Câu 210: SY0-501: CompTIA Security+
A security analyst is inspecting the results of a recent internal vulnerability scan that was performed against intranet services. The scan reports include the following critical-rated vulnerability: Title: Remote Command Execution vulnerability in web server Rating: Critical (CVSS 10.0)Threat actor: any remote user o…
Nội dung câu hỏi
A security analyst is inspecting the results of a recent internal vulnerability scan that was performed against intranet services. The scan reports include the following critical-rated vulnerability: Title: Remote Command Execution vulnerability in web server Rating: Critical (CVSS 10.0)Threat actor: any remote user of the web serverConfidence: certain -Recommendation: apply vendor patchesWhich of the following actions should the security analyst perform FIRST?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Escalate the issue to senior management.
- B. Apply organizational context to the risk rating. — đáp án hiện tại
- C. Organize for urgent out-of-cycle patching.
- D. Exploit the server to check whether it is a false positive.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.