Which class of metric in the CVSS Base Metric Group defines the features of the exploit such as the vector, complexity, and user interaction required by the exploit?

IT Exam Items RepositoryCategory: CCNA CyberOpsWhich class of metric in the CVSS Base Metric Group defines the features of the exploit such as the vector, complexity, and user interaction required by the exploit?

Which class of metric in the CVSS Base Metric Group defines the features of the exploit such as the vector, complexity, and user interaction required by the exploit?

  • Exploitability
  • Exploit Code Maturity
  • Impact
  • Modified Base

Explanation: The Base Metric Group of CVSS represents the characteristics of a vulnerability that are constant over time and across contexts. It contains two classes of metrics:

  • Exploitability metrics - features of the exploit such as the vector, complexity, and user interaction required by the exploit
  • Impact metrics - the impacts of the exploit rooted in the CIA triad of confidentiality, integrity, and availability

Related exam: CyberOps Associate (Version 1.0) - Module 23: Endpoint Vulnerability Quiz Answers
Related exam: Cyber Threat Management (CyberTM) Course Final Exam Answers