Cisco Certified Support Technician (CCST) CybersecurityVulnerability ManagementMedium

A security analyst is conducting a vulnerability assessment of a critical database server. They are provided with administrator credentials for the server to perform a more thorough scan. What type of vulnerability scan is the analyst performing?

  1. ACredentialed scan
  2. BExternal scan
  3. CUncredentialed scan
  4. DBlack-box scan
Show answer & explanation

Correct answer: A. Credentialed scan

A credentialed scan involves providing the vulnerability scanner with legitimate authentication credentials (like administrator access) to the target system. This allows the scanner to access internal configurations, patch levels, and software versions, leading to a much more accurate and comprehensive assessment.

Why the other options are wrong

  • B. An external scan refers to scanning from outside the network, which can be credentialed or uncredentialed, but 'credentialed' specifically describes the authentication method.
  • C. An uncredentialed scan is performed without any authentication, simulating an external attacker.
  • D. A black-box scan is a type of penetration test where the tester has no prior knowledge of the internal system, not specifically a vulnerability scan type related to credentials.

Credentialed Scan

A vulnerability scan performed with valid authentication credentials to the target system, allowing for deeper inspection of internal configurations and patch levels.

  • Provides a more accurate and comprehensive vulnerability assessment.
  • Detects missing patches, misconfigurations, and software vulnerabilities.
  • Requires legitimate user accounts on target systems.

Memory trick: Credentials open more doors for deeper scans.

More Vulnerability Management questions