Create a Common Weakness Enumeration (CWE) record to represent a weakness identified in a system or product, and link it to relevant vulnerabilities.
Avant de commencer
Role required: sn_sec_tisc.analyst
You must have the appropriate role to create records in the threat intelligence library.
Procédure
-
Navigate to .
-
Click New.
-
Fill in the fields appropriately.
Tableau 1. CWE Weakness
| Field |
Description |
| ID |
Enter a unique identifier for the CWE.Remarque : The ID is pre-populated with the CWE# prefix. Append a unique numeric or alphanumeric value. The system validates uniqueness on save and
prevents duplicate IDs. |
| Name |
Name of the CWE weakness. |
| Description |
Enter the description. |
| Type |
Select a Type: Primary or Secondary.Remarque : The type indicates whether this CWE is a primary or secondary weakness as defined by
the NVD schema. |
-
Click Save.
- Facultatif :
To link vulnerabilities to this CWE, scroll to the Vulnerabilities related list and click Link.
- Facultatif :
To link related CWEs, scroll to the related list and click Link.