CVSS Worksheet

Common Vulnerability Scoring System (CVSS) is commonly used to rate security vulnerabilities. It helps system administrators prioritize response to security holes. Oracle provides CVSS ratings and base scores for most vulnerability fix announcements. You can calculate the score for a vulnerability using NIST CVSSv2 calculator. To use the calculator one must be familiar with CVSS v2.0 guide.

Here is an attempt to provide a simple, intuitive and illustrated worksheet to calculate CVSS v2 base score:

You can access the standalone CVSSv2 Worksheet here.

Comments:

Well done ! I like the subtle humor in the individual pictures (rocket science). Maybe there could be also some sort of a image reflecting the base score ? :-)

In more serious tone, I wish the CVSS computation was more standardized across different vendors. It is common to see CVSS value computed for the exactly same vulnerability to be around 7 for one vendor and around 4 for another.

Posted by Vladimir Kotal on July 25, 2011 at 06:45 PM PDT #

Pretty good!

Posted by Xuelei Fan on July 26, 2011 at 11:45 AM PDT #

Nice work Chandan

Posted by Haneef on July 27, 2011 at 02:28 AM PDT #

Post a Comment:
Comments are closed for this entry.
About


sayings of an hearer

Search

Archives
« April 2014
SunMonTueWedThuFriSat
  
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
   
       
Today