| Introduction
In computer security, the term vulnerability is applied to a weakness in a system which allows an attacker to violate the integrity of that system. Vulnerabilities may result from weak passwords, software bugs, a computer virus or other malware, a script code injection, or a SQL injection. Vulnerability notes include technical descriptions of the vulnerability, as well as the impact, solutions and workarounds, and lists of affected vendors.
Vulnerability may be due to
- Password management flaws
- Ffundamental operating system
- Ddesign flaws
- Software bugs
- Unchecked user input.
Examples of vulnerabilities include
- Buffer overflows
- Dangling pointers
- SQL injection
- Code injection
- Directory traversal
- Cross site scripting
- C • cross site request forgery
Vulnerability disclosures
The method of disclosing vulnerabilities is a topic of debate in the computer security community. The time of disclosure is the first date security vulnerability is described on a channel where the disclosed information on the vulnerability has to fulfill the following requirement:
- The information is freely available to the public
- The vulnerability information is published by a trusted and independent channel/source
- The vulnerability has undergone analysis by experts such that risk rating information is included upon disclosure
To learn More about Vulnerability, Customized Systems Integration, Solution Deployment and how Vulnerability study can help your business visit www.gcl.in / Call us at 9282162821
|