2022
DOI: 10.5815/ijcnis.2022.04.03
|View full text |Cite
|
Sign up to set email alerts
|

A Multiclass Approach to Estimating Software Vulnerability Severity Rating with Statistical and Word Embedding Methods

Abstract: The analysis and grading of software vulnerabilities is an important process that is done manually by experts today. For this reason, there are time delays, human errors, and excessive costs involved with the process. The final result of these software vulnerability reports created by experts is the calculation of a severity score and a severity rating. The severity rating is the first and foremost value of the software’s vulnerability. The vulnerabilities that can be exploited are only 20% of the total vulner… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2

Citation Types

0
2
0

Year Published

2024
2024
2024
2024

Publication Types

Select...
1
1

Relationship

0
2

Authors

Journals

citations
Cited by 2 publications
(2 citation statements)
references
References 38 publications
0
2
0
Order By: Relevance
“…This section mainly compares the time performance of VDCPG with the methods proposed by Lin et al [8], Jacob A et al [14], Canan Batur et al [15], X Cheng et al [16], SM Ghaffarian et al [17] and W Jian et al [18]. As can be seen from Table 8, Compared with other methods, the time cost of this method is mainly in the model pretreatment stage and training stage, and the time difference in the detection stage is little.…”
Section: Comparison Of Time Performance Of Different Methodsmentioning
confidence: 99%
See 1 more Smart Citation
“…This section mainly compares the time performance of VDCPG with the methods proposed by Lin et al [8], Jacob A et al [14], Canan Batur et al [15], X Cheng et al [16], SM Ghaffarian et al [17] and W Jian et al [18]. As can be seen from Table 8, Compared with other methods, the time cost of this method is mainly in the model pretreatment stage and training stage, and the time difference in the detection stage is little.…”
Section: Comparison Of Time Performance Of Different Methodsmentioning
confidence: 99%
“…In the model pretreatment stage and the model training stage, VDCPG can directly input the code files in the project without segmentation, so the time required is shorter compared with other models. [8] 181 1041 35 Jacob A et al [14] 257 1124 54 Canan Batur et al [15] 149 1073 47 X Cheng et al [16] 381 975 59 SM Ghaffarian et al [17] 203 492 65 W Jian et al [18] 196 885 43 VDCPG 117 489 30…”
Section: Comparison Of Time Performance Of Different Methodsmentioning
confidence: 99%