PM
CEH V12 EXAM ACTUAL QUESTIONS AND ANSWERS WITH
COMPLETE SOLUTIONS VERIFIED LATEST UPDATE 2025/2026
Terms in this set (356)
Which of the following modbus-cli B
commands is used by attackers to
manipulate the register values in a target
PLC device?
A. modbus write <Target IP> 101 1 1 1 1 1 1 1 1 1
1 modbus write <Target IP> %M100 1 1 1 1 1 1 1
111
B. modbus write <Target IP> %MW100 2 2 2
2 2 2 2 2 modbus write <Target IP> 400101 2
2222222
C. modbus read <Target IP> 101 10 modbus
read <Target IP> %M100 10
D. modbus read <Target IP> 101 10 modbus
read <Target IP> %M100 10
In which of the following security risks does B
an API accidentally expose internal
variables or objects because of
improper binding and filtering based on
a whitelist, allowing attackers with
unauthorized access to modify object
properties?
A. Broken object-level authorization
B. Broken object-level authorization
C. Broken object-level authorization
1/37
,6/28/25, 2:02
PM
D. Injection
2/37
,6/28/25, 2:02
PM
Identify the type of B
cluster computing in
which work is distributed
among nodes to avoid
overstressing a single
node and periodic health
checks are performed on
each node to identify
node failures and reroute
the incoming traffic to
another node.
A.Fail-over
B.Load
balancing
C.Highly
available
D.High-performance
computing
Which of the following is A.
an attack technique where
the only information
available to the attacker is
some plaintext blocks along
with the corresponding
ciphertext and algorithm
used to encrypt and
decrypt the text?
A. Ciphertext-only attack
B. Adaptive chosen-plaintext
attack
C. Chosen-plaintext attack
3/37
, 6/28/25, 2:02
PM
D. Known-plaintext attack
Which of the following C
communication protocols is
a variant of the Wi-Fi
standard that provides an
extended range, making it
useful for communications
in rural areas, and offers
low data rates?
A. HaLow
B. Z-Wave
C. 6LoWPAN
D. QUIC
Which of the following is a C
technique used by an
attacker to gather valuable
system- level data such as
account details, OS,
software version, server
names, and database
schema details?
A.Whois
B.Session hijacking
C.Web server
footprinting
D.Vulnerability
scanning
Which of the following A
RFCrack commands is used
by an attacker to perform
an incremental scan on a
4/37