CV0-003 · Question #920
One of the web applications in a public subnet is vulnerable to a newly discovered zero-day vulnerability. Which of the following actions can a security engineer perform to reduce the risk of exploita
The correct answer is D. Implement a virtual patch in the WAF.. A virtual patch in the Web Application Firewall (WAF) provides immediate protection against a zero-day vulnerability by filtering malicious traffic, without requiring downtime for system updates.
Question
One of the web applications in a public subnet is vulnerable to a newly discovered zero-day vulnerability. Which of the following actions can a security engineer perform to reduce the risk of exploitation and application downtime?
Options
- AStop the web server in the affected host.
- BInsert a deny rule in the host firewall.
- CAdd a new signature in the network IDS.
- DImplement a virtual patch in the WAF.
How the community answered
(25 responses)- A4% (1)
- B4% (1)
- C12% (3)
- D80% (20)
Explanation
A virtual patch in the Web Application Firewall (WAF) provides immediate protection against a zero-day vulnerability by filtering malicious traffic, without requiring downtime for system updates.
Topics
Community Discussion
No community discussion yet for this question.