Mercurial > farol > farol
annotate farol/templates/vulnerability/edit_cvss.j2 @ 54:8ffd3ec96f7c
Add Descriptions for the CVSS fields
author | Benoît Allard <benoit.allard@greenbone.net> |
---|---|
date | Wed, 08 Oct 2014 09:28:23 +0200 |
parents | 4a9f23230eba |
children |
rev | line source |
---|---|
0 | 1 {# |
2 # Description: | |
3 # Web Template used in Farol Design | |
4 # | |
5 # Authors: | |
6 # Benoît Allard <benoit.allard@greenbone.net> | |
7 # | |
8 # Copyright: | |
9 # Copyright (C) 2014 Greenbone Networks GmbH | |
10 # | |
11 # This program is free software; you can redistribute it and/or | |
12 # modify it under the terms of the GNU General Public License | |
13 # as published by the Free Software Foundation; either version 2 | |
14 # of the License, or (at your option) any later version. | |
15 # | |
16 # This program is distributed in the hope that it will be useful, | |
17 # but WITHOUT ANY WARRANTY; without even the implied warranty of | |
18 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the | |
19 # GNU General Public License for more details. | |
20 # | |
21 # You should have received a copy of the GNU General Public License | |
22 # along with this program; if not, write to the Free Software | |
23 # Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA. | |
24 -#} | |
25 | |
26 {% extends "base.j2" %} | |
54
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
27 {% from "macros.j2" import selectinput, textinput, textarea, selectinput2, examples %} |
0 | 28 {% block title %}Edit CVSS{% endblock %} |
29 | |
30 {% set active = 'vulnerability' %} | |
31 | |
32 {% block content %} | |
54
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
33 <p>The <strong>Score Set</strong> container holds actual CVSS metrics. For more details about CVSS, see {{ 'http://www.first.org/cvss/cvss-guide.html' | urlize }}. The only required element of CVSS is the <strong>Base Score</strong>. If a value of the temporal or environmental score is set to “not defined,” either <strong>Temporal Score</strong> or <strong>Environmental Score</strong> can be omitted.</p> |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
34 <p>A <strong>Score Set</strong> container can be tied to one or more specific products by referencing these products using the <strong>Product ID</strong> child element. If the <strong>Score Set</strong> is meant to be applied for all products, the <em>Product ID</em> attribute should be omitted.</p> |
0 | 35 <form role="form" method="POST"> |
36 | |
54
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
37 {% call textinput('basescore', "Base Score", '0.0', basescore, type="number", extras={'step':'0.1', 'min': '0', 'max': '10'}, required=True) %} |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
38 <p><strong>Base Score</strong> contains the numeric value of the computed CVSS base score, which should be a float from 0 to 10.0.</p> |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
39 {% endcall %} |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
40 {% call textinput('temporalscore', "Temporal Score", '0.0', temporalscore, type="number", extras={'step':'0.1', 'min': '0', 'max': '10'}) %} |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
41 <p><strong>Temporal Score</strong> contains the numeric value of the computed CVSS temporal score, which should be a float from 0 to 10.0.</p> |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
42 {% endcall %} |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
43 {% call textinput('environmentalscore', "Environmental Score", '0.0', environmentalscore, type="number", extras={'step':'0.1', 'min': '0', 'max': '10'}) %} |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
44 <p><strong>Environmental Score</strong> contains the numeric value of the computed CVSS environmental score, which should be a float from 0 to 10.0. This metric is typically reserved for use by the end user and is specific to the environment in which the affected product is deployed.</p> |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
45 {% endcall %} |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
46 {% call textinput('vector', "Vector", value=vector, extras={'maxlength': '76'}) %} |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
47 <p><strong>Vector</strong> contains the official notation that displays all the values used to compute the CVSS base, temporal, and environmental scores. This notation will follow the guidelines set forth in the CVSS v2 documentation at {{ 'http://www.first.org/cvss/cvss-guide.html#i2.4' | urlize }}.</p> |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
48 {{ examples(['AV:N/AC:L/Au:N/C:P/I:P/A:C/E:P/RL:O/RC:C/CDP:H/TD:M/CR:H/IR:H/AR:H']) }} |
8ffd3ec96f7c
Add Descriptions for the CVSS fields
Benoît Allard <benoit.allard@greenbone.net>
parents:
0
diff
changeset
|
49 {% endcall %} |
0 | 50 |
51 {{ selectinput2('products', "Products", products, productids, multiple=True) }} | |
52 | |
53 <button class="btn btn-primary" type="submit">{{ action or 'Update' }}</button> | |
54 <a class="btn btn-danger" href="{% if action=='Add' %}{{ url_for('.view', ordinal=ordinal) }}{% else %}{{ url_for('.view_cvss', ordinal=ordinal, index=index) }}{% endif %}">Cancel</a> | |
55 </form> | |
56 {% endblock %} |