How should I use the Common Vulnerability Scoring System (CVSS) scores provided by NVD?
The CVSS scores within NVD can be used to prioritize how an organization handles vulnerabilities. For example, vulnerabilities with scores of 7 and greater should be addressed with great rapidity (possibly through an expedited change management process) while vulnerabilities with scores of less than 3 can usually be addressed through one’s regular patching process. In addition, one can click on a CVSS score within NVD to bring up a scoring calculator that will allow users to understand how the score was created and to customize the score for the user’s organization.