Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Penetration Testing Professional

Domain 4Objective 3

Linux Exploitation and Privilege Escalation CPENT Practice Questions (Page 3)

Part of the Perimeter Evasion and Host Exploitation domain, which makes up ~13% of our current practice bank.

48questions here
10free pages
10concepts

Questions 11–15

  1. 11foundation · easy

    A user can run the command 'sudo /usr/bin/vim' without a password. Which of the following is a common technique to escalate privileges using this misconfiguration?

    Select an answer first
  2. 12expert · hard

    You have root access on a Linux server and want to maintain persistence that is stealthy and survives reboots. Which mechanism would be the most stealthy?

    Select an answer first
  3. 13expert · hard

    You have a low-privilege shell on a Linux server. The kernel is version 3.13.0-24-generic, which is vulnerable to CVE-2013-2094. However, the server has SELinux enforcing and a restrictive seccomp filter in place. Which approach is most likely to succeed?

    Select an answer first
  4. 14application · medium

    You are performing a penetration test and have a low-privilege shell on a Linux host. You need to escalate to root. Which of the following is the MOST efficient first step to identify potential privilege escalation vectors?

    Select an answer first
  5. 15foundation · easy

    Which file on a Linux system contains password hashes for user accounts?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.