
EC-CouncilEthical Hacking Essentials
Domain 3Objective 3
Vulnerability Scanning and Assessment EHE Practice Questions (Page 9)
Part of the Ethical Hacking Methodology domain, which makes up ~12% of our current practice bank.
45questions here
9free pages
6concepts
Questions 41–45
- 41
A vulnerability scan reveals a critical remote code execution vulnerability in a web server. The server is business-critical and cannot be taken offline. The security team must reduce the risk immediately while a permanent fix is developed. Which approach is the most appropriate immediate mitigation?
Select an answer first - 42
A security team needs to perform a vulnerability scan of its network. The team wants a free, open-source tool that can be used for both network and web application scanning. Which tool is most appropriate?
Select an answer first - 43
An organization wants to identify vulnerabilities that are only visible from outside its network perimeter. What type of scan should be performed?
Select an answer first - 44
During which phase of the ethical hacking methodology does vulnerability scanning typically occur?
Select an answer first - 45
A security team is conducting a vulnerability assessment of a network that includes both internal servers and a public-facing web application. The team has credentials for the internal servers but not for the web application. The web application has a login page. What is the most appropriate scanning strategy?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to EHE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.