matro7sh/Smersh

[FEAT] - Add CVSS and CWE for vulnerabilities

PierreMarez opened this issue · 0 comments

The main idea is to be able to add a CVSS score for each vulnerability found and a CWE that will allow the pentest data to be aggregated with a standardized identifier.

Ex :
For the CVE-2022-21449.
In the CWE box, you can choose 327 that will link the CWE ID and the CWE web page "https://cwe.mitre.org/data/definitions/327.html" (Use of a Broken or Risky Cryptographic Algorithm).
In the CVSS box, you can add the CVSS base score 7.5 or change it regarding the context.