exam questions

Exam CS0-003 All Questions

View all questions & answers for the CS0-003 exam

Exam CS0-003 topic 1 question 334 discussion

Actual exam question from CompTIA's CS0-003
Question #: 334
Topic #: 1
[All CS0-003 Questions]

An analyst is creating the final vulnerability report for one of the company’s customers. The customer asks for a scanning profile with a CVSS score of 7 or higher. The analyst has confirmed there is no finding for missing database patches, even if false positives have been eliminated by manual checks. Which of the following is the most probable reason for the missing scan result?

  • A. The server was offline at the moment of the scan.
  • B. The system was not patched appropriately before the scan.
  • C. The scan finding does not match the requirement.
  • D. The output of the scan is corrupted.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Susan4041
2 days, 23 hours ago
Selected Answer: A
If the server was offline during the scan, the vulnerability scanner would not be able to reach or scan the system, which could explain the missing result for database patches. If the server is offline, it would not be included in the scan results, which could create the appearance that there are no issues with database patches, even though they might exist if the server were online. This is especially relevant if the scan is done in a time window where the server is unavailable or has intermittent connectivity issues.
upvoted 1 times
...
ada26b1
2 weeks, 5 days ago
Selected Answer: A
A. The server was offline at the moment of the scan. If the server was offline during the scan, the scanning tool would not be able to detect or evaluate any vulnerabilities, including those related to missing database patches. This could explain why the scan results show no findings, even if manual checks confirmed no false positives.
upvoted 1 times
...
Wolf541
2 months, 3 weeks ago
Selected Answer: C
Answer is C given their requirements
upvoted 2 times
...
7167087
2 months, 4 weeks ago
Selected Answer: C
It's clearly C. The customer asks for a CVSS score of 7 or higher. With database vulnerabilities, they are going to be higher than 7. The server being offline would just mean that the scanner would return an error and not reach the database server at all. If false positives were eliminated then it's likely that the database server is functioning. Simply put, missing results is different than an error from an unresponsive, offline database server.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago