The Common Vulnerability Scoring System (CVSS) provides an open framework for communicating the characteristics and impacts of IT vulnerabilities. Its quantitative model ensures repeatable accurate measurement while enabling users to see the underlying vulnerability characteristics that were used to generate the scores. Thus, CVSS is well suited as a standard measurement system for industries, organizations, and governments that need accurate and consistent vulnerability impact scores. Two common uses of CVSS are prioritization of vulnerability remediation activities and in calculating the severity of vulnerabilities discovered on one's systems. The National Vulnerability Database (NVD) provides CVSS scores for almost all known vulnerabilities.
- Dave Dugal
Millions of computer users worldwide will enjoy more secure virtual experiences and transactions with the advent today of CVSSv2 -- the latest version of the Common Vulnerability Scoring System. The release of version 2 was announced today by the Forum of Incident Response and Security Teams (FIRST) and the Common Vulnerability Scoring System-Special Interest Group (CVSS-SIG). CVSS provides a universal open and standardized method for rating IT vulnerabilities.
- Dave Dugal
http://twitpic.com/8wn0u - The incredible precision of the taxis in front of the Hotel Granvia in Kyoto.