Skip to content

Class: CvssV3

CVSS version 3.x scoring object covering both CVSS 3.0 and CVSS 3.1. The two versions share an identical metric model; the 3.1 spec was a clarification, not a structural change. The cvss3_version slot distinguishes between them. Requires version ('3.0' or '3.1'), vectorString, baseScore, and baseSeverity.

URI: cve:CvssV3

 classDiagram
    class CvssV3
    click CvssV3 href "../CvssV3/"
      CvssV3 : cvss3_attack_complexity





        CvssV3 --> "0..1" Cvss3AttackComplexity : cvss3_attack_complexity
        click Cvss3AttackComplexity href "../Cvss3AttackComplexity/"



      CvssV3 : cvss3_attack_vector





        CvssV3 --> "0..1" Cvss3AttackVector : cvss3_attack_vector
        click Cvss3AttackVector href "../Cvss3AttackVector/"



      CvssV3 : cvss3_availability_impact





        CvssV3 --> "0..1" Cvss3Cia : cvss3_availability_impact
        click Cvss3Cia href "../Cvss3Cia/"



      CvssV3 : cvss3_availability_requirement





        CvssV3 --> "0..1" Cvss3CiaRequirement : cvss3_availability_requirement
        click Cvss3CiaRequirement href "../Cvss3CiaRequirement/"



      CvssV3 : cvss3_base_score

      CvssV3 : cvss3_base_severity





        CvssV3 --> "1" Cvss3Severity : cvss3_base_severity
        click Cvss3Severity href "../Cvss3Severity/"



      CvssV3 : cvss3_confidentiality_impact





        CvssV3 --> "0..1" Cvss3Cia : cvss3_confidentiality_impact
        click Cvss3Cia href "../Cvss3Cia/"



      CvssV3 : cvss3_confidentiality_requirement





        CvssV3 --> "0..1" Cvss3CiaRequirement : cvss3_confidentiality_requirement
        click Cvss3CiaRequirement href "../Cvss3CiaRequirement/"



      CvssV3 : cvss3_environmental_score

      CvssV3 : cvss3_environmental_severity





        CvssV3 --> "0..1" Cvss3Severity : cvss3_environmental_severity
        click Cvss3Severity href "../Cvss3Severity/"



      CvssV3 : cvss3_exploit_code_maturity





        CvssV3 --> "0..1" Cvss3ExploitCodeMaturity : cvss3_exploit_code_maturity
        click Cvss3ExploitCodeMaturity href "../Cvss3ExploitCodeMaturity/"



      CvssV3 : cvss3_integrity_impact





        CvssV3 --> "0..1" Cvss3Cia : cvss3_integrity_impact
        click Cvss3Cia href "../Cvss3Cia/"



      CvssV3 : cvss3_integrity_requirement





        CvssV3 --> "0..1" Cvss3CiaRequirement : cvss3_integrity_requirement
        click Cvss3CiaRequirement href "../Cvss3CiaRequirement/"



      CvssV3 : cvss3_modified_attack_complexity





        CvssV3 --> "0..1" Cvss3ModifiedAttackComplexity : cvss3_modified_attack_complexity
        click Cvss3ModifiedAttackComplexity href "../Cvss3ModifiedAttackComplexity/"



      CvssV3 : cvss3_modified_attack_vector





        CvssV3 --> "0..1" Cvss3ModifiedAttackVector : cvss3_modified_attack_vector
        click Cvss3ModifiedAttackVector href "../Cvss3ModifiedAttackVector/"



      CvssV3 : cvss3_modified_availability_impact





        CvssV3 --> "0..1" Cvss3ModifiedCia : cvss3_modified_availability_impact
        click Cvss3ModifiedCia href "../Cvss3ModifiedCia/"



      CvssV3 : cvss3_modified_confidentiality_impact





        CvssV3 --> "0..1" Cvss3ModifiedCia : cvss3_modified_confidentiality_impact
        click Cvss3ModifiedCia href "../Cvss3ModifiedCia/"



      CvssV3 : cvss3_modified_integrity_impact





        CvssV3 --> "0..1" Cvss3ModifiedCia : cvss3_modified_integrity_impact
        click Cvss3ModifiedCia href "../Cvss3ModifiedCia/"



      CvssV3 : cvss3_modified_privileges_required





        CvssV3 --> "0..1" Cvss3ModifiedPrivilegesRequired : cvss3_modified_privileges_required
        click Cvss3ModifiedPrivilegesRequired href "../Cvss3ModifiedPrivilegesRequired/"



