Mission and Overview
NVD is the U.S. government repository of standards based vulnerability management data. This data enables automation of vulnerability management, security measurement, and compliance (e.g. FISMA).
Resource Status
NVD contains:

Last updated: 10/20/2014 9:13:07 AM

CVE Publication rate: 47.63

Email List

NVD provides four mailing lists to the public. For information and subscription instructions please visit NVD Mailing Lists

Workload Index
Vulnerability Workload Index: 13.26
About Us
NVD is a product of the NIST Computer Security Division and is sponsored by the Department of Homeland Security's National Cyber Security Division. It supports the U.S. government multi-agency (OSD, DHS, NSA, DISA, and NIST) Information Security Automation Program. It is the U.S. government content repository for the Security Content Automation Protocol (SCAP).
Security Content Automation Protocol (SCAP) 1.2 Product Validation Record
Validation Record Number 126
Vendor: Tripwire
Product Name: Tripwire Enterprise
Product Major Version: 8
Product Version Tested: 8.3.2
Tested Platforms:
SCAP 1.2 Capabilities: Vendor Provided SCAP Information
Dates tested: 4/1/2013 - 11/4/2013
Report Submission Date: 11/7/2013
DTR Version: NIST IR 7511 Revision 3
Validation Test Suite Version:
Previous Validation (SCAP and Product Version): SCAP 1.0 – Tripwire Version 8
NVLAP Lab: 200427-0 - Leidos
Validation Date: November 7, 2013
Comments: An exception was granted for SCAP.R.2000.5 because there isn’t a clearly defined method for exporting the same OVAL variable with multiple values. Exceptions were granted for validation tests that contained bugs which were subsequently fixed in version 1-2.0.1.0 of the validation test suite. The validation test content change log version 1-2.0.1.0 contains the complete list.