24 Feb 2005
A group of IT companies has developed a standard way to rate security vulnerabilities, in a bid to give systems administrators a better way of prioritising software patches.
The Common Vulnerability Scoring System (CVSS) was designed by engineers from companies including Microsoft and Cisco.
CVSS uses a series of measurements to rate the severity of a flaw, according to a report in New Scientist.
System administrators currently have to decide which of the dozens of alerts and patches are the most important as different vendors have their own scoring systems.
The CVSS assessment judges a vulnerability according to characteristics such as whether it gives hackers access to confidential information, or allows them to modify or destroy data.
The assessment also takes into account the age of the flaw, rating older flaws as more serious as hackers are more likely to have developed a way to exploit the vulnerabilities.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Sneak peek at the forthcoming glass-based machine
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Project Manager – Retail / eCommerce / Prince 2 – City...
Project Manager - Business Change - Financial Services...
My client a leading IT Service Provider requires an AIX...
As a key UK and worldwide brand, we are constantly looking...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?