Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilICS/SCADA Cybersecurity

Domain 4Objective 6

Prioritizing Vulnerabilities with CVSS and OVAL ICSSCADA Practice Questions (Page 3)

Part of the Vulnerability Management domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 1–2 from this objective — we provide 53 practice questions to prepare you well beyond it. (estimate)

53questions here
11free pages
10concepts

Questions 11–15

  1. 11expert · hard

    A power generation facility has two critical vulnerabilities to remediate. Vulnerability A has a CVSS base score of 9.8, but the affected device is a non-critical monitoring sensor on a segmented network with no internet access. Vulnerability B has a CVSS base score of 7.2, but it affects the main control server that is accessible from the corporate network and has a public exploit available. The facility has a maintenance window that allows only one patch this week. Which vulnerability should be patched first?

    Select an answer first
  2. 12expert · hard

    A security engineer is reviewing a vulnerability report for a distributed control system (DCS) server. The base vector is CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H. The engineer knows that the DCS server is connected to the corporate network, but the organization has strict confidentiality requirements for its process data. The engineer wants to compute an environmental score that reflects the organization's priorities. Which environmental metric adjustment is most appropriate?

    Select an answer first
  3. 13application · medium

    A manufacturing company wants to automate the verification of security configurations across its diverse fleet of ICS devices, including Windows workstations, Linux servers, and network appliances. The compliance team needs a single, standardized format to define these checks so that any commercial or open-source tool can execute them. Which standard should the team adopt?

    Select an answer first
  4. 14application · medium

    An ICS security analyst is writing an OVAL definition to check if a specific service is running on a SCADA historian server. The analyst needs the check to pass only if the service is running AND its start mode is set to 'Automatic'. Which OVAL component should the analyst use to express this combined condition?

    Select an answer first
  5. 15expert · hard

    An OT security analyst is creating an OVAL definition to detect a misconfiguration in a safety PLC that could allow unauthorized changes to its logic. The check must verify that the PLC's password-protection setting is enabled and that the firmware version is not in a known vulnerable list. The analyst has access to OVAL objects for the PLC's configuration file and firmware version. Which OVAL structure should the analyst use?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.