
EC-CouncilEthical Hacking Essentials
Domain 3Objective 3
Vulnerability Scanning and Assessment EHE Practice Questions (Page 3)
Part of the Ethical Hacking Methodology domain, which makes up ~12% of our current practice bank.
45questions here
9free pages
6concepts
Questions 11–15
- 11
A security analyst is planning a vulnerability assessment for a hybrid network. The internal network contains sensitive servers that require authentication for accurate scanning. The external perimeter includes a web server that is publicly accessible. The analyst has limited time and must prioritize the most critical risk. Which combination of scans should the analyst perform first?
Select an answer first - 12
A security team wants to automate vulnerability scanning as part of their CI/CD pipeline. They need a tool that can be integrated into the pipeline and provide API access for automated reporting. Which tool is most appropriate?
Select an answer first - 13
A security team needs to scan a web application for vulnerabilities such as SQL injection and cross-site scripting. The team wants a tool that is specifically designed for web application testing and can also be used to manually verify findings. Which tool is most appropriate?
Select an answer first - 14
A vulnerability scan of a network segment reports a critical vulnerability in a service that is only accessible from the internal network. The analyst knows that the service is protected by a firewall that blocks external access. The scan was performed from an external IP address. What is the most likely explanation for this finding?
Select an answer first - 15
What is the primary function of OpenVAS in the context of vulnerability scanning?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.