A Conceptual Design of Vulnerability Assessment System for Distributed Network

This paper designs and an unified vulnerability assessment system which can efficiently assess vulnerabilities of computer systems in which functions of the vulnerability assessment were distributed. Developing a vulnerability assessment system needs two steps; constructing a vulnerability analysis database and implementing a vulnerability assessment tool. The vulnerability analysis database is constructed based on CVE to report vulnerabilities in standard assessment result forms by updating newest information, and is organized to be suitable to the distributed network. The vulnerability assessment tool is implemented using Nessus and OVAL. The vulnerability assessment tool suggested in this paper can provide fast and more accurate vulnerability assessment and proper guidelines to corresponding vulnerabilities. Keywords - Vulnerability Assessment, CVE, Distributed Network