[Security Architecture]
A security analyst is using data provided from a recent penetration test to calculate CVSS scores to prioritize remediation. Which of the following metric groups would the analyst need to determine to get the overall scores? (Select three).
The Common Vulnerability Scoring System (CVSS) v3.1 uses three metric groups to calculate overall scores:Base,Temporal, andEnvironmental.
Base (E):Mandatory metrics assessing exploitability (e.g., attack vector) and impact (confidentiality, integrity, availability).
Temporal (A):Optional metrics reflecting the current state of the vulnerability (e.g., exploit availability, remediation level).
Environmental (F):Optional metrics tailoring the score to the organization's context (e.g., security requirements).
B, C, D (Availability, Integrity, Confidentiality):These are subcomponents of the Base Impact metrics, not standalone groups.
G (Impact):A categorywithin Base, not a group.
H (Attack vector):A single Base metric, not a group.
Kattie
1 month agoJaime
1 month agoTresa
2 months agoKati
2 months agoIndia
2 months agoLashunda
2 months agoLisandra
2 months agoEvangelina
2 months agoGail
3 months agoDana
3 months agoPaulina
3 months agoChauncey
4 months agoJannette
4 months agoFidelia
4 months agoLavina
4 months agoPrecious
4 months agoAnnice
4 months agoJanet
5 months agoFranklyn
5 months agoBrittni
5 months agoJanet
5 months agoLisha
6 months agoDevora
6 months agoClaribel
6 months agoLaurel
6 months agoReita
21 days agoDanica
26 days agoAntonio
1 month agoRoxane
5 months agoFannie
5 months ago