The CVEs (Common Vulnerabilities and Exposures) menu page is an index page listing all vulnerabilities identified by MAIA. The information is continuously updated through the CVE Management Service.
CVEs listed here are not necessarily affecting any active or delivered software. Open the related Built artifacts report for the aimed software to see the current CVE status.
Sections in the page:
Filter by | Description |
---|---|
Search | Search the Name of a CVE-id, artifact or component. |
Severity | Filter on base metrics severity |
Decided | Filter on: have a decision/no decision |
Exploits | Filter on: Have exploits/No exploits |
Artifact | Filter on artifact |
Component | Filter on component |
Last update | Filter on last update period |
A listing of all CVEs.
Header | Description |
---|---|
CVE | CVE identity and a link to the local CVE show page containing detailed information and analysis tools. |
CVSS Score | The CVSS Base metrics and Temporal metrics |
CWE | Weakness type indicated with colored thermometer. |
Exploits | Shows a icon if exploits are detected for a CVE. |
Added date | Date when the CVE was added to MAIA |
Artifact | List of artifact versions and link to the detailed artifact info for each , in package url format. About package url (external link). |
Components | Components where this artifact belongs. |
Last update | Date for last update of CVE info at the information source (NVD) |
Decided on | Light blue "check" icon if a decision exists for this CVE. |