U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

NISTIR 7864

The Common Misuse Scoring System (CMSS): Metrics for Software Feature Misuse Vulnerabilities

Date Published: July 2012

Planning Note (7/10/2012):

NISTIR 7864 was originally posted for public comment as Draft NISTIR 7517 (February 2009).


Author(s)

Elizabeth LeMay (University of Illinois at Urbana-Champaign), Karen Scarfone (Scarfone Cybersecurity), Peter Mell (NIST)

Abstract

Keywords

security measurement; trust misuse; vulnerability measurement; vulnerability scoring
Control Families

Configuration Management; Risk Assessment

Documentation

Publication:
NISTIR 7864 (DOI)
Local Download

Supplemental Material:
Press Release (other)

Document History:
07/10/12: NISTIR 7864 (Final)

Topics

Security and Privacy
general security & privacy; risk assessment