      CvssV3 : cvss3_modified_scope





        CvssV3 --> "0..1" Cvss3ModifiedScope : cvss3_modified_scope
        click Cvss3ModifiedScope href "../Cvss3ModifiedScope/"



      CvssV3 : cvss3_modified_user_interaction





        CvssV3 --> "0..1" Cvss3ModifiedUserInteraction : cvss3_modified_user_interaction
        click Cvss3ModifiedUserInteraction href "../Cvss3ModifiedUserInteraction/"



      CvssV3 : cvss3_privileges_required





        CvssV3 --> "0..1" Cvss3PrivilegesRequired : cvss3_privileges_required
        click Cvss3PrivilegesRequired href "../Cvss3PrivilegesRequired/"



      CvssV3 : cvss3_remediation_level





        CvssV3 --> "0..1" Cvss3RemediationLevel : cvss3_remediation_level
        click Cvss3RemediationLevel href "../Cvss3RemediationLevel/"



      CvssV3 : cvss3_report_confidence





        CvssV3 --> "0..1" Cvss3Confidence : cvss3_report_confidence
        click Cvss3Confidence href "../Cvss3Confidence/"



      CvssV3 : cvss3_scope





        CvssV3 --> "0..1" Cvss3Scope : cvss3_scope
        click Cvss3Scope href "../Cvss3Scope/"



      CvssV3 : cvss3_temporal_score

      CvssV3 : cvss3_temporal_severity





        CvssV3 --> "0..1" Cvss3Severity : cvss3_temporal_severity
        click Cvss3Severity href "../Cvss3Severity/"



      CvssV3 : cvss3_user_interaction





        CvssV3 --> "0..1" Cvss3UserInteraction : cvss3_user_interaction
        click Cvss3UserInteraction href "../Cvss3UserInteraction/"



      CvssV3 : cvss3_vector_string

      CvssV3 : cvss3_version





        CvssV3 --> "1" CvssV3Version : cvss3_version
        click CvssV3Version href "../CvssV3Version/"



Slots

Name Cardinality and Range Description Inheritance
cvss3_version 1
CvssV3Version
CVSS version identifier ('3 direct
cvss3_vector_string 1
String
CVSS 3 direct
cvss3_attack_vector 0..1
Cvss3AttackVector
direct
cvss3_attack_complexity 0..1
Cvss3AttackComplexity
direct
cvss3_privileges_required 0..1
Cvss3PrivilegesRequired
direct
cvss3_user_interaction 0..1
Cvss3UserInteraction
direct
cvss3_scope 0..1
Cvss3Scope
direct
cvss3_confidentiality_impact 0..1
Cvss3Cia
direct
cvss3_integrity_impact 0..1
Cvss3Cia
direct
cvss3_availability_impact 0..1
Cvss3Cia
direct
cvss3_base_score 1
Float
CVSS 3 direct
cvss3_base_severity 1
Cvss3Severity
direct
cvss3_exploit_code_maturity 0..1
Cvss3ExploitCodeMaturity
direct
cvss3_remediation_level 0..1
Cvss3RemediationLevel
direct
cvss3_report_confidence 0..1
Cvss3Confidence
direct
cvss3_temporal_score 0..1
Float
CVSS 3 direct
cvss3_temporal_severity 0..1
Cvss3Severity
direct
cvss3_confidentiality_requirement 0..1
Cvss3CiaRequirement
direct
cvss3_integrity_requirement 0..1
Cvss3CiaRequirement
direct
cvss3_availability_requirement 0..1
Cvss3CiaRequirement
direct
cvss3_modified_attack_vector 0..1
Cvss3ModifiedAttackVector
direct
cvss3_modified_attack_complexity 0..1
Cvss3ModifiedAttackComplexity
direct
cvss3_modified_privileges_required 0..1
Cvss3ModifiedPrivilegesRequired
direct
cvss3_modified_user_interaction 0..1
Cvss3ModifiedUserInteraction
direct
cvss3_modified_scope 0..1
Cvss3ModifiedScope
direct
cvss3_modified_confidentiality_impact 0..1
Cvss3ModifiedCia
direct
cvss3_modified_integrity_impact 0..1
Cvss3ModifiedCia
direct
cvss3_modified_availability_impact 0..1
Cvss3ModifiedCia
direct
cvss3_environmental_score 0..1
Float
CVSS 3 direct
cvss3_environmental_severity 0..1
Cvss3Severity
direct

Usages

used by used in type used
MetricEntry cvss_v3 range CvssV3

In Subsets

Identifier and Mapping Information

Schema Source

Mappings

Mapping Type Mapped Value
self cve:CvssV3
native cve:CvssV3
narrow nvd:CVSSMetric

