From the course: Vulnerability Management: Assessing the Risks with CVSS v3.1

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

CVSS severity rating scale

CVSS severity rating scale

From the course: Vulnerability Management: Assessing the Risks with CVSS v3.1

Start my 1-month free trial

CVSS severity rating scale

- Now that we've learned how CVSS scores are calculated, let's talk about what those scores mean. CVSS scores range from zero to 10, with zero being the lowest risk, and 10 being the highest. This scale applies to base scores as well as fully calculated CVSS scores that incorporate temporal and environmental metrics. While numerical scores tell part of the story, a qualitative score that puts a vulnerabilities risk into human terms is a little easier to deal with. A critical vulnerability is much clearer than a vulnerability that scores a nine on CVSS v3.1 If I tell someone they have a vulnerability that scores a nine on the CVSS v3.1 scale, they might just look at me like I have three heads. Using a qualitative scale, makes communicating vulnerability risks to those outside the field a little bit easier. Terms like critical and high mean a lot more than numbers. Thankfully, the CVSS specification provides a mapping of…

Contents