
CiscoCertified Network Professional Cybersecurity (CBRCOR)
Domain 3Objective 10
3.10 Recommend the Next Steps for Vulnerability Triage and Risk Analysis Using Industry Scoring Systems Such as CVSS and Other Techniques 350-201 Practice Questions (Page 2)
Part of the Processes domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 2–2 from this objective — we provide 12 practice questions to prepare you well beyond it. (estimate)
12questions here
3free pages
6concepts
30%of the exam
Questions 6–10
- 6
Which CVSS metric group is used to adjust the base score based on the availability of exploit code or a patch?
Select an answer first - 7
What is the numeric range of the CVSS v3.x base score?
Select an answer first - 8
When a patch for a high-severity vulnerability is not yet available, which next step is most appropriate?
Select an answer first - 9
Given the CVSS vector string 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H', what is the base score?
Select an answer first - 10
Which CVSS metric group captures the characteristics of the vulnerability that are constant over time and across user environments?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.