
EC-CouncilCertified Ethical Hacker
Domain 5Objective 1
Hacking Web Servers CEH Practice Questions (Page 1)
Part of the Web Application Hacking domain, which makes up ~8% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~8–13 in this domain), expect 2–3 from this objective — we provide 41 practice questions to prepare you well beyond it. (estimate)
41questions here
9free pages
6concepts
Questions 1–5
- 1
In the context of web server architecture, which component is responsible for interpreting the HTTP request and generating the appropriate HTTP response?
Select an answer first - 2
A security team is conducting a vulnerability assessment of a web server that hosts a critical application. The team wants to identify misconfigurations, outdated software, and potential directory traversal issues without causing service disruption. Which approach best meets these requirements?
Select an answer first - 3
A company runs a web server that has been compromised in the past. The administrator wants to implement a comprehensive security monitoring solution but has a limited budget. The server hosts a public website and an internal admin panel. Which monitoring strategy provides the best balance of cost and effectiveness?
Select an answer first - 4
During a penetration test, you have identified a web server vulnerable to a known remote code execution (RCE) vulnerability. The client requires you to demonstrate the impact without causing service disruption. Which approach best meets this requirement?
Select an answer first - 5
Which attack involves an attacker repeatedly trying different username and password combinations against a web server's login page?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.