CS0-003 Exam Question 61

The security team is reviewing a list of vulnerabilities present on the environment, and they want to prioritize the remediation based on the CVSS v4.0 metrics:

Which of the following vulnerabilities should the security manager request to fix first?
  • CS0-003 Exam Question 62

    Following an incident, a security analyst needs to create a script for downloading the configuration of all assets from the cloud tenancy. Which of the following authentication methods should the analyst use?
  • CS0-003 Exam Question 63

    A recent zero-day vulnerability is being actively exploited, requires no user interaction or privilege escalation, and has a significant impact to confidentiality and integrity but not to availability. Which of the following CVE metrics would be most accurate for this zero-day threat?
  • CS0-003 Exam Question 64

    A security analyst runs the following command:
    # nmap -T4 -F 192.168.30.30
    Starting nmap 7.6
    Host is up (0.13s latency)
    PORT STATE SERVICE
    23/tcp open telnet
    443/tcp open https
    636/tcp open ldaps
    Which of the following should the analyst recommend first to harden the system?
  • CS0-003 Exam Question 65

    Due to reports of unauthorized activity that was occurring on the internal network, an analyst is performing a network discovery. The analyst runs an Nmap scan against a corporate network to evaluate which devices were operating in the environment. Given the following output:

    Which of the following choices should the analyst look at first?