Security Framework to categorize a threat

Damage Potential

  • Measures the extend of harm an attacker could cause

Reproducibility

  • Evaluates how easy the attack can be replicated

Exploitability

  • Assess the level of effort it takes to deploy the exploit

Affected users

  • Estimates number of users or systems impacted by a threat

Discoverability

  • Determines how easily the vulnerability can be identified by an attacker