N10-005 · Question #440
An administrator would like to search for network vulnerabilities on servers, routers, and embedded appliances. Which of the following tools would MOST likely accomplish this?
The correct answer is D. Nessus. Nessus is a dedicated vulnerability scanner capable of actively probing servers, routers, and embedded appliances for known security weaknesses across a wide range of device types.
Question
An administrator would like to search for network vulnerabilities on servers, routers, and embedded appliances. Which of the following tools would MOST likely accomplish this?
Options
- ABaseline analyzer
- BPing
- CProtocol analyzer
- DNessus
How the community answered
(50 responses)- A8% (4)
- B4% (2)
- C2% (1)
- D86% (43)
Why each option
Nessus is a dedicated vulnerability scanner capable of actively probing servers, routers, and embedded appliances for known security weaknesses across a wide range of device types.
A baseline analyzer compares the current state of a system against a known-good benchmark - it identifies deviations from a baseline rather than actively probing for specific vulnerabilities.
Ping uses ICMP echo requests to test basic Layer 3 reachability and round-trip latency - it provides no vulnerability information about the target.
A protocol analyzer (such as Wireshark) captures and decodes network traffic passively - it does not actively probe devices to identify security vulnerabilities.
Nessus, developed by Tenable, is an industry-standard vulnerability assessment tool that uses a large plugin database to scan for misconfigurations, missing patches, and known CVEs across servers, network devices, and embedded systems. It performs credentialed and uncredentialed scans, making it the appropriate tool for comprehensive network vulnerability discovery.
Concept tested: Vulnerability scanning with Nessus
Source: https://docs.tenable.com/nessus/Content/GettingStarted.htm
Topics
Community Discussion
No community discussion yet for this question.