Question 171

A penetration tester runs a vulnerability scan that identifies several issues across numerous customer hosts. The executive report outlines the following information:

The client is concerned about the availability of its consumer-facing production application. Which of the following hosts should the penetration tester select for additional manual testing?
  • Question 172

    A penetration tester performs the following scan:
    nmap -sU -p 53,161,162 192.168.1.51
    PORT | STATE
    53/udp | open|filtered
    161/udp | open|filtered
    162/udp | open|filtered
    The tester then manually uses snmpwalk against port 161 and receives valid SNMP responses. Which of the following best explains the scan result for port 161?
  • Question 173

    A tester completed a report for a new client. Prior to sharing the report with the client, which of the following should the tester request to complete a review?
  • Question 174

    A company hired a penetration-testing team to review the cyber-physical systems in a manufacturing plant.
    The team immediately discovered the supervisory systems and PLCs are both connected to the company intranet. Which of the following assumptions, if made by the penetration-testing team, is MOST likely to be valid?
  • Question 175

    During a security assessment of an e-commerce website, a penetration tester wants to exploit a vulnerability in the web server's input validation that will allow unauthorized transactions on behalf of the user. Which of the following techniques would most likely be used for that purpose?