
EC-CouncilCertified Ethical Hacker
Domain 3Objective 3
Vulnerability Exploitation and Metasploit CEH Practice Questions (Page 8)
Part of the System Hacking Phases and Attack Techniques domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~15–26 in this domain), expect 2–3 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)
48questions here
10free pages
14concepts
Questions 36–40
- 36
You are a penetration tester hired by a company to assess their internal network. During the assessment, you discover a critical vulnerability in a legacy system that is not in the scope of the engagement. What is the most appropriate action?
Select an answer first - 37
What is the main difference between a reverse shell and a bind shell payload?
Select an answer first - 38
Which Metasploit module type is used for port scanning and service enumeration?
Select an answer first - 39
What is the primary purpose of using an encoder in Metasploit?
Select an answer first - 40
You have gained a Meterpreter session on a Windows target, but you need to escalate privileges to SYSTEM. The `getsystem` command fails. You suspect the target has User Account Control (UAC) enabled and your current process is not elevated. Which technique is most likely to succeed?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.