Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilICS/SCADA Cybersecurity

Domain 4Objective 3

Interpreting Advisory Notices and CVE ICSSCADA Practice Questions (Page 2)

Part of the Vulnerability Management domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 1–2 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)

36questions here
8free pages
6concepts

Questions 6–10

  1. 6application · medium

    A security analyst at a manufacturing plant is reviewing a vendor advisory that references 'CVE-2024-1234'. The analyst needs to quickly determine when this vulnerability was publicly assigned and how to look up more details. What does the CVE identifier tell the analyst?

    Select an answer first
  2. 7application · medium

    A security analyst is correlating a vendor advisory with a CVE entry. The advisory mentions 'CVE-2023-1234' and provides a link to the CVE record. The analyst wants to confirm that the advisory and the CVE refer to the same vulnerability. What should the analyst do?

    Select an answer first
  3. 8application · medium

    A security engineer is reviewing a CVSS vector string for a vulnerability in a remote terminal unit (RTU): CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H. The engineer needs to explain the severity to management. Which statement accurately interprets this vector?

    Select an answer first
  4. 9expert · hard

    A CVE record for a safety instrumented system (SIS) logic solver lists affected configurations as 'Firmware versions 1.0 through 1.5' and describes a vulnerability that allows a remote unauthenticated attacker to cause a denial of service. The CVSS base score is 7.5. The plant's SIS is running firmware 1.6, which is not listed. The vendor has released firmware 1.7 that addresses the CVE. The plant's safety team is concerned about downtime because updating the SIS requires a full process shutdown. What is the best course of action?

    Select an answer first
  5. 10expert · hard

    A hospital's building automation system (BAS) is running a version of the controller software that is affected by a critical vulnerability. The vendor's advisory provides a patch, but the hospital's infection control policy requires that any change to the BAS be approved by a committee that meets monthly. The vulnerability is actively being exploited in the wild. What should the facility manager do?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.