Vulnerability Management Sybex
Chapter 2: Domain 2 Exam Actual
Questions and Answers 2026
Ann would like to improve her organizations ability to detect and
remediate security vulnerabilities by adopting a continuous
monitoring approach.
Which one of the following is not a characterisitic of a continuous
monitoring program?
A.Analyzing and reporting findings
B.COnducting forensic investigations when a vulnerability is explited
C.Mitigating the risk associated with findings
D.Transferring the risk associated with a finding to a third party -
correct answer ✅B.COnducting forensic investigations when a
vulnerability is explited
Explanation
Kim is preparing to deploy a new vulnerability scanner and wants to
ensure that she can get the most accurate view of configuration
issues on laptops belonging to traveling salespeople.
Which technology will work best in this situation?
,Vulnerability Management Sybex
Chapter 2: Domain 2 Exam Actual
Questions and Answers 2026
A.Agent-based scanning
B.Server-based scanning
C,Passive network monitoring
D. Non-credentialed scanning -
correct answer ✅A.Agent-based scanning
Explanation:
Using an agent-based scanning approach will provide Kim with the
most reliable results for systems that are not always connected to
the network.
The agent can run the scans then report results the next time the
agent is connected to a network.
The other technologies all require that the system be connected to
the network during the scan
,Vulnerability Management Sybex
Chapter 2: Domain 2 Exam Actual
Questions and Answers 2026
Carla runs a vulnerability scan of a new appliance that engineers
are planning to place on her organizations network and finds the
results shown here.
Of the actions listed, which would correct the high criticality
vulnerability?
A.Block the use of TLSv1.0
B.Replace the expired SSL certificate
C.Remove the load balancer
D.Correct the information leakage vulnerability -
correct answer ✅B.Replace the expired SSL certificate
Explanation:
As Carla reads this report, she should note that the bottom three
vulnerabilities have a status of Fixed.
This indicates that the information leakage vulnerability is already
corrected and that the server no longer supports TLSv1.0.
, Vulnerability Management Sybex
Chapter 2: Domain 2 Exam Actual
Questions and Answers 2026
The alert about the load balancer is severity 1, and Carla should
treat it as informational.
This leaves a severity 2 vulnerability for the expired SSL certificate
as the highest severity issue of the choice presented.
In what type of attack does the adversary leverage a position on a
guest operating system to gain access to hardware resources
assigned to other operating systems running in the same hardware
environment?
A.Buffer overflow
B.Directory traversal
C.VM escape
D.Cross-site scripting -
correct answer ✅C.VM escape
Explanation:
In a VM escape attack, the attacker exploits vulnerabilities in the
hypervisor to gain access to resources assigned to other guest
operating systems
Chapter 2: Domain 2 Exam Actual
Questions and Answers 2026
Ann would like to improve her organizations ability to detect and
remediate security vulnerabilities by adopting a continuous
monitoring approach.
Which one of the following is not a characterisitic of a continuous
monitoring program?
A.Analyzing and reporting findings
B.COnducting forensic investigations when a vulnerability is explited
C.Mitigating the risk associated with findings
D.Transferring the risk associated with a finding to a third party -
correct answer ✅B.COnducting forensic investigations when a
vulnerability is explited
Explanation
Kim is preparing to deploy a new vulnerability scanner and wants to
ensure that she can get the most accurate view of configuration
issues on laptops belonging to traveling salespeople.
Which technology will work best in this situation?
,Vulnerability Management Sybex
Chapter 2: Domain 2 Exam Actual
Questions and Answers 2026
A.Agent-based scanning
B.Server-based scanning
C,Passive network monitoring
D. Non-credentialed scanning -
correct answer ✅A.Agent-based scanning
Explanation:
Using an agent-based scanning approach will provide Kim with the
most reliable results for systems that are not always connected to
the network.
The agent can run the scans then report results the next time the
agent is connected to a network.
The other technologies all require that the system be connected to
the network during the scan
,Vulnerability Management Sybex
Chapter 2: Domain 2 Exam Actual
Questions and Answers 2026
Carla runs a vulnerability scan of a new appliance that engineers
are planning to place on her organizations network and finds the
results shown here.
Of the actions listed, which would correct the high criticality
vulnerability?
A.Block the use of TLSv1.0
B.Replace the expired SSL certificate
C.Remove the load balancer
D.Correct the information leakage vulnerability -
correct answer ✅B.Replace the expired SSL certificate
Explanation:
As Carla reads this report, she should note that the bottom three
vulnerabilities have a status of Fixed.
This indicates that the information leakage vulnerability is already
corrected and that the server no longer supports TLSv1.0.
, Vulnerability Management Sybex
Chapter 2: Domain 2 Exam Actual
Questions and Answers 2026
The alert about the load balancer is severity 1, and Carla should
treat it as informational.
This leaves a severity 2 vulnerability for the expired SSL certificate
as the highest severity issue of the choice presented.
In what type of attack does the adversary leverage a position on a
guest operating system to gain access to hardware resources
assigned to other operating systems running in the same hardware
environment?
A.Buffer overflow
B.Directory traversal
C.VM escape
D.Cross-site scripting -
correct answer ✅C.VM escape
Explanation:
In a VM escape attack, the attacker exploits vulnerabilities in the
hypervisor to gain access to resources assigned to other guest
operating systems