nerdexam
CompTIACompTIA

CAS-005 · Question #305

CAS-005 Question #305: Real Exam Question with Answer & Explanation

The correct answer is B: OpenSSH. While the Apache vulnerability has the highest CVSS score (9.7), the OpenSSH vulnerability (CVSS 9.2) is on a public-facing system, making it more immediately exploitable from external sources. Prioritizing public-facing, high-severity vulnerabilities is critical to reducing expo

Submitted by hans_de· Mar 6, 2026Security Operations

Question

A security engineer is reviewing the following vulnerability scan report: Which of the following should the engineer prioritize for remediation?

Options

  • AApache HTTP Server
  • BOpenSSH
  • CGoogle Chrome
  • DMigration to TLS 1.3

Explanation

While the Apache vulnerability has the highest CVSS score (9.7), the OpenSSH vulnerability (CVSS 9.2) is on a public-facing system, making it more immediately exploitable from external sources. Prioritizing public-facing, high-severity vulnerabilities is critical to reducing exposure.

Community Discussion

No community discussion yet for this question.

Full CAS-005 PracticeBrowse All CAS-005 Questions