A network-based scan is a type of vulnerability assessment that tests the security of a system or a network from an external user's perspective, without requiring any software or credentials on the target. A network- based scan can identify vulnerabilities such as open ports, misconfigured firewalls, outdated software, or exposed services .