LinkML Source

Direct

name: CvssV3
description: CVSS version 3.x scoring object covering both CVSS 3.0 and CVSS 3.1.
  The two versions share an identical metric model; the 3.1 spec was a clarification,
  not a structural change. The cvss3_version slot distinguishes between them. Requires
  version ('3.0' or '3.1'), vectorString, baseScore, and baseSeverity.
in_subset:
- cvss_metrics
from_schema: https://w3id.org/lmodel/cve
narrow_mappings:
- nvd:CVSSMetric
slots:
- cvss3_version
- cvss3_vector_string
- cvss3_attack_vector
- cvss3_attack_complexity
- cvss3_privileges_required
- cvss3_user_interaction
- cvss3_scope
- cvss3_confidentiality_impact
- cvss3_integrity_impact
- cvss3_availability_impact
- cvss3_base_score
- cvss3_base_severity
- cvss3_exploit_code_maturity
- cvss3_remediation_level
- cvss3_report_confidence
- cvss3_temporal_score
- cvss3_temporal_severity
- cvss3_confidentiality_requirement
- cvss3_integrity_requirement
- cvss3_availability_requirement
- cvss3_modified_attack_vector
- cvss3_modified_attack_complexity
- cvss3_modified_privileges_required
- cvss3_modified_user_interaction
- cvss3_modified_scope
- cvss3_modified_confidentiality_impact
- cvss3_modified_integrity_impact
- cvss3_modified_availability_impact
- cvss3_environmental_score
- cvss3_environmental_severity
slot_usage:
  cvss3_version:
    name: cvss3_version
    required: true
  cvss3_vector_string:
    name: cvss3_vector_string
    required: true
  cvss3_base_score:
    name: cvss3_base_score
    required: true
  cvss3_base_severity:
    name: cvss3_base_severity
    required: true

