首页>
外国专利>
PRIORITIZATION OF REMEDIATION ACTIONS FOR ADDRESSING VULNERABILITIES IN AN ENTERPRISE SYSTEM
PRIORITIZATION OF REMEDIATION ACTIONS FOR ADDRESSING VULNERABILITIES IN AN ENTERPRISE SYSTEM
展开▼
机译:解决企业系统中漏洞的补救措施的优先级
展开▼
页面导航
摘要
著录项
相似文献
摘要
A method includes identifying two or more vulnerabilities, each vulnerability affecting a set of one or more assets of an enterprise system. The method also includes assigning a weight to each vulnerability, the weight assigned to each of the vulnerabilities being based at least in part on the set of assets affected by that vulnerability, asset criticalities associated with the set of assets affected by that vulnerability, and at least one of (i) an exploitability potential of that vulnerability and (ii) an impact potential of that vulnerability. The method further includes determining an order in which to apply remediation actions in the enterprise system to address at least one of the vulnerabilities based at least in part on the weights assigned to the vulnerabilities, and applying, in accordance with the determined order, at least one of the remediation actions to at least one of the assets in the enterprise system.
展开▼