The Need for a Strong CVE Program
The CVE program is the foundation for standardized vulnerability disclosure and management. With its future uncertain, global organizations face challenges.
The CVE program is the foundation for standardized vulnerability disclosure and management. With its future uncertain, global organizations face challenges.
Cisco actively works with the FCC and other government agencies, industry, and consumers to discuss cybersecurity labeling for Internet of Things (IoT) devices, and to build trust in the network we all rely on to live, work, and play in today’s interconnected world.
With the multitude of dangers constantly testing networks, there should be no such concept of “implicit trust”. At the core of the defensive network is the principle of proven trustworthy hardware and software, working in conjunction to protect network devices, data, and applications from attacks.
It is our promise to work with each of our customers to provide them the most secure configuration and that is why we will only support third-party collaboration vendors who meet our security standards and who integrate with our products and services through our supported open APIs.
To minimize risk associated with vulnerabilities, Cisco employs a well-established and trusted process to disclose vulnerabilities, while taking every effort to minimize the overall impact to customers’ network operations.