欢迎访问行业研究报告数据库

行业分类

当前位置:首页 > 报告详细信息

找到报告 1 篇 当前为第 1 页 共 1

常见的误用评分系统(CMSS):度量软件功能滥用漏洞 Common Misuse Scoring System (CMSS): Metrics for Software Feature Misuse Vulnerabilities
作者:LeMay, E.Scarfone, K.Mell, P. 作者单位:Illinois Univ. at Urbana-Champaign.;National Inst. of Standards and Technology (ITL), Gaithersburg, MD. Computer Security Div. 加工时间:2013-10-08 信息来源:科技报告(PB) 索取原文[39 页]
关键词:电子信息;软件;系统;漏洞;CMSS
摘 要:The Common Misuse Scoring System (CMSS) is a set of measures of the severity of software feature misuse vulnerabilities. A software feature is a functional capability provided by software. A software feature misuse vulnerability is a vulnerability in which the feature also provides an avenue to compromise the security of a system. Such vulnerabilities are present when the trust assumptions made when designing software features can be abused in ways that violate security. Misuse vulnerabilities allow attackers to use for malicious purposes the functionality that was intended to be beneficial. CMSS can provide measurement data to assist organizations in making sound decisions on addressing software feature misuse vulnerabilities and in conducting quantitative assessments of the overall security posture of a system. This report defines proposed measures for CMSS and equations to be used to combine the measures into severity scores for each vulnerability. The report also provides examples of how CMSS measures and scores would be determined for selected software feature misuse vulnerabilities.
© 2016 武汉世讯达文化传播有限责任公司 版权所有 技术支持:武汉中网维优
客服中心

QQ咨询


点击这里给我发消息 客服员


电话咨询


027-87841330


微信公众号




展开客服