CVSS
Common Vulnerability Scoring System
operationsmedium
CVSS assigns vulnerabilities a severity score from 0 to 10 based on factors like exploitability and impact. Organizations face thousands of vulnerabilities and need a consistent way to compare their severity, so teams use the score as a starting point for deciding which patches to prioritize. Score alone should not be the only factor.
Sources
More in operations
Go deeper
Tools worth considering
- Tenable Nessus → The standard vulnerability scanner for finding and prioritizing what to patch. A scanner shows you the holes; fixing them is still your team's job.
Affiliate links: the site may earn a commission at no extra cost to you (how this works). No single tool is a silver bullet; treat each as one layer of coverage.