Threat Intelligence
Search a CVE to see its EPSS and CVSS scores, CISA KEV status, exploit timeline, threat actors, and ATT&CK techniques.
The Threats page gives you intelligence about vulnerabilities: how likely each one is to be exploited, whether it is known to be exploited, and which of your assets it affects. This guide shows you how to find a vulnerability and read its details.
Find a vulnerability
- Go to Threats.
- On the Exploit Intelligence tab, type a CVE ID in the search bar, for example
CVE-1999-0192. - Click a vulnerability to open its details.
The Threat Intelligence tab shows data from threat intelligence platforms you connect. See Intel Sources.
Read a vulnerability's details
The details drawer has four tabs.
Overview
- The vulnerability description.
- EPSS: the Exploit Prediction Scoring System score and percentile. See EPSS tiers.
- Risk scores from any connected threat intelligence provider.
- CVSS: the Common Vulnerability Scoring System score, with a version selector when more than one version is available, and a breakdown of each metric. See CVSS metric groups.
Assets Impacted
The assets in your account that have this vulnerability.
Exploitation Timeline
A timeline of these events, when they are known:
- Added to CISA KEV
- CISA KEV Due Date
- NVD Published
- NVD Last Modified
Frameworks
- Threat Actors: groups linked to the vulnerability, with Name, Alias, Country, and Categories.
- MITRE ATT&CK: related techniques, with Technique ID, URL, and Name. Links open the MITRE site in a new tab.
- MITRE CWE Weaknesses: related weaknesses, with Weakness ID, Name, Type, and Source.
- Security Frameworks: other framework references for the vulnerability.
EPSS tiers
EPSS scores range from 0 to 1. A higher score means the vulnerability is more likely to be exploited in the next 30 days. Guard colors the score by tier:
CVSS metric groups
CVSS scores range from 0 to 10. The metric groups shown depend on the CVSS version:
Get help
For help with threat intelligence, contact support@praetorian.com.