From the course: Cisco Certified CyberOps Associate (200-201) Cert Prep: 1 Security Concepts

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Understanding the CVE and the NVD

Understanding the CVE and the NVD

From the course: Cisco Certified CyberOps Associate (200-201) Cert Prep: 1 Security Concepts

Start my 1-month free trial

Understanding the CVE and the NVD

- [Instructor] The Common Vulnerabilities and Exposures is the go-to resource for security professionals. The CVE is an extensive list of entries that provides detailed information on known vulnerabilities. Each CVE has an identification number, a score, and additional information. The score is derived from a set of metrics using the Common Vulnerability Scoring System, an industry standard that rates the severity of vulnerabilities. The CVE is used in many places, such as intrusion detection systems, firewalls and security advisories, and it feeds into the National Vulnerability Database. I'm here at this website. I did a search on SQL injection. This is a common vulnerability, and it's where an attacker spoofs a data-driven application by injecting string values into a form field in order to expose the database contents. So here you can see all of the different entries in here, and we'll scroll down, and as you can see,…

Contents