CVSS
Common Vulnerability Scoring System
The Common Vulnerability Scoring System is a standardized framework for rating the severity of security vulnerabilities on a 0-10 scale. CVSS scores factor in exploitability, impact, and environmental context to produce a numeric severity rating (None, Low, Medium, High, Critical).
Cómo se usa en ciberseguridad
Security engineers use CVSS scores to prioritize which vulnerabilities to patch first based on severity and exploitability. GRC analysts set SLA thresholds tied to CVSS ratings, requiring critical findings to be remediated within defined timeframes. CISOs reference CVSS metrics in risk reports to communicate vulnerability exposure to executive leadership.
Término relacionado en el glosario: common vulnerability scoring system
Las definiciones son explicaciones originales escritas con fines de desarrollo profesional. Para definiciones técnicas autorizadas, consulta NIST, ISO o el organismo de normalización correspondiente.