{ "_schema": "https://data.nist.gov/od/dm/nerdm-schema/v0.7#", "@context": [ "https://data.nist.gov/od/dm/nerdm-pub-context.jsonld", { "@base": "ark:/88434/mds003r0x6" } ], "@type": [ "nrdp:DataPublication", "nrdp:PublicDataResource", "dcat:Dataset" ], "_extensionSchemas": [ "https://data.nist.gov/od/dm/nerdm-schema/pub/v0.7#/definitions/PublicDataResource" ], "topic": [ { "@type": "Concept", "scheme": "https://data.nist.gov/od/dm/nist-themes/v1.1", "tag": "Information Technology: Cybersecurity" }, { "@type": "Concept", "scheme": "https://data.nist.gov/od/dm/nist-themes/v1.1", "tag": "Information Technology" } ], "keyword": [ "CVE", "CVSS", "SCAP", "800-53", "Vulnerability", "NVD", "Checklists" ], "landingPage": "https://data.nist.gov/od/id/1E0F15DAAEFB84E4E0531A5706813DD8436", "title": "National Vulnerability Database", "theme": [ "Information Technology: Cybersecurity", "Information Technology" ], "programCode": [ "006:045" ], "description": [ "Security automation reference data is currently housed within the National Vulnerability Database (NVD). The NVD is the U.S. Government repository of security automation data based on security automation specifications. This data provides a standards-based foundation for the automation of software asset, vulnerability, and security configuration management; security measurement; and compliance activities. This data supports security automation efforts based on the Security Content Automation Protocols (SCAP). The NVD includes databases of security configuration checklists for the NCP, listings of publicly known software flaws, product names, and impact metrics. A formal validation program tests the ability of vendor products to use some forms of security automation data based on a product's conformance in support of specific enterprise capabilities." ], "bureauCode": [ "006:55" ], "contactPoint": { "hasEmail": "mailto:tanya.brewer@nist.gov", "fn": "Tanya Brewer" }, "accessLevel": "public", "@id": "ark:/88434/mds003r0x6", "publisher": { "@type": "org:Organization", "name": "National Institute of Standards and Technology" }, "license": "https://www.nist.gov/open/license", "language": [ "en" ], "modified": "2021-12-16 00:00:00", "ediid": "1E0F15DAAEFB84E4E0531A5706813DD8436", "components": [ { "accessURL": "https://nvd.nist.gov/", "format": { "description": "html web page" }, "description": "The NVD is the U.S. government repository of standards based vulnerability management data represented using the Security Content Automation Protocol (SCAP). This data enables automation of vulnerability management, security measurement, and compliance. The NVD includes databases of security checklist references, security-related software flaws, misconfigurations, product names, and impact metrics.", "title": "National Vulnerability Database", "@type": [ "nrdp:AccessPage", "dcat:Distribution" ], "@id": "#", "_extensionSchemas": [ "https://data.nist.gov/od/dm/nerdm-schema/pub/v0.7#/definitions/AccessPage" ] }, { "accessURL": "https://doi.org/10.18434/M3436", "title": "DOI Access for National Vulnerability Database", "@type": [ "nrdp:AccessPage", "dcat:Distribution" ], "@id": "#10.18434/M3436", "_extensionSchemas": [ "https://data.nist.gov/od/dm/nerdm-schema/pub/v0.7#/definitions/AccessPage" ] } ], "doi": "doi:10.18434/M3436", "status": "available", "_editStatus": "done", "version": "1.0.11", "releaseHistory": { "@id": "ark:/88434/mds003r0x6.rel", "@type": [ "nrdr:ReleaseHistory" ], "hasRelease": [ { "version": "1.0.0", "issued": "2015-08-24", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.0", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.0", "description": "initial release" }, { "version": "1.0.1", "issued": "2015-08-24", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.1", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.1", "description": "metadata update" }, { "version": "1.0.2", "issued": "2015-08-24 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.2", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.2", "description": "metadata update" }, { "version": "1.0.3", "issued": "2015-08-24 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.3", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.3", "description": "metadata update" }, { "version": "1.0.4", "issued": "2015-08-24 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.4", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.4", "description": "metadata update" }, { "version": "1.0.5", "issued": "2021-12-16 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.5", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.5", "description": "metadata update" }, { "version": "1.0.6", "issued": "2021-12-16 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.6", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.6", "description": "metadata update" }, { "version": "1.0.7", "issued": "2021-12-16 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.7", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.7", "description": "metadata update" }, { "version": "1.0.8", "issued": "2021-12-16 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.8", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.8", "description": "metadata update" }, { "version": "1.0.9", "issued": "2021-12-16 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.9", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.9", "description": "metadata update" }, { "version": "1.0.10", "issued": "2021-12-16 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.10", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.10", "description": "metadata update" }, { "version": "1.0.11", "issued": "2021-12-16 00:00:00", "@id": "ark:/88434/mds003r0x6/pdr:v/1.0.11", "location": "https://data.nist.gov/od/id/ark:/88434/mds003r0x6/pdr:v/1.0.11", "description": "metadata update" } ] }, "authors": [ { "familyName": "Byers", "fn": "Robert Byers", "givenName": "Robert", "middleName": "", "affiliation": [ { "title": "National Institute of Standards and Technology", "subunits": [ "Information Technology Laboratory", "Computer Security Division" ], "@type": "org:Organization", "@id": "ror:05xpvk416" } ], "orcid": "", "@type": "foaf:Person" }, { "familyName": "Turner", "fn": "Chris Turner", "givenName": "Chris", "middleName": "", "affiliation": [ { "title": "National Institute of Standards and Technology", "subunits": [ "Information Technology Laboratory", "Computer Security Division" ], "@type": "org:Organization", "@id": "ror:05xpvk416" } ], "orcid": "", "@type": "foaf:Person" }, { "familyName": "Brewer", "fn": "Tanya Brewer", "givenName": "Tanya", "middleName": "", "affiliation": [ { "title": "National Institute of Standards and Technology", "subunits": [ "Information Technology Laboratory", "Computer Security Division" ], "@type": "org:Organization", "@id": "ror:05xpvk416" } ], "orcid": "", "@type": "foaf:Person" } ], "annotated": "2022-10-20T16:57:17.233611", "revised": "2021-10-15T19:13:40.193819", "issued": "2022-01-11", "firstIssued": "1991-12-31" }