---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/pt-BR/security-management

 Release :

    - australia

ft:locale :

    - pt-BR

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Disable or enable risk reduction for a CVE or TPE

# Disable or enable risk reduction for a CVE or TPE {#ariaid-title1}

* Versão de lançamento: Australia
* 
* Atualizado 12 de mar. de 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 min. de leitura

As a Vulnerability Manager and Analyst, you can disable or enable the risk reduction requests for the host vulnerabilities associated with a Common Vulnerability Entry (CVE)
or Third-party Entry (TPE) in the Security Exposure Management Workspace.

## Antes de Iniciar

Role required: admin

## Por Que e Quando Desempenhar Esta Tarefa

The risk reduction for a CVE and TPE is enabled by default.  
Nota:  
The compensating controls feature is available for host vulnerabilities only.

## Procedimento

1. Navigate to WorkspacesSecurity Exposure Management Workspace.  
   On the Lists page, under Libraries, open one of the following for which you want to disable the risk reduction requests:
   * CVE from the CVEs list.
   * TPEs from the TPEs list.
   {#sem-disable-risk-reduction__ul_cgl_l4h_c1c}
2. Select Disable risk reduction.  
   The remediation owner can't request risk reduction for the host vulnerable items related to this CVE or TPE. In other words, the [Request for Risk Reduction](https://servicenow-prod.fluidtopics.net/~TjxyokCH1E~uw1VvNn~hA#itr-ws-request-exception-form-rr__entry-risk-reduction) check box doesn't appear when the Reason is selected as <kbd class="ph userinput">Mitigating Control in Place</kbd> on the Request Exception modal.
3. To enable the risk reduction requests for host vulnerable items, select Enable risk reduction.
**Conceitos relacionados**   

* [Understanding compensating controls for risk reduction](https://servicenow-prod.fluidtopics.net/ae7u0QnlwMPPLdqC6CKSjQ "Compensating controls are the measures taken to reduce the risk posed by vulnerabilities that can't be patched immediately. They can be used to mitigate the likelihood or impact of a successful exploit.")
* [Impact of the compensating controls on risk score and expiration date](https://servicenow-prod.fluidtopics.net/zHEj6xccpSURiWVRaBZdTw "As a Remediation Owner, you can request risk reduction for a host vulnerable item or remediation task. And the Vulnerability Manager or Analyst can approve these risk reduction requests.")  
**Tarefas relacionadas**   

* [Add a compensating control to the library](https://servicenow-prod.fluidtopics.net/_lMMgoL62Btnzmk60vfAhw "As a Vulnerability Manager or Analyst, add a list of compensatory controls to the Compensating Controls library in the Vulnerability Manager Workspace, which can be applied for the risk reduction of host vulnerable items and remediation tasks.")
* [Associate compensating controls with CVEs or TPEs for risk reduction requests](https://servicenow-prod.fluidtopics.net/XpThTv5D6d8aSCogfejHhQ "As a Vulnerability Manager or Analyst, you can associate relevant compensating controls with a Common Vulnerability Entry (CVE) or Third-party Entry (TPE) in the Vulnerability Manager Workspace, which can be used for reducing the risk posed by a vulnerability.")

