Vulnerability Assessment and Testing
Vulnerability Assessment and Testing
Module – 05
Day - 11
CVSS Calculator
https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator
Vulnerability Database
1. https://nvd.nist.gov/
2. https://www.exploit-db.com/
3. https://vuldb.com/
4. https://www.cvedetails.com/
5. https://cve.mitre.org/
6. https://security.snyk.io/
Scan Types
Automated Scan
Fully Automated Scan with Scanning tools such as –
Nessus
Manual Scan
Manual Process, using google search, study about
systems, using open-source tools for example – Nuclei,
nmap, nmap script etc.
Assessment Report Types
• Mainly Two Types
Executive Summary (For Non-technical / Management People)
Technical Details (For engineering Team)