ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 165 - CS0-003 discussion

Report
Export

An analyst needs to provide recommendations based on a recent vulnerability scan:

Which of the following should the analyst recommend addressing to ensure potential vulnerabilities are identified?

A.
SMB use domain SID to enumerate users
Answers
A.
SMB use domain SID to enumerate users
B.
SYN scanner
Answers
B.
SYN scanner
C.
SSL certificate cannot be trusted
Answers
C.
SSL certificate cannot be trusted
D.
Scan not performed with admin privileges
Answers
D.
Scan not performed with admin privileges
Suggested answer: D

Explanation:

This is because scanning without admin privileges can limit the scope and accuracy of the vulnerability scan, and potentially miss some critical vulnerabilities that require higher privileges to detect. According to the OWASP Vulnerability Management Guide1, “scanning without administrative privileges will result in a large number of false negatives and an incomplete scan”.

Therefore, the analyst should recommend addressing this issue to ensure potential vulnerabilities are identified.

asked 02/10/2024
Mark Chow
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first