ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 377 - PT0-002 discussion

Report
Export

Which of the following elements of a penetration testing report aims to provide a normalized and standardized representation of discovered vulnerabilities and the overall threat they present to an affected system or network?

A.
Executive summary
Answers
A.
Executive summary
B.
Vulnerability severity rating
Answers
B.
Vulnerability severity rating
C.
Recommendations of mitigation
Answers
C.
Recommendations of mitigation
D.
Methodology
Answers
D.
Methodology
Suggested answer: B

Explanation:

The vulnerability severity rating element of a penetration testing report provides a normalized and standardized representation of discovered vulnerabilities and their threat levels. It typically involves assigning a numerical or categorical score (such as low, medium, high, critical) to each vulnerability based on factors like exploitability, impact, and the context in which the vulnerability exists. This helps in prioritizing the vulnerabilities for remediation and provides a clear understanding of the risk they pose to the system or network.

asked 02/10/2024
Alberto Paniagua
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first