NIST unveils new vulnerability database

Share this article:

The National Institute of Standards and Technology (NIST) has launched a new vulnerability database that integrates all publicly available federal vulnerability resources and provides links to industry resources.

The National Vulnerability Database (NVD) aims to make it easier for system administrators and other security practioners to learn about vulnerabilities and how to fix them, according to NIST.

About 300 new vulnerabilities are discovered each month and a single flaw often is known by various names, making it hard for administrators to keep up, the agency said.

NVD is based on the Common Vulnerabilities and Exposure (CVE) standard for naming vulnerabilities.

The database has information on about 12,000 vulnerabilities and is updated daily. Users can search by vulnerability type, severity and impact, software name and version number, and vendor. Users also can research the vulnerability history of a product and view vulnerability trends.

NVD was developed by researchers in NIST's Computer Security Division and is sponsored by the Department of Homeland Security National Cyber Security Division/U.S.-CERT.

http://nvd.nist.gov

Share this article:
You must be a registered member of SC Magazine to post a comment.
close

Next Article in News

Sign up to our newsletters

TOP COMMENTS

More in News

ISSA tackles workforce gap with career lifecycle program

ISSA tackles workforce gap with career lifecycle program ...

On Thursday, the group launched its Cybersecurity Career Lifecycle (CSCL) program.

Amplification DDoS attacks most popular, according to Symantec

Amplification DDoS attacks most popular, according to Symantec

The company noted in a whitepaper released on Tuesday that Domain Name Server amplification attacks have increased 183 percent between January and August.

Court shutters NY co. selling security software with "no value"

A federal court shut down Pairsys at the request of the Federal Trade Commission.