From the course: Vulnerability Management in Cybersecurity: The Basics
Unlock the full course today
Join today to access over 24,700 courses taught by industry experts.
Concern: Exposure
From the course: Vulnerability Management in Cybersecurity: The Basics
Concern: Exposure
- [Instructor] When assessing the risk of a vulnerability on a particular system, the exposure level of that system is a really big part of that assessment. However, it's not something that is easily reflected in the CVSS environmental metrics. When you think about exposure on a computer network, visualize a castle and its walls. You can see that the castle exists and that there's a way to enter it if you're authorized to do that, but you really can't see much else, because the walls hide the interior from the outside world. You only see what the queen and her guards want you to see. In a corporate environment, firewalls are like the outer walls of the castle. They provide the most basic level of protection of the entire network by only letting certain authorized traffic in or out. Only systems that should be accessed by non-employees are visible to the outside world. And that's things like web servers that host the…