Podcast
Questions and Answers
What does the CVSS model aim to provide?
What does the CVSS model aim to provide?
- An encrypted communication channel
- An open source framework
- A common way to describe vulnerabilities (correct)
- A closed system for measuring vulnerabilities
What is defined as a vulnerability by the CVSS model?
What is defined as a vulnerability by the CVSS model?
- A security feature of an application
- A weakness of a device or application that could lead to a failure of confidentiality, integrity, or availability (correct)
- A strength of a system
- A minor bug in the system
What is the highest numeric value a vulnerability can be assigned on the CVSS scale?
What is the highest numeric value a vulnerability can be assigned on the CVSS scale?
- 1.0
- 100.0
- 10.0 (correct)
- 5.0
Which standard recommends the use of CVSS for evaluating vulnerabilities?
Which standard recommends the use of CVSS for evaluating vulnerabilities?
What is the main purpose of the Common Vulnerabilities and Exposures (CVE) dictionary identifier?
What is the main purpose of the Common Vulnerabilities and Exposures (CVE) dictionary identifier?
'CVSS Metrics' assigns a numeric value on a scale from _____ to _____?
'CVSS Metrics' assigns a numeric value on a scale from _____ to _____?
What is NOT included in each NVD entry?
What is NOT included in each NVD entry?
What is the maximum CVSS score that can represent the most severe security issue?
What is the maximum CVSS score that can represent the most severe security issue?
What is the purpose of CVSS metrics?
What is the purpose of CVSS metrics?
What is the main goal of providing links to websites and references in each NVD entry?
What is the main goal of providing links to websites and references in each NVD entry?