nerdexam
CompTIA

CS0-003 · Question #186

A company receives a penetration test report summary from a third party. The report summary indicates a proxy has some patches that need to be applied. The proxy is sitting in a rack and is not…

The correct answer is B. Decomission the proxy. The best practice that the company should follow with this proxy is to decommission the proxy. Decommissioning the proxy involves removing or disposing of the proxy from the rack and the network, as well as deleting or wiping any data or configuration on the proxy…

Submitted by cyberguy42· Mar 6, 2026Vulnerability Management

Question

A company receives a penetration test report summary from a third party. The report summary indicates a proxy has some patches that need to be applied. The proxy is sitting in a rack and is not being used, as the company has replaced it with a new one. The CVE score of the vulnerability on the proxy is a 9.8. Which of the following best practices should the company follow with this proxy?

Options

  • ALeave the proxy as is.
  • BDecomission the proxy.
  • CMigrate the proxy to the cloud.
  • DPatch the proxy.

How the community answered

(55 responses)
  • A
    5% (3)
  • B
    67% (37)
  • C
    16% (9)
  • D
    11% (6)

Explanation

The best practice that the company should follow with this proxy is to decommission the proxy. Decommissioning the proxy involves removing or disposing of the proxy from the rack and the network, as well as deleting or wiping any data or configuration on the proxy. Decommissioning the proxy can help eliminate the vulnerability on the proxy, as well as reduce the attack surface, complexity, or cost of maintaining the network. Decommissioning the proxy can also free up space or resources for other devices or systems that are in use or needed by the company.

Topics

#Vulnerability management#Asset decommissioning#Risk assessment#Patch management

Community Discussion

No community discussion yet for this question.

Full CS0-003 Practice