Vulnerability Detail Examples · Example 1 of 7 in Well-Known CVEs

Heartbleed, the OpenSSL memory leak, with CVSS v2 5.0 and v3.1 7.5, a CISA KEV entry and an NVD impact note.

Param
cve

Asks for CVE-2014-0160, the OpenSSL heartbeat bug that leaked server memory.

What to Notice

  • metrics has a CVSS v2 score (5.0) and two CVSS v3.1 scores (7.5): a Primary one from the NVD and a Secondary one from another source. enrichment.vdeep_metric uses the NVD's v3.1 score.
  • evaluator_impact holds the NVD's note on how to weigh the impact of the memory leak; few CVEs have one.
  • enrichment.cisa_kev shows it entered the CISA KEV catalog on 2022-05-04, eight years after publication.
  • enrichment.cpe[].affected_versions lists the OpenSSL releases inside each affected range (1.0.1 to 1.0.1f).

Request

What this example sends. Every parameter is documented on Detail; the exact request is in the code panel.

ParameterValue
cvequeryCVE-2014-0160

Reference updated