Web Applications Vulnerabilities CVSSv2 Calculator

This topic contains 2 replies, has 3 voices, and was last updated by  lorddicranius 6 years, 8 months ago.

  • Author
  • #8101
     Don Donzal 

    Thought this was a pretty interesting way to calculate risk. Although it is based on their own internal risk assessments, it might make for a good starting point in your own organization when talking to higher ups or generating a report to a client:

    This calculator creates a CVSSv2 base score for vulnerabilities in web applications based on the High-Tech Bridge internal scoring system that is implemented in our HTB Security Advisories and is used to calculate risk of discovered vulnerabilities.

    Not all vulnerabilities are scored in strict accordance to FIRST recommendations. Our CVSSv2 scores are based on our long internal experience in web applications auditing and penetration testing, taking into consideration a lot of practical nuances and details. Therefore sometimes they may differ from those ones that are recommended by FIRST.

    Web Applications Vulnerabilities CVSSv2 Calculator:

    Take a look and let us know what you think.


  • #51301

    That’s actually pretty good – naturally, it needs to be modified based on the actual network architecture / security posture / etc… but that’s probably why they say “we suggest.”

  • #51302

    That’s handy!  Thanks for sharing, Don!

You must be logged in to reply to this topic.

Copyright ©2019 Caendra, Inc.

Contact Us

Thoughts, suggestions, issues? Send us an email, and we'll get back to you.


Sign in with Caendra

Forgot password?Sign up

Forgot your details?