
OpenVAS: review, pricing and alternatives
Comprehensive open-source vulnerability scanner to detect CVE security flaws on systems, servers and network equipment.
Pricing
On this page
Quick verdict
OpenVAS is the reference solution for open-source vulnerability management. Its exhaustive NVT database, CVSS reports and web interface make it a solid tool for any auditor seeking to identify and prioritize security flaws in an infrastructure.
Ideal for
System and network administrators
Avoid if
Non-technical users
Price
Gratuit (Greenbone) · Enterprise sur devis
Alternative to compare
See similar tools
About OpenVAS
Que permet OpenVAS ?
The reference open-source vulnerability scanner to audit your systems' security.
OpenVAS est évalué ici comme une solution de Cybersecurity. L’objectif est de comprendre ce que l’outil apporte concrètement, dans quels cas il devient pertinent et quels points doivent être vérifiés avant de l’adopter.
Pour comparer correctement OpenVAS, il faut regarder qualité des fonctionnalités, prix, prise en main et support. Ces critères évitent de se limiter au prix ou à la notoriété de la marque.
- 100k+ NVT
- CVE detection
- CVSS reports
- Web interface
À qui s’adresse OpenVAS ?
OpenVAS convient surtout à System and network administrators, IS security auditors et SOC teams and CISOs.
Les meilleurs cas d’usage identifiés sont System and network administrators, IS security auditors, SOC teams and CISOs, SMBs seeking a free scanner et Cybersecurity students. Cette approche aide à distinguer les profils pour lesquels OpenVAS apporte une vraie valeur des usages où une alternative peut être plus adaptée.
Avant de choisir, vérifiez la compatibilité avec vos usages, le support proposé et les conditions tarifaires à long terme.
- System and network administrators
- IS security auditors
- SOC teams and CISOs
- SMBs seeking a free scanner
Prix, limites et points de vigilance
Le tarif de OpenVAS est à analyser avec les fonctionnalités incluses, les limites du plan et les éventuels coûts de renouvellement.
OpenVAS est présenté avec le positionnement suivant : Gratuit (Greenbone) · Enterprise sur devis. La présence d’un essai gratuit permet de tester l’outil avant engagement.
Les principales limites à prendre en compte sont Long scans on large infrastructures, Complex initial setup, Possible false positives et Limited performance without dedicated hardware. Ces points ne rendent pas forcément l’outil moins intéressant, mais ils doivent être comparés à vos priorités.
- Long scans on large infrastructures
- Complex initial setup
- Possible false positives
- Limited performance without dedicated hardware
Points forts
- 100,000+ vulnerability tests (NVT)
- CVE detection on all system types
- Detailed reports with CVSS scores
- Clean web interface via Greenbone Security Assistant
- Regular signature updates
- 100% open source and free
Points faibles
- Long scans on large infrastructures
- Complex initial setup
- Possible false positives
- Limited performance without dedicated hardware
✅Ideal for
- →System and network administrators
- →IS security auditors
- →SOC teams and CISOs
- →SMBs seeking a free scanner
- →Cybersecurity students
🚫Not ideal for
- , Non-technical users
- , Real-time scanning (point-in-time scanner)
- , EDR or antivirus replacement
Useful links to compare OpenVAS
Our verdict
OpenVAS is the reference solution for open-source vulnerability management. Its exhaustive NVT database, CVSS reports and web interface make it a solid tool for any auditor seeking to identify and prioritize security flaws in an infrastructure.