List of questions
Related questions
Question 404 - CAS-004 discussion
After a server was compromised an incident responder looks at log files to determine the attack vector that was used The incident responder reviews the web server log files from the time before an unexpected SSH session began:
Which of the following is the most likely vulnerability that was exploited based on the log files?
A.
Directory traversal revealed the hashed SSH password, which was used to access the server.
B.
A SQL injection was used during the ordering process to compromise the database server
C.
The root password was easily guessed and used as a parameter lo open a reverse shell
D.
An outdated third-party PHP plug-in was vulnerable to a known remote code execution
Your answer:
0 comments
Sorted by
Leave a comment first