Classifying common security vulnerabilities by software type
- ,
- Yi Liu,
- William Patten
- ,
- University of Massachusetts Dartmouth,
- Augusta University
Scholary Output:
Chapter in Book/Report/Conference proceeding
Conference contribution
Related Event
Title
32nd International Conference on Software Engineering and Knowledge Engineering, SEKE 2020
Event type
ConferenceDate
07/09/2020 - 07/19/2020Location
Pittsburgh, VirtualUnited States
Abstract
The National Vulnerability Database does not identify a type for the software that is impacted by a specified weakness. To gain some insight into the security vulnerability landscape, we classify by software type a total of 51,110 vulnerability entries from 2015 to 2019. The software types are operating system, browser, middleware, utility, web application, framework, and server. This classification shows the pattern of prevalence of software weaknesses and the persistence of weaknesses as they pertain to each software type.
Publication Information
Output type
Scholary Output:
Chapter in Book/Report/Conference proceeding
Conference contribution
Original language
English (US)Pages from-to (Number of pages)
Pages 61-64 (4 pages)Publication milestones
- Published - 2020
Publication status
Published - 2020
Publisher
Knowledge Systems Institute Graduate SchoolPublication series
- Publication series name: Proceedings of the International Conference on Software Engineering and Knowledge Engineering, SEKE
ISSN (Print): 2325-9000
ISSN (Electronic): 2325-9086
Volume: PartF162440
ISBN (Electronic)
1891706500Publication IDs
- Scopus: 85090507908
Host publication title
SEKE 2020 - Proceedings of the 32nd International Conference on Software Engineering and Knowledge EngineeringPublication metrics
Metrics
Fractional count
1
Fractional count
0.33
Fractional count
2
Fractional count
0.67
Fractional count
1
Fractional count
1
SciVal
Author count
3
SciVal
Paper percentile
50
PlumX, opens in new tab
Captures
9
Citation count
6
