210-250 · Question #159
Which two are software vulnerability scanners? (Choose two.)
The correct answer is B. Nessus D. open VAS. Nessus and OpenVAS are the two leading vulnerability scanners that probe network hosts for known CVEs, software flaws, and misconfigurations.
Question
Which two are software vulnerability scanners? (Choose two.)
Options
- AVmStat
- BNessus
- Cfingerprint
- Dopen VAS
How the community answered
(27 responses)- A4% (1)
- B93% (25)
- C4% (1)
Why each option
Nessus and OpenVAS are the two leading vulnerability scanners that probe network hosts for known CVEs, software flaws, and misconfigurations.
VmStat is a Linux/Unix system performance monitoring utility that reports virtual memory, CPU usage, and I/O statistics; it has no vulnerability scanning capability.
Nessus, developed by Tenable, is a widely deployed commercial vulnerability scanner that checks hosts against a continuously updated plugin database of known CVEs and configuration weaknesses, actively probing services to confirm exploitability.
'fingerprint' is a general passive or active technique used to identify an OS or service version and is not a standalone vulnerability scanner tool.
OpenVAS (Open Vulnerability Assessment Scanner) is an open-source vulnerability scanning framework maintained by Greenbone that performs the same function as Nessus - auditing network services and software for known vulnerabilities - making both B and D valid software vulnerability scanners.
Concept tested: Identifying Nessus and OpenVAS as vulnerability scanners
Source: https://docs.tenable.com/nessus/Content/GettingStarted.htm
Topics
Community Discussion
No community discussion yet for this question.