Q: 8
[Security Assessments and Testing]
During a vulnerability assessment, a scan reveals the following finding:
Windows Server 2016 Missing hotfix KB87728 - CVSS 3.1 Score: 8.1
[High] - Affected host 172.16.15.2
Later in the review process, the remediation team marks the finding as a false positive. Which of the
following is the best way toavoid this issue on future scans?
Options
Discussion
B but only if your scanner creds are up-to-date and have the right access! Otherwise it might still miss some stuff. Seen this trip people up on practice, pretty sure that's what flips the answer here.
Its B, seen similar on exam reports. Authenticated scans read patch info directly and avoid false positives like this.
Be respectful. No spam.