Zoom Open-sources New Vulnerability Impact Scoring System VISS

Zoom Vulnerability Impact Scoring System, or VISS for short, aims to help organizations enforce security measures based on a new approach to vulnerability scoring that prioritizes actual demonstrated impact over theoretical security impact possibilities. Developed over the past year and recently open-sourced, VISS differs from the Common Vulnerability Scoring System (CVSS) by not focusing on worst-case scenarios and attempting to measure more objectively the impact of vulnerabilities from a defender’s point of view.

Source: InfoQ


