A security analyst uses Microsoft Defender Vulnerability Management to prioritize patches. Which metric does the platform's Threat-Based Vulnerability Management feature use to elevate a CVE's priority above its CVSS score alone?
-
A
Asset value tag assigned by the administrator
-
B
Active exploit kit or threat actor activity linked to the CVE
-
C
Number of affected devices across the tenant
-
D
Patch release date from the vendor