@attritionorg @ncircletweets Scores are from NVD (for an example see CVE-2010-2863). I can provide other examples if you like.
-
-
-
@treguly@ncircletweets NVD uses junior BAH consultants to score, not so reliable. context-dep code exec is not 10.0 (AC=M not L) -
@attritionorg@ncircletweets Even then, CVSS is still highly flawed. A great example: user interaction vulns are labelled as remotes. -
@treguly@ncircletweets Not arguing that, preaching to the choir: http://bit.ly/1358nP8
End of conversation
New conversation -
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.