Findings
Generator
Configuration
Lucidum Reverse
Architecture
Statistics
← All Findings
Vendor:
CrowdStrike Falcon
FIN-612
Weight:
5
4
3
2
1
Confidence:
High
Medium
Low
Edited:
2026-03-06 18:14
Verified
What It Detects
An asset classified as unmanaged (shadow IT) has known CVE vulnerabilities detected by CrowdStrike Falcon Spotlight. Unmanaged assets exist outside the organization's standard IT governance, meaning they are not enrolled in patch management systems, configuration management databases, or standard vulnerability remediation workflows. The CVE vulnerabilities on this asset will not be addressed through normal patching cycles, creating permanently exploitable attack surface until the asset is either brought under management or decommissioned.
MITRE ATT&CK Techniques
Comma-separated, e.g. T1078, T1190
Checks
read-only
Field
Operator
Value
IT Managed (True/False)
equals
False
CVE List
not_empty
Remediation
×
×
×
×
+ Add item
Why It Matters
×
×
×
+ Add item
Save Changes
Export Lucidum