From the course: Vulnerability Management: Assessing the Risks with CVSS v3.1

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Common terms in vulnerability management

Common terms in vulnerability management

From the course: Vulnerability Management: Assessing the Risks with CVSS v3.1

Start my 1-month free trial

Common terms in vulnerability management

- [Instructor] In order to talk about vulnerabilities and the risks that they pose, you need to know a few terms and acronyms, as well as their definitions. Just to recap, a vulnerability, in the context of computers and networks, is a flaw that could lead to a compromise in the system's confidentiality, integrity, and/or availability. By themselves, vulnerabilities are only part of the picture when determining risk. A threat is anything that can exploit a vulnerability, either intentionally or accidentally, and obtain access to, damage, or destroy an asset. Without threats, a vulnerability is just a weakness. In general, we use the word risk pretty loosely in our culture. In the context of this course, risk is the potential for loss, damage, or destruction of an asset as the result of a threat exploiting a vulnerability. CVSS, or the Common Vulnerability Scoring System, is an industry standard for calculating the risks…

Contents