Constarium
← Search

Data · dataset · 2019

Analyzing CVE Database Using Unsupervised Topic Modelling

Listed in BERD@NFDI Data Portal

This paper describes our study of the vulnerability reports in the Common Vulnerability and Exposures (CVE) database by using topic modeling on the description texts of the vulnerabilities.

Description

Prevalent vulnerability types were found, and new trends of vulnerabilities were discovered by studying the 121,716 unique CVE entries that are reported from January 1999 to July 2019. The topics found through topic modeling were mapped to OWASP Top 10 vulnerabilities.

It was found that the OWASP vulnerabilities A2: 2017-Broken Authentication, A4:2017-XML External Entities (XXE), and A5:2017-Broken Access Control increased, yet the vulnerability A7:2017-Cross-Site Scripting (XSS) had a steep decrease over the period of 20 years.

Links

Where it is published

Catalogue records · 1

Topics

From keywords
Economics & Finance
Provenance · 1 source records, 6 field assertions
SourceKeyLast seenRaw
BERD@NFDI Data Portalm0jgn-a2w108 d agoJSON v1
FieldAssertionExtractorEvidence
access_levelsource · berd platform deconnector:berd_platform_de@1.0.0
concepts[field].local:field:economics-financemapping · berd platform deconnector:berd_platform_de@1.0.0
descriptionsource · berd platform deconnector:berd_platform_de@1.0.0/metadata/description
publication_datesource · berd platform deconnector:berd_platform_de@1.0.0
titlesource · berd platform deconnector:berd_platform_de@1.0.0/metadata/title
updated_datesource · berd platform deconnector:berd_platform_de@1.0.0