FRD-ACVformerly FRD-ALL-31
Accepted Vulnerability
Definition
A vulnerability that the provider does not intend to fully mitigate or remediate, OR that has not or will not be fully mitigated or remediated within the maximum overdue period recommended or required by FedRAMP.
Also Referred To As
accepted vulnerabilityaccepted vulnerabilities
Used in FedRAMP KSI Requirements
This term appears in FedRAMP Key Security Indicator statements. Understanding its precise definition is critical for accurate self-assessment.
Browse KSI themes →