The current vulnerability scoring system is argued to be un-tuned to ICS, the thinking being that the impact is not correctly weighted, and some factors are missing. If you feel that the scoring is dubious, you are not alone! Even NIST and ICS-CERT, the two main organizations for disclosing and rating vulnerabilities, are sometimes not aligned.

