Q6Security Concepts
Which CVSS metric group identifies other components affected by a successful security attack?
← → navigate · a answer
Community votes
Discussion · 1
A 3
Selected Answer: A
A. scope is the CVSS metric group that identifies other components that are impacted by a successful security attack.
The CVSS (Common Vulnerability Scoring System) is a standard method for evaluating and scoring the severity of security vulnerabilities in software and systems. The scope metric group is used to determine the extent to which other resources or systems may be affected by a successful attack. If the attack only affects the targeted system, it has a limited scope, while if it affects other systems, it has a broader scope.
B. privileges required identifies the level of access or privileges that an attacker must have in order to carry out an attack.
C. integrity refers to the impact that a successful attack could have on the integrity of the targeted data or system.
D. attack vendor is not a metric group in CVSS.