Title :
Common Vulnerability Scoring System
Author :
Mell, Peter ; Scarfone, Karen
Author_Institution :
US National Institute of Standards and Technology
Abstract :
Vendors have historically used proprietary methods for scoring software vulnerabilities, usually without detailing their criteria or processes. The Common Vulnerability Scoring System (CVSS) is a public initiative designed to address this issue by presenting a framework for consistently and accurately assessing and quantifying software vulnerabilities´ impact on organizations.
Keywords :
Application software; Authentication; Computer security; Cryptography; Dictionaries; Operating systems; Privacy; Standards publication; Uniform resource locators; CVE; Common Vulnerabilities and Exposures; NVD; National Vulnerability Database; vulnerability assessment;
Journal_Title :
Security & Privacy, IEEE
DOI :
E69ECBEF-73C7-4F7C-8F74-1C7E989CAB90