CompTIA CySA+ (CS0-003)Vulnerability ManagementEasy
A vulnerability scan report lists only open ports and service banners for a server, with no information about missing OS patches or installed software versions. Which change to the scan configuration would provide this missing detail?
- ASwitch to an agent-based scan running continuously
- BIncrease the scan's network bandwidth throttling settings
- CChange the scan to use UDP instead of TCP probes
- DConfigure the scanner with valid credentials to log into the host
Show answer & explanationAnswer & explanation
Correct answer: D. Configure the scanner with valid credentials to log into the host
A credentialed (authenticated) scan logs into the host using valid credentials, allowing it to enumerate installed software, patch levels, and configuration details that an unauthenticated scan cannot see.
Why the other options are wrong
- A. Agent-based scanning is a different deployment model, not the direct fix for missing credential-based detail.
- B. Bandwidth throttling only affects scan speed, not depth of information gathered.
- C. Protocol choice affects which ports are probed, not authentication depth.
Credentialed vs Non-Credentialed Scanning
Credentialed scans authenticate to the target to gather detailed patch/config data; non-credentialed scans only see what's visible externally.
- Credentialed scans reduce false positives
- Non-credentialed scans mimic an outside attacker's view
- Credentials must have least-privilege but sufficient read access
Memory trick: Credentials unlock the inside story.