Vulnerability Assessment Flashcards

1
Q

CVSS assessment consists of three metrics for measuring vulnerabilities

A

Base metrics: It represents the inherent qualities of a vulnerability.
Temporal metrics: It represents the features that keep on changing during the lifetime of a vulnerability.
Environmental metrics: It represents the vulnerabilities that are based on a particular environment or implementation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

This part of the report provides information such as the name of the scanning tool, its version, and the network ports that have to be scanned

A

Scan information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

This part of the report contains information about the target system’s name and address

A

Target information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

This section provides a complete scanning report. It contains subtopics such as target, services, vulnerability, classification, and assessment

A

Results

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

This subtopic includes each host’s detailed information

A

Target

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

The subtopic defines the network services by their names and ports.

A

Services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

This subtopic allows the system administrator to obtain additional information about the scanning such as origin of the scan

A

Classification

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

This class provides information regarding the scanner’s assessment of the vulnerability

A

Assessment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly