Why doesn CVE include fix information, impact, classification, or other important technical details?
This information can already be found in numerous vulnerability Web sites, databases, and security tool databases. CVE doesn’t have this information because CVE is intended to link these different vulnerability capabilities, not to replace them. Note: The U.S. National Vulnerability Database (NVD) provides fix and other information for identifiers on the CVE List.
Related Questions
- What is the difference between a "Dependent" student and an "Independent" student, and how does that classification impact the application process?
- Why doesn CVE include fix information, impact, classification, or other important technical details?
- Does Web Delivery Impact the Reader-Response Approach to Technical Communication?