application\App_Data\Vdb\VdbVersion

  1. Open the VdbVersion file to view the current version number of the VDB file on your server.