Induced

name: CvssV3
description: CVSS version 3.x scoring object covering both CVSS 3.0 and CVSS 3.1.
  The two versions share an identical metric model; the 3.1 spec was a clarification,
  not a structural change. The cvss3_version slot distinguishes between them. Requires
  version ('3.0' or '3.1'), vectorString, baseScore, and baseSeverity.
in_subset:
- cvss_metrics
from_schema: https://w3id.org/lmodel/cve
narrow_mappings:
- nvd:CVSSMetric
slot_usage:
  cvss3_version:
    name: cvss3_version
    required: true
  cvss3_vector_string:
    name: cvss3_vector_string
    required: true
  cvss3_base_score:
    name: cvss3_base_score
    required: true
  cvss3_base_severity:
    name: cvss3_base_severity
    required: true
attributes:
  cvss3_version:
    name: cvss3_version
    description: CVSS version identifier ('3.0' or '3.1') within a CvssV3 object.
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - version
    rank: 1000
    alias: cvss3_version
    owner: CvssV3
    domain_of:
    - CvssV3
    range: CvssV3Version
    required: true
  cvss3_vector_string:
    name: cvss3_vector_string
    description: CVSS 3.x vector string encoding all metric values. CVSS 3.1 strings
      begin with 'CVSS:3.1/'; CVSS 3.0 strings begin with 'CVSS:3.0/'.
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - vectorString
    rank: 1000
    alias: cvss3_vector_string
    owner: CvssV3
    domain_of:
    - CvssV3
    range: string
    required: true
  cvss3_attack_vector:
    name: cvss3_attack_vector
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - attackVector
    rank: 1000
    alias: cvss3_attack_vector
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3AttackVector
  cvss3_attack_complexity:
    name: cvss3_attack_complexity
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - attackComplexity
    rank: 1000
    alias: cvss3_attack_complexity
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3AttackComplexity
  cvss3_privileges_required:
    name: cvss3_privileges_required
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - privilegesRequired
    rank: 1000
    alias: cvss3_privileges_required
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3PrivilegesRequired
  cvss3_user_interaction:
    name: cvss3_user_interaction
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - userInteraction
    rank: 1000
    alias: cvss3_user_interaction
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3UserInteraction
  cvss3_scope:
    name: cvss3_scope
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - scope
    rank: 1000
    alias: cvss3_scope
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3Scope
  cvss3_confidentiality_impact:
    name: cvss3_confidentiality_impact
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - confidentialityImpact
    rank: 1000
    alias: cvss3_confidentiality_impact
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3Cia
  cvss3_integrity_impact:
    name: cvss3_integrity_impact
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - integrityImpact
    rank: 1000
    alias: cvss3_integrity_impact
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3Cia
  cvss3_availability_impact:
    name: cvss3_availability_impact
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - availabilityImpact
    rank: 1000
    alias: cvss3_availability_impact
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3Cia
  cvss3_base_score:
    name: cvss3_base_score
    description: CVSS 3.x base score (0.0 – 10.0 in 0.1 increments).
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - baseScore
    rank: 1000
    alias: cvss3_base_score
    owner: CvssV3
    domain_of:
    - CvssV3
    range: float
    required: true
    minimum_value: 0
    maximum_value: 10
  cvss3_base_severity:
    name: cvss3_base_severity
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - baseSeverity
    rank: 1000
    alias: cvss3_base_severity
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3Severity
    required: true
  cvss3_exploit_code_maturity:
    name: cvss3_exploit_code_maturity
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - exploitCodeMaturity
    rank: 1000
    alias: cvss3_exploit_code_maturity
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ExploitCodeMaturity
  cvss3_remediation_level:
    name: cvss3_remediation_level
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - remediationLevel
    rank: 1000
    alias: cvss3_remediation_level
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3RemediationLevel
  cvss3_report_confidence:
    name: cvss3_report_confidence
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - reportConfidence
    rank: 1000
    alias: cvss3_report_confidence
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3Confidence
  cvss3_temporal_score:
    name: cvss3_temporal_score
    description: CVSS 3.x temporal score.
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - temporalScore
    rank: 1000
    alias: cvss3_temporal_score
    owner: CvssV3
    domain_of:
    - CvssV3
    range: float
    minimum_value: 0
    maximum_value: 10
  cvss3_temporal_severity:
    name: cvss3_temporal_severity
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - temporalSeverity
    rank: 1000
    alias: cvss3_temporal_severity
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3Severity
  cvss3_confidentiality_requirement:
    name: cvss3_confidentiality_requirement
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - confidentialityRequirement
    rank: 1000
    alias: cvss3_confidentiality_requirement
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3CiaRequirement
  cvss3_integrity_requirement:
    name: cvss3_integrity_requirement
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - integrityRequirement
    rank: 1000
    alias: cvss3_integrity_requirement
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3CiaRequirement
  cvss3_availability_requirement:
    name: cvss3_availability_requirement
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - availabilityRequirement
    rank: 1000
    alias: cvss3_availability_requirement
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3CiaRequirement
  cvss3_modified_attack_vector:
    name: cvss3_modified_attack_vector
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - modifiedAttackVector
    rank: 1000
    alias: cvss3_modified_attack_vector
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ModifiedAttackVector
  cvss3_modified_attack_complexity:
    name: cvss3_modified_attack_complexity
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - modifiedAttackComplexity
    rank: 1000
    alias: cvss3_modified_attack_complexity
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ModifiedAttackComplexity
  cvss3_modified_privileges_required:
    name: cvss3_modified_privileges_required
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - modifiedPrivilegesRequired
    rank: 1000
    alias: cvss3_modified_privileges_required
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ModifiedPrivilegesRequired
  cvss3_modified_user_interaction:
    name: cvss3_modified_user_interaction
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - modifiedUserInteraction
    rank: 1000
    alias: cvss3_modified_user_interaction
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ModifiedUserInteraction
  cvss3_modified_scope:
    name: cvss3_modified_scope
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - modifiedScope
    rank: 1000
    alias: cvss3_modified_scope
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ModifiedScope
  cvss3_modified_confidentiality_impact:
    name: cvss3_modified_confidentiality_impact
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - modifiedConfidentialityImpact
    rank: 1000
    alias: cvss3_modified_confidentiality_impact
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ModifiedCia
  cvss3_modified_integrity_impact:
    name: cvss3_modified_integrity_impact
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - modifiedIntegrityImpact
    rank: 1000
    alias: cvss3_modified_integrity_impact
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ModifiedCia
  cvss3_modified_availability_impact:
    name: cvss3_modified_availability_impact
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - modifiedAvailabilityImpact
    rank: 1000
    alias: cvss3_modified_availability_impact
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3ModifiedCia
  cvss3_environmental_score:
    name: cvss3_environmental_score
    description: CVSS 3.x environmental score.
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - environmentalScore
    rank: 1000
    alias: cvss3_environmental_score
    owner: CvssV3
    domain_of:
    - CvssV3
    range: float
    minimum_value: 0
    maximum_value: 10
  cvss3_environmental_severity:
    name: cvss3_environmental_severity
    from_schema: https://w3id.org/lmodel/cve
    aliases:
    - environmentalSeverity
    rank: 1000
    alias: cvss3_environmental_severity
    owner: CvssV3
    domain_of:
    - CvssV3
    range: Cvss3Severity