Invention Grant
- Patent Title: Method for verifying vulnerabilities of network devices using CVE entries
-
Application No.: US17140906Application Date: 2021-01-04
-
Publication No.: US11930033B2Publication Date: 2024-03-12
- Inventor: Alessandro Cavallaro Corti , Moreno Carullo , Andrea Carcano
- Applicant: Nozomi Networks Sagl
- Applicant Address: CH Mendrisio
- Assignee: Nozomi Networks Sagl
- Current Assignee: Nozomi Networks Sagl
- Current Assignee Address: CH Mendrisio
- Agent Jason Lee DeFrancesco
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F16/22 ; G06F16/903 ; G06F40/205 ; G06F40/284

Abstract:
The present invention relates to a method for verifying vulnerabilities of network device using Common Vulnerabilities and Exposures (“CVE)” entries comprising generating a CVE tree from each of the CVE entry and defining an indexed CVE entry, that identifies vulnerable configuration fields and extracts a set of vulnerable conditions comprising an operator attribute and nested CPE records. The CVE tree is provided with the operator attribute as node and with Common Platform Enumeration (“CPE”) records as leaves from the node, wherein the decoding comprises tokenizing of the decoded string in a sequence of plurality of n-grams having predefined sizes, and wherein the matching comprises a lookup of the sequence of plurality of n-grams into the CVE tree, that raises an alert when the operator attribute corresponds a match between CPE records.
Public/Granted literature
- US20220217173A1 METHOD FOR VERIFYING VULNERABILITIES OF NETWORK DEVICES USING CVE ENTRIES Public/Granted day:2022-07-07
Information query