โ† All EJPT Flashcard Decks

Vulnerability Assessment Flashcards

7 cards from real EJPT practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Vulnerability Assessment flashcards as text
  1. Which command correctly runs Nmap with the vulnerability scan scripts against a target?

    Answer: nmap --script vuln target

    The command 'nmap --script vuln target' loads all NSE scripts in the 'vuln' category to check for known vulnerabilities on the target.

  2. What type of vulnerability allows an attacker to inject OS commands through a web application input field?

    Answer: Command Injection

    Command Injection occurs when user-supplied input is passed unsanitized to a system shell, allowing attackers to execute arbitrary OS commands.

  3. During an assessment, you discover an FTP service allowing anonymous login. Why is this significant?

    Answer: It may expose sensitive files without requiring authentication

    Anonymous FTP login allows anyone to access the FTP server without credentials, potentially exposing sensitive files or allowing unauthorized uploads.

  4. What is the purpose of the Metasploit 'db_nmap' command?

    Answer: Run Nmap scans and automatically import results into the Metasploit database

    The 'db_nmap' command runs Nmap from within Metasploit and automatically stores the scan results in the Metasploit PostgreSQL database for later use.

  5. Which vulnerability class is described as 'a flaw that allows attackers to redirect users to malicious sites via a trusted application'?

    Answer: Open Redirect

    Open Redirect vulnerabilities occur when a web application accepts user-controlled input to redirect users, enabling attackers to send victims to malicious sites.

  6. A vulnerability scanner reports a finding with 'Exploit Available: Yes'. What does this indicate?

    Answer: A public working exploit exists, increasing the likelihood of attack

    When a scanner indicates an exploit is available, it means public exploit code exists (e.g., in Metasploit or Exploit-DB), significantly elevating the risk of the finding.

  7. What does 'patch management' aim to accomplish in the context of vulnerability remediation?

    Answer: Apply vendor-released fixes to close known vulnerabilities in software

    Patch management is the process of systematically applying software updates and security patches to fix known vulnerabilities identified during assessments.