A CVE in a key back-end component of an application has been disclosed. The systems administrator is identifying all of the systems in the environment that are susceptible to this risk. Which of the following should the systems administrator perform?
Choose an answer
Tap an option to check your answer.
Correct answer: Vulnerability scan.
Why this is the answer
A vulnerability scan is the most appropriate action because it actively identifies known vulnerabilities, such as a disclosed CVE, across systems. This helps the administrator pinpoint exactly which systems are affected by the specific back-end component vulnerability. Packet capture analyzes network traffic, which is useful for troubleshooting or intrusion detection, but not for identifying system vulnerabilities. Metadata analysis examines data about data, which wouldn't directly reveal system-level vulnerabilities. Automated reporting is a function of many security tools, but it's the result of an action like a scan, not the action itself for identifying vulnerabilities.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed