
Certified Tester Security Test Engineer
Domain 8Objective 3
Hide Vulnerability CT-STE Practice Questions (Page 3)
Part of the Reporting Test Results domain, which makes up ~8% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~2–4 in this domain), expect 1–1 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)
27questions here
6free pages
6concepts
Questions 11–15
- 11
Which of the following is a key factor in assessing the impact of a vulnerability?
Select an answer first - 12
A tester identifies a cross-site scripting (XSS) vulnerability in a web application. The developer team is unfamiliar with XSS and asks for guidance. What is the most actionable remediation advice the tester can provide?
Select an answer first - 13
A security analyst needs to document a vulnerability for a ticket in the organization's issue tracker. The ticket will be viewed by both IT operations staff and the security team. What is the most important information to include in the ticket?
Select an answer first - 14
Which of the following is an example of a clear and actionable remediation recommendation?
Select an answer first - 15
What is the purpose of providing mitigation guidance in a vulnerability report?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.