Definition
CVSS
CVSS, the Common Vulnerability Scoring System, is an open framework for rating the severity of a security vulnerability on a scale from 0 to 10. It weighs factors such as how easy the flaw is to exploit, whether an attacker needs local or network access, and how badly a successful attack would hurt confidentiality, integrity, and availability. The score maps to labels from low to critical, giving teams a shared language for triage. CVSS measures technical severity, not business context, so a high base score on an isolated test server may still rank below a medium score on a system holding customer data.
Keep exploring
← Back to the full glossary