Free CEH-001 Exam Braindumps (page: 85)

Page 84 of 220

Which NMAP feature can a tester implement or adjust while scanning for open ports to avoid detection by the network's IDS?

  1. Timing options to slow the speed that the port scan is conducted
  2. Fingerprinting to identify which operating systems are running on the network
  3. ICMP ping sweep to determine which hosts on the network are not available
  4. Traceroute to control the path of the packets sent during the scan

Answer(s): A



Windows file servers commonly hold sensitive files, databases, passwords and more. Which of the following choices would be a common vulnerability that usually exposes them?

  1. Cross-site scripting
  2. SQL injection
  3. Missing patches
  4. CRLF injection

Answer(s): C



Which type of access control is used on a router or firewall to limit network activity?

  1. Mandatory
  2. Discretionary
  3. Rule-based
  4. Role-based

Answer(s): C



Which NMAP command combination would let a tester scan every TCP port from a class C network that is blocking ICMP with fingerprinting and service detection?

  1. NMAP -PN -A -O -sS 192.168.2.0/24
  2. NMAP -P0 -A -O -p1-65535 192.168.0/24
  3. NMAP -P0 -A -sT -p0-65535 192.168.0/16
  4. NMAP -PN -O -sS -p 1-1024 192.168.0/8

Answer(s): B






Post your Comments and Discuss GAQM CEH-001 exam with other Community members:

CEH-001 Exam Discussions & Posts