CSA
CCSK · Question #146
CCSK Question #146: Real Exam Question with Answer & Explanation
The correct answer is C. System or O/S vulnerabilities. ENISA identifies system and operating system vulnerabilities as a key contributor to high risk rankings in the network management domain.
Question
ENISA: Which of the following is among the vulnerabilities contributing to a high risk ranking for Network Management?
Options
- AUser provisioning vulnerabilities
- BAAA vulnerabilities
- CSystem or O/S vulnerabilities
- DHypervisor vulnerabilities
- EInadequate physical security procedures
Explanation
ENISA identifies system and operating system vulnerabilities as a key contributor to high risk rankings in the network management domain.
Common mistakes.
- A. User provisioning vulnerabilities are primarily categorized under identity and access management risk areas, not specifically ranked as a leading contributor to network management risk by ENISA.
- B. AAA vulnerabilities relate broadly to authentication and authorization across multiple domains and are not specifically highlighted as a top-ranked network management vulnerability in ENISA's framework.
- D. Hypervisor vulnerabilities fall under virtualization and cloud infrastructure risk categories in ENISA assessments, not the network management risk domain.
- E. Inadequate physical security is addressed as a separate physical layer risk domain in ENISA's taxonomy and is not among the primary technical vulnerabilities driving high risk in network management.
Concept tested. ENISA network management high-risk vulnerability categories
Reference. https://www.enisa.europa.eu/publications/cloud-computing-risk-assessment
Community Discussion
No community discussion yet for this question.