Multiple Choice
Which of the following vulnerabilities are MOST likely to be false positives when reported by an automated scanner on a static HTML web page? (Choose two.)
A) Missing secure flag for a sensitive cookie
B) Reflected cross-site scripting
C) Enabled directory listing
D) Insecure HTTP methods allowed
E) Unencrypted transfer of sensitive data
F) Command injection
G) Disclosure of internal system information
H) Support of weak cipher suites
Correct Answer:

Verified
Correct Answer:
Verified
Q148: In which of the following scenarios would
Q149: Which of the following can be used
Q150: A penetration tester has successfully deployed an
Q151: A client's systems administrator requests a copy
Q152: A consultant is attempting to harvest credentials
Q154: A penetration tester is preparing to conduct
Q155: A penetration tester successfully exploits a DMZ
Q156: The following command is run on a
Q157: A penetration tester discovers an anonymous FTP
Q158: Which of the following BEST describes some