Fuzzy Model for Common Vulnerability Scoring System

Mera Saulaiman, M. Takács, M. Kozlovszky, Á. Csilling
{"title":"Fuzzy Model for Common Vulnerability Scoring System","authors":"Mera Saulaiman, M. Takács, M. Kozlovszky, Á. Csilling","doi":"10.1109/SACI51354.2021.9465614","DOIUrl":null,"url":null,"abstract":"The Common Vulnerability Scoring System (CVSS) is a widely used open standard for measuring the severity of software vulnerabilities based on defined metric values. It uses optimized equations to combine several aspects of a vulnerability to derive the score. In this paper the possibility of implementing this CVSS calculator in fuzzy logic is discussed, using the Fuzzy Logic toolbox from MATLAB extended in Simulink environment.The model is evaluated by comparing the results of both systems for a few test cases. The possibility of implementing an optimized CVSS calculator using Fuzzy logic is discussed.Taking advantage of the possibility available in Fuzzy logic we discuss the possibility to extend the calculator with domain-specific metrics.","PeriodicalId":321907,"journal":{"name":"2021 IEEE 15th International Symposium on Applied Computational Intelligence and Informatics (SACI)","volume":"26 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-05-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 IEEE 15th International Symposium on Applied Computational Intelligence and Informatics (SACI)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SACI51354.2021.9465614","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2

Abstract

The Common Vulnerability Scoring System (CVSS) is a widely used open standard for measuring the severity of software vulnerabilities based on defined metric values. It uses optimized equations to combine several aspects of a vulnerability to derive the score. In this paper the possibility of implementing this CVSS calculator in fuzzy logic is discussed, using the Fuzzy Logic toolbox from MATLAB extended in Simulink environment.The model is evaluated by comparing the results of both systems for a few test cases. The possibility of implementing an optimized CVSS calculator using Fuzzy logic is discussed.Taking advantage of the possibility available in Fuzzy logic we discuss the possibility to extend the calculator with domain-specific metrics.
通用漏洞评分系统的模糊模型
通用漏洞评分系统(Common Vulnerability Scoring System, CVSS)是一种广泛使用的基于定义的度量值来度量软件漏洞严重程度的开放标准。它使用优化的方程来结合漏洞的几个方面来得出分数。本文讨论了利用MATLAB中的模糊逻辑工具箱在Simulink环境下扩展实现模糊逻辑的可能性。通过比较两个系统对几个测试用例的结果来评估模型。讨论了利用模糊逻辑实现优化CVSS计算器的可能性。利用模糊逻辑中可用的可能性,我们讨论了用领域特定度量扩展计算器的可能性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信