312-50 exam dumps

312-50 practice question 122 of 473

Certified Ethical Hacker (CEH). Associate level, EC-Council. Free question with the correct answer and a full explanation.

312-50 Question 122

Single answer▪ Vulnerability Assessment Tools

A security consultant is performing an internal vulnerability assessment for a company that has asked for minimal disruption to production systems. The consultant needs to identify missing patches, weak configurations, and known CVEs across Windows and Linux servers, while generating a report that maps findings to industry standards for remediation tracking. Which tool is the most appropriate choice for this task?

  1. A

    Nessus

  2. B

    Wireshark

  3. C

    John the Ripper

  4. D

    Hydra

Show answer and explanation

Correct answer: A

Explanation

This scenario describes a classic authenticated vulnerability assessment use case: identifying known vulnerabilities, patch gaps, and configuration weaknesses across mixed operating systems with minimal impact on production systems. In CEH contexts, tools such as Nessus are commonly associated with vulnerability assessment because they are designed to safely enumerate exposures using signature-based checks, plugin feeds, and optional credentialed scans. Credentialed scanning is especially valuable because it improves accuracy for patch and configuration auditing while reducing false positives compared with simple network-only probing. By contrast, Wireshark is for traffic analysis, John the Ripper is for password auditing, and Hydra is for online password attacks. Industry practice and vendor documentation for vulnerability scanners emphasize using authenticated scans where permitted, scheduling scans carefully in production, and mapping findings to references such as CVE and CVSS to support remediation and risk prioritization.

  • A. Correct.

    Correct. Nessus is a widely used vulnerability assessment scanner designed to identify missing patches, insecure configurations, and known vulnerabilities across multiple platforms, including Windows and Linux. It supports authenticated and unauthenticated scanning and can produce structured reports that map findings to references such as CVE, CVSS, and often compliance-related standards. This makes it well suited for enterprise vulnerability assessments where remediation tracking and minimal disruption are important.

  • B. Incorrect.

    Incorrect. Wireshark is a packet capture and protocol analysis tool, not a vulnerability assessment platform. Although it can help investigate suspicious traffic or validate whether a service is communicating insecurely, it does not perform broad host-based vulnerability enumeration, patch auditing, or standardized vulnerability reporting in the way a scanner like Nessus does.

  • C. Incorrect.

    Incorrect. John the Ripper is primarily a password auditing and cracking tool. It is useful for testing password strength when hashes are available, but it does not scan systems for missing patches, insecure services, or configuration weaknesses across an enterprise environment.

  • D. Incorrect.

    Incorrect. Hydra is a network logon cracker used to test username and password combinations against remote services such as SSH, FTP, RDP, and HTTP forms. While it may help validate weak authentication controls, it is not intended to perform comprehensive vulnerability assessments or produce patch and configuration audit reports.

Timed practice exam

Take a 312-50 practice test under exam conditions

125 questions in 240 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam