Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

Questions: Misc || 100% Accurate Answers.

Rating
-
Sold
-
Pages
12
Grade
A+
Uploaded on
06-07-2025
Written in
2024/2025

During an external vulnerability scan, the penetration tester finds that telnet, ftp, and http are open inbound on a storage server at the customer site. This information has been relayed to the customer after the penetration test has been completed. Which of the following is the BEST mitigation for this vulnerability? A. The customer should enable two-factor authentication. B. The customer should wrap http in TLS. C. The customer should move the services to non-standard ports. D. The customer should use system hardening guides to close unnecessary services and ports. correct answers D. The customer should use system hardening guides to close unnecessary services and ports. A penetration tester finds a username with a relative ID (RID) of 500 on a Windows device. Which of the following privilege levels does this user have? A. Administrator B. User C. Guest D. Power user correct answers A. Administrator A penetration tester notices the results from an external vulnerability scan are unreliable. The same IP address has shown different vulnerabilities each time it is scanned. Which of the following is the MOST likely cause for this? A. The IP being scanned is a load balancer with systems behind it. B. The vulnerability scanner is reporting false positives. C. The customer has been patching and rolling back their updates.

Show more Read less
Institution
Misc
Course
Misc

Content preview

Questions: Misc || 100% Accurate Answers.


During an external vulnerability scan, the penetration tester finds that telnet, ftp, and http are
open inbound on a storage server at the customer site. This information has been relayed to the
customer after the penetration test has been completed. Which of the following is the BEST
mitigation for this vulnerability?


A. The customer should enable two-factor authentication.
B. The customer should wrap http in TLS.
C. The customer should move the services to non-standard ports.
D. The customer should use system hardening guides to close unnecessary services and ports.
correct answers D. The customer should use system hardening guides to close unnecessary
services and ports.


A penetration tester finds a username with a relative ID (RID) of 500 on a Windows device.
Which of the following privilege levels does this user have?


A. Administrator
B. User
C. Guest
D. Power user correct answers A. Administrator


A penetration tester notices the results from an external vulnerability scan are unreliable. The
same IP address has shown different vulnerabilities each time it is scanned. Which of the
following is the MOST likely cause for this?


A. The IP being scanned is a load balancer with systems behind it.
B. The vulnerability scanner is reporting false positives.
C. The customer has been patching and rolling back their updates.

, D. The vulnerability scanner is improperly configured. correct answers A. The IP being scanned
is a load balancer with systems behind it.


A web application is coded in such a way that it concatenates user input directly into a database
query:
http://example.com?page=news&ID=14
To which of the following vulnerabilities could this situation apply?


A. XML injection
B. Insecure direct object reference
C. Insecure cross-origin resource sharing
D. SQL injection correct answers D. SQL injection


Output from a static code analyzer shows a high number of null pointer issues. Which of the
following is the MOST likely cause of this issue?


A. Improper use of named pipes
B. Poor file-system integration
C. Lack of variable initialization
D. Bad socket programming correct answers C. Lack of variable initialization


A penetration tester is removing a local admin account from a target system, clearing credentials
from an exploitation framework, and purging copies of documents from the laptop that was used
to create reports. Which of the following is the penetration tester performing?


A. Attestation of findings
B. Post-engagement cleanup
C. Deception techniques
D. Remediation steps correct answers B. Post-engagement cleanup

Written for

Institution
Misc
Course
Misc

Document information

Uploaded on
July 6, 2025
Number of pages
12
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$12.19
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF


Also available in package deal

Thumbnail
Package deal
Misc || with Errorless Answers.
-
8 2025
$ 95.98 More info

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
SirAnton NURSING, ECONOMICS, MATHEMATICS, BIOLOGY, AND HISTORY MATERIALS BEST TUTORING, HOMEWORK HELP, EXAMS, TESTS, AND STUDY GUIDE MATERIALS WITH GUARANTEED A+ I am a dedicated medical practitioner with diverse knowledge in matters
View profile
Follow You need to be logged in order to follow users or courses
Sold
760
Member since
3 year
Number of followers
439
Documents
38001
Last sold
1 day ago
Reign Supreme Scholarly || Enlightened.

Get your revised study materials available here and elevate your educational outcomes. I have numerous verified learning materials (Research, Exams Questions and answers, Assignments, notes etc) for different courses guaranteed to boost your academic results. I am dedicated to offering you the best and unique learning content. You are encouraged to inquire further assistance from this end whenever need be. Kindly remember to leave your review, understanding your satisfaction is essential . We highly appreciate clients who always come back for more of the study content we offer, you are extremely valued. All the best.

Read more Read less
3.7

114 reviews

5
49
4
20
3
22
2
8
1
15

Trending documents

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions