
EC-CouncilCertified Penetration Testing Professional
Domain 1Objective 2
Penetration Testing Scoping and Engagement CPENT Practice Questions (Page 8)
Part of the Penetration Testing Foundations and Scoping domain, which makes up ~15% of our current practice bank.
39questions here
8free pages
5concepts
Questions 36–39
- 36
During a penetration test, the tester discovers that a critical database server is exposed to the internet and is vulnerable to a known exploit. The client's stakeholders have not yet approved testing of that server. What is the most appropriate action for the tester?
Select an answer first - 37
In a white-box penetration test, which information is typically provided to the tester?
Select an answer first - 38
A client wants to test the security of their cloud infrastructure, but they are unsure about the shared responsibility model. They want to ensure that the test does not violate the cloud provider's terms of service. What is the most important step for the tester?
Select an answer first - 39
A penetration tester is completing an engagement and preparing the final report. The client has requested that the report include actionable remediation steps. The tester has identified a critical vulnerability in a web application. What is the most important element to include in the report for this vulnerability?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CPENT
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.