Glossary

Common Vulnerabilities and Exposures (CVEs)

Request a Demo
Experience a live demo and learn more about RidgeBot®.

Key Cybersecurity Terms

Our glossary of software threat exposure management terms offers concise definitions of the evolving language of cybersecurity.

Common Vulnerabilities and Exposures (CVEs)

Common vulnerabilities and exposures (CVEs) are a list of publicly disclosed computer security flaws. They help IT security professionals prioritize and address critical vulnerabilities to ensure their systems are protected. MITRE Corporation oversees the CVE program, with funding from the Cybersecurity and Infrastructure Security Agency (CISA). CVEs also appear in other databases, including the U.S. National Vulnerability Database (NVD), the CERT/CC Vulnerability Notes Database, and various lists maintained by security advisories, vendors and researchers. 

Ridge Security support for CVEs: deploying penetration testing within the enterprise network removes CVE risk. Its continuous, automated pen testing discovers and protects against known and unknown CVEs, using two types of Plugins for every CVE: Detection verifies whether the vulnerability exists within the environment, and Exploit launches a payload to trigger it. 

This makes Ridge Security highly effective at hardening an organization’s security defenses when launching new and updated apps and systems. Its fully automated, continuous penetration testing platform couples ethical hacking techniques with AI-driven decision-making algorithms to locate vulnerable targets, exploit them, and prioritize business risk across the enterprise.