Web Applications Vulnerabilities CVSSv2 Calculator

This topic contains 2 replies, has 3 voices, and was last updated by  lorddicranius 6 years, 8 months ago.

  • Author
    Posts
  • #8101
     Don Donzal 
    Keymaster

    Thought this was a pretty interesting way to calculate risk. Although it is based on their own internal risk assessments, it might make for a good starting point in your own organization when talking to higher ups or generating a report to a client:

    This calculator creates a CVSSv2 base score for vulnerabilities in web applications based on the High-Tech Bridge internal scoring system that is implemented in our HTB Security Advisories and is used to calculate risk of discovered vulnerabilities.

    Not all vulnerabilities are scored in strict accordance to FIRST recommendations. Our CVSSv2 scores are based on our long internal experience in web applications auditing and penetration testing, taking into consideration a lot of practical nuances and details. Therefore sometimes they may differ from those ones that are recommended by FIRST.

    Web Applications Vulnerabilities CVSSv2 Calculator:
    https://www.htbridge.com/cvss_web_calculator/

    Take a look and let us know what you think.

    Don

  • #51301
     Grendel 
    Participant

    That’s actually pretty good – naturally, it needs to be modified based on the actual network architecture / security posture / etc… but that’s probably why they say “we suggest.”

  • #51302
     lorddicranius 
    Participant

    That’s handy!  Thanks for sharing, Don!

You must be logged in to reply to this topic.

Copyright ©2019 Caendra, Inc.

Contact Us

Thoughts, suggestions, issues? Send us an email, and we'll get back to you.

Sending

Sign in with Caendra

Forgot password?Sign up

Forgot your details?