How to get the CVE number for the vulnerability you found during Security research
Harish Santhanalakshmi Ganesan
Security Engineer at Cisco | LLM threat intelligence analyst | MS in Cyber Security @UTD | Speaker at BSides Nashville 2024
I am Harish SG, a security researcher who hunted on the Microsoft Bug Bounty Program. Now I researching on attacking air gapped system and practicing smart contract auditing
What is CVE?
CVE, short for Common Vulnerabilities and Exposures, is a list of publicly disclosed computer security flaws. When someone refers to a CVE, they mean a security flaw that’s been assigned a CVE ID number.
How to get a CVE number?
What happens after you requested CVE?
How much time do they take to assign CVE?
Generally, 90 days after the vendor fixed this vulnerability but this time period depends on the severity and how fast the vendor fixed this vulnerability.
POC: