Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Ethical Hacker

Domain 3Objective 3

Vulnerability Exploitation and Metasploit CEH Practice Questions (Page 8)

Part of the System Hacking Phases and Attack Techniques domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~15–26 in this domain), expect 2–3 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)

48questions here
10free pages
14concepts

Questions 36–40

  1. 36application · medium

    You are a penetration tester hired by a company to assess their internal network. During the assessment, you discover a critical vulnerability in a legacy system that is not in the scope of the engagement. What is the most appropriate action?

    Select an answer first
  2. 37foundation · easy

    What is the main difference between a reverse shell and a bind shell payload?

    Select an answer first
  3. 38foundation · easy

    Which Metasploit module type is used for port scanning and service enumeration?

    Select an answer first
  4. 39foundation · easy

    What is the primary purpose of using an encoder in Metasploit?

    Select an answer first
  5. 40expert · hard

    You have gained a Meterpreter session on a Windows target, but you need to escalate privileges to SYSTEM. The `getsystem` command fails. You suspect the target has User Account Control (UAC) enabled and your current process is not elevated. Which technique is most likely to succeed?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.