CWEs vs CVEs, and How to Use Them

June 2, 2023
CWEs vs CVEs, and How to Use Them
Description

CWE: a common software weakness with standardized descriptors that could catalyze a vulnerability. CVE: a known public vulnerability associated with 3rd party software. Mark flies solo to explain the difference and how CVEs can help us at the prioritization stage, and how CWEs come into play further on the left as we correlate data across tools.

Resources

More tactics for AppSec Success are coming at AppSecCon 2023

About the Guest

Mark Lambert
Mark Lambert
VP of Products, Armorcode
Linkedin Logo
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor
Read more
Mark Lambert
Mark Lambert
VP of Products, Armorcode
Linkedin Logo
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor
Read more

Watch the episode here

Available on:

Episode 34

CWEs vs CVEs, and How to Use Them

CWE: a common software weakness with standardized descriptors that could catalyze a vulnerability. CVE: a known public vulnerability associated with 3rd party software. Mark flies solo to explain the difference and how CVEs can help us at the prioritization stage, and how CWEs come into play further on the left as we correlate data across tools.

Resources

More tactics for AppSec Success are coming at AppSecCon 2023

Subscribe for updates

Please enter a business email
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.