nerdexam
CompTIA

PT0-002 · Question #15

A penetration tester is looking for a vulnerability that enables attackers to open doors via a specialized TCP service that is used for a physical access control system. The service exists on more tha

Sign in or unlock PT0-002 to reveal the answer and full explanation for question #15. The question stem and answer options stay visible for context.

Vulnerability discovery and analysis

Question

A penetration tester is looking for a vulnerability that enables attackers to open doors via a specialized TCP service that is used for a physical access control system. The service exists on more than 100 different hosts, so the tester would like to automate the assessment. Identification requires the penetration tester to:

Have a full TCP connection Send a "hello" payload Walt for a response Send a string of characters longer than 16 bytes Which of the following approaches would BEST support the objective?

Options

  • ARun nmap -Pn -sV -script vuln <IP address>.
  • BEmploy an OpenVAS simple scan against the TCP port of the host.
  • CCreate a script in the Lua language and use it with NSE.
  • DPerform a credentialed scan with Nessus.

Unlock PT0-002 to see the answer

You've previewed enough free PT0-002 questions. Unlock PT0-002 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Nmap Scripting Engine#Custom Vulnerability Scripting#Protocol Interaction#Automated Discovery
Full PT0-002 Practice