Tip No. 5 – Add a POC and risk level
It is advisable to add as much information as possible to the report, such as the level of risk. How? With the Common Vulnerability Score System (CVSS), a system that is responsible for classifying the risk and criticality of a vulnerability. For more information, be sure to visit their website at https://www.first.org/cvss/calculator/3.1, where you can create scores yourself.
The following table shows the CVSS score rating:
RATING |
CVSS SCORE |
None |
0.0 |
Low |
0.1 - 3.9 |
Medium |
4.0 - 6.9 |
High |
7.0 - 8.9 |
Critical |
9.0 - 10.0 |
Table 11.1 – CVSS score rating
It is also very important...