Stop Using CVSS to Score Risk
The mechanics of prioritizing one vulnerability’s business risk over another has always been fraught with concern. What began as securing business applications and infrastructure from full-disclosure bugs a couple of decades ago, has grown to encompass vaguely referenced flaws in insulin-pumps and fly-by-wire aircraft with lives potentially hanging in the balance.
Read more: Stop Using CVSS to Score Risk
Story added 10. September 2019, content source with full text you can find at link above.