
CiscoCertified Support Technician (CCST) Cybersecurity
Domain 4Objective 1
Explain Vulnerability Management 100-160 Practice Questions (Page 2)
Part of the Vulnerability Assessment and Risk Management domain, which makes up ~20% of our current practice bank. Cisco does not publish an official question count, but from its 50-minute exam (~20–35 total, ~4–7 in this domain), expect 1–2 from this objective — we provide 49 practice questions to prepare you well beyond it. (estimate)
49questions here
10free pages
7concepts
Questions 6–10
- 6
A vulnerability scan reveals that a web server is running an outdated version of Apache with a known vulnerability. The server is in production and cannot be taken offline. Which mitigation strategy is most appropriate?
Select an answer first - 7
A network administrator runs a port scan on a server and sees that TCP port 22 is open. Which service is most likely running on this port?
Select an answer first - 8
A vulnerability scan reveals that a critical internal application runs on an outdated operating system that is no longer supported by the vendor. The application cannot be migrated to a supported OS for six months. Which mitigation strategy would most effectively reduce the risk in the interim?
Select an answer first - 9
A security analyst needs to identify known weaknesses in a network's systems. Which tool is specifically designed to scan for known vulnerabilities and provide a report of potential exposures?
Select an answer first - 10
After a vulnerability scan identifies a critical flaw in a database server, the DBA applies a patch. What is the next step in the vulnerability management lifecycle?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “100-160” is a trademark of its owner, used for identification only.