(ISC)2(ISC)2
CISSP · Question #1175
CISSP Question #1175: Real Exam Question with Answer & Explanation
Sign in or unlock CISSP to reveal the answer and full explanation for question #1175. The question stem and answer options stay visible for context.
Submitted by salim_om· Mar 5, 2026Communication and Network Security
Question
Which of the following is a PRIMARY security weakness in the design of Domain Name System (DNS)?
Options
- AA DNS server can be disabled in a denial-of-service (DoS) attack.
- BA DNS server does not authenticate source of information.
- CEach DNS server must hold the address of the root servers.
- DA DNS server database can be injected with falsified checksums.
Unlock CISSP to see the answer
You've previewed enough free CISSP questions. Unlock CISSP for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#DNS security#protocol vulnerabilities#source authentication