Web Applications Vulnerabilities CVSSv2 Calculator

Viewing 2 reply threads
  • Author
    Posts
    • #8101
      Don Donzal
      Keymaster

      Thought this was a pretty interesting way to calculate risk. Although it is based on their own internal risk assessments, it might make for a good starting point in your own organization when talking to higher ups or generating a report to a client:

      This calculator creates a CVSSv2 base score for vulnerabilities in web applications based on the High-Tech Bridge internal scoring system that is implemented in our HTB Security Advisories and is used to calculate risk of discovered vulnerabilities.

      Not all vulnerabilities are scored in strict accordance to FIRST recommendations. Our CVSSv2 scores are based on our long internal experience in web applications auditing and penetration testing, taking into consideration a lot of practical nuances and details. Therefore sometimes they may differ from those ones that are recommended by FIRST.

      Web Applications Vulnerabilities CVSSv2 Calculator:
      https://www.htbridge.com/cvss_web_calculator/

      Take a look and let us know what you think.

      Don

    • #51301
      Grendel
      Participant

      That’s actually pretty good – naturally, it needs to be modified based on the actual network architecture / security posture / etc… but that’s probably why they say “we suggest.”

    • #51302
      lorddicranius
      Participant

      That’s handy!  Thanks for sharing, Don!

Viewing 2 reply threads
  • You must be logged in to reply to this topic.

Copyright ©2020 Caendra, Inc.

Contact Us

Thoughts, suggestions, issues? Send us an email, and we'll get back to you.

Sending

Sign in with Caendra

Forgot password?Sign up

Forgot your details?