nerdexam
CompTIACompTIA

PT0-002 · Question #3

PT0-002 Question #3: Real Exam Question with Answer & Explanation

Sign in or unlock PT0-002 to reveal the answer and full explanation for question #3. The question stem and answer options stay visible for context.

Vulnerability discovery and analysis

Question

A penetration tester has identified several newly released CVEs on a VoIP call manager. The scanning tool the tester used determined the possible presence of the CVEs based off the version number of the service. Which of the following methods would BEST support validation of the possible findings?

Options

  • AManually check the version number of the VoIP service against the CVE release
  • BTest with proof-of-concept code from an exploit database
  • CReview SIP traffic from an on-path position to look for indicators of compromise
  • DUtilize an nmap -sV scan against the service

Unlock PT0-002 to see the answer

You've previewed enough free PT0-002 questions. Unlock PT0-002 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Vulnerability validation#Proof-of-concept#Exploit testing#Vulnerability analysis
Full PT0-002 PracticeBrowse All PT0-002 Questions