Vulnerability Assessment: Protecting Your Organisation
This test consist of question related the IT course "Vulnerability Assessment" for the IT network security. This test is useful for GATE/UGC/NET and academics students.
Questions
Which of the following is/are applicable for Common Vulnerabilities and Exposures (CVE)?
- It is used to maintain the security of the database in a shared medium.
- It provides a baseline for the security tools related to the organisation.
- It is a list or dictionary that provides common names for publicly known information security vulnerabilities and exposures.
- The MITRE Corporation maintains CVE and manages the CVE Editorial Board.
- All of the above
Which of the following is/are applicable for vulnerability assessments task?
- Finds potential exploits before crackers find them
- Creates proactive focus on information security
- Results in systems being kept up to date and patched
- Promotes growth and aids in developing staff expertise
- All of the above
What does 'CVE OUTPUT' mean in CVE-Compatibility?
- It has the information that includes the related CVE name(s).
- It acts like the repository owner and is used to provide a mapping relative to a specific version of CVE.
- A user can search using a CVE name to find related information.
- Both (1) and (2)
- Both (1) and (3)
Which of the following is known as 'Vulnerability Monitor' component in vulnerability assessment?
- It is used to identify and store the information related to vulnerabilities in the system.
- It collects the information and executes the files for the database specific to the vulnerability monitor.
- It checks the version of a started program for vulnerabilities against a special database.
- The vulnerability check is performed in the background mode and does not delay the program start.
- Both (3) and (4)
Which of the following is/are applicable for the Security of Database using CVE?
- It is based on the CVE list to identify the vulnerabilities in the database.
- CVE has some numbers, IDs and unique identifier to detect vulnerability from the database.
- Security of the database is officially compatible.
- The CVE names, which are used as references in the CVE-ID field in all Alerts Vulnerability definitions stored in the Definitions Repository.
- All of the above
Which of the following is known as 'Vulnerability Scan'?
- It is used to identify and store the information related to vulnerabilities in the system.
- It collects the information and executes the files for the database specific to the vulnerability monitor.
- It checks the version of a started program for vulnerabilities against a special database.
- The vulnerability check is performed in the background mode and does not delay the program start.
- Both (1) and (2)
Which of the following is/are correct about preventing and detecting security vulnerabilities using VPNs in Web applications?
- In this approach, all the admin functionality should be remapped onto internal IPs.
- It allows SQL tables to be dropped, commands run on SQL servers or the Web server to have privilege escalation vulnerabilities.
- This approach is used to identify the common coding errors might allow shell code to be uploaded to attack the server, or malicious files uploaded for other users.
- Both (1) and (2)
- Both (1) and (3)
Which of the following is/are correct statement (s) about 'Exploit'?
- It is a program to attack the code of the target system.
- It includes the buffer flow attacks to target the arbitrary software on the malicious web server.
- It is a weakness or flaw in a computer application or operating system that can be exploited to cause the application to operate in a manner unintended by its designers.
- All of the above
- Both (1) and (2)
Which of the following is/are correct about 'Angry IP Scanner' tool in Port Scanners?
- It is used to provide port scan for the windows.
- This tool is one of the best unix and windows based port scanners.
- It is a free Windows-only closed-source TCP/UDP port scanner by Foundstone.
- It is a fast Windows IP scanner and port scanner.
- Both (1) and (4)
Which of the following is known as 'Threat'?
- It attacks the target organisation by spreading various malicious codes.
- It includes the various spyware, malware and other malicious codes.
- It is some flaw in our environment that a malicious attacker could use to cause damage in your organisation.
- It is a tool by which an attacker uses a vulnerability to cause damage to the target system.
- Both (1) and (2)
Which of the following is/are incorrect about active fingerprinting?
- It is used for transmitting the network packets to the remote hosts.
- It allows the scanner to obtain more accurate results than a passive scanner, and in a shorter amount of time.
- This approach uses the TCP/IP protocols for transmitting the packets.
- It is the process of analysing packets from a host on a network.
- None of the above
Which of the following is/are correct about passive fingerprinting in OS fingerprinting techniques?
- It is used for transmitting the network packets to the remote hosts.
- It is the process of analysing packets from a host on a network.
- It allows the scanner to obtain more accurate results than a active scanner, and in a shorter amount of time.
- These scanners are generally and inherently less accurate than active scanners due to the fact they have less control over the data they are analysing.
- Both (2) and (4)
Which of the following is/are correct about 'Open Vulnerability Assessment System' (OpenVAS)?
- It is used to provide a network security from the targeted vulnerabilities.
- It has a server component with a set of plugins to test various vulnerabilities in remote systems and applications.
- It is a multi-threaded, multi-platform web server audit tool.
- Both (1) and (2)
- All of the above
Which of the following is called 'IP fragmentation'?
- It provides the accessibility of the overlapping fragments within time.
- It determines the bugs and inconsistencies by implementing the target system.
- These fragments are difficult to send on some operating systems.
- Both (1) and (2)
- All of the above
What is the role of ICMP fingerprinting?
- It is used to discover the network path taken by a packet to reach its destination.
- It is used to return error messages when a datagram is not processed correctly.
- It is used to determine which machines are active on the network.
- Both (1) and (2)
- All of the above