AI term
CVSS
What is CVSS?
Common Vulnerability Scoring System for rating the severity of security vulnerabilities
In other languages
- 한국어CVSS
- 소프트웨어 취약점의 심각도를 수치로 평가하는 공개 표준 점수 체계
- 日本語CVSS
- 脆弱性の深刻度を0.0から10.0の数値で評価する標準的なスコアリング方式
Related Terms
- Vulnerability AssessmentSystematic process for identifying, classifying and prioritizing security weaknesses in software, networks or systems
- CVECommon Vulnerabilities and Exposures, a list of publicly disclosed computer security flaws maintained by the MITRE Corporation.
- Vulnerability triagingProcess of reviewing security flaws to prioritize severity, impact, ownership, and remediation steps
- CWEA community-developed list of common software and hardware weakness types that serve as a standard for identifying security vulnerabilities
- Vulnerability researchSecurity practice of finding, analyzing, and validating weaknesses in software, systems, or networks
- Vulnerability disclosureProcess for reporting, validating, fixing, and publicly communicating security flaws in software or systems
- CVDA process in which security researchers and affected organizations coordinate vulnerability remediation and public disclosure.
- Vulnerability RemediationThe process of identifying, prioritizing, and fixing security weaknesses in software to prevent potential exploitation by malicious actors.
- TriageSystematic process of assessing and prioritizing the severity of issues or vulnerabilities
- Impact LevelA security classification standard used by the US Department of Defense to categorize the sensitivity of information stored and processed in cloud computing environments.
- Severity taxonomyClassification scheme that assigns issue levels such as blocker, warning, or informational status