ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 96 - SY0-701 discussion

Report
Export

After reviewing the following vulnerability scanning report:

Server:192.168.14.6

Service: Telnet

Port: 23 Protocol: TCP

Status: Open Severity: High

Vulnerability: Use of an insecure network protocol

A security analyst performs the following test:

nmap -p 23 192.168.14.6 ---script telnet-encryption

PORT STATE SERVICE REASON

23/tcp open telnet syn-ack

I telnet encryption:

| _ Telnet server supports encryption

Which of the following would the security analyst conclude for this reported vulnerability?

A.
It is a false positive.
Answers
A.
It is a false positive.
B.
A rescan is required.
Answers
B.
A rescan is required.
C.
It is considered noise.
Answers
C.
It is considered noise.
D.
Compensating controls exist.
Answers
D.
Compensating controls exist.
Suggested answer: A

Explanation:

A false positive is a result that indicates a vulnerability or a problem when there is none. In this case, the vulnerability scanning report shows that the telnet service on port 23 is open and uses an insecure network protocol. However, the security analyst performs a test using nmap and a script that checks for telnet encryption support. The result shows that the telnet server supports encryption, which means that the data transmitted between the client and the server can be protected from eavesdropping. Therefore, the reported vulnerability is a false positive and does not reflect the actual security posture of the server.The security analyst should verify the encryption settings of the telnet server and client and ensure that they are configured properly3.

Reference:3:Telnet Protocol - Can You Encrypt Telnet?

asked 02/10/2024
dion alken
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first