What are the two sections of the CVSS Environmental, General Modifiers Metric?

Prepare for the PCI Approved Scanning Vendor (ASV) Test. Study with flashcards, multiple choice questions, hints, and explanations. Get exam ready!

Multiple Choice

What are the two sections of the CVSS Environmental, General Modifiers Metric?

Explanation:
Two sections are Collateral Damage Potential and Target Distribution. These environmental modifiers tailor the score to how a vulnerability affects a real-world context. Collateral Damage Potential looks at how much damage could occur to assets beyond the immediate target if exploited, such as broader service disruption, data loss, or safety concerns. Target Distribution evaluates how widely the vulnerable systems are deployed in the environment; if many systems are affected, the potential impact rises. Together, they adjust the base score to reflect environmental realities, which is why both are part of the CVSS Environmental, General Modifiers metric.

Two sections are Collateral Damage Potential and Target Distribution. These environmental modifiers tailor the score to how a vulnerability affects a real-world context. Collateral Damage Potential looks at how much damage could occur to assets beyond the immediate target if exploited, such as broader service disruption, data loss, or safety concerns. Target Distribution evaluates how widely the vulnerable systems are deployed in the environment; if many systems are affected, the potential impact rises. Together, they adjust the base score to reflect environmental realities, which is why both are part of the CVSS Environmental, General Modifiers metric.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy