
CompTIAPenTest+
Domain 1Objective 4
Penetration Test Reports PT0-003 Practice Questions (Page 1)
Part of the Engagement management domain, which accounts for 13% of the PT0-003 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~8–14 in this domain), expect 2–4 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)
29questions here
6free pages
8concepts
13%of the exam
Questions 1–5
- 1
Which section of a penetration test report should contain the detailed technical description of a vulnerability and how it was exploited?
Select an answer first - 2
Which factor is most commonly used to prioritize findings in a penetration test report?
Select an answer first - 3
Which of the following is the most appropriate visual representation to show the number of vulnerabilities found at each severity level (Critical, High, Medium, Low)?
Select an answer first - 4
A penetration tester is documenting a finding for a client. The finding is a cross-site scripting (XSS) vulnerability in a web application. The tester has a screenshot of the XSS payload executing in a browser. The client's development team is responsible for fixing the issue. What is the most important information to include in the finding documentation?
Select an answer first - 5
During a penetration test, a tester discovers a misconfigured S3 bucket that allows public write access. The tester successfully uploads a test file to prove the issue. What should the tester include in the findings documentation for this vulnerability?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “PT0-003” is a trademark of its owner, used for identification only.