CISSP Official Practice Tests by Mike Chapple, David Seidl

(chelsyfait) #1

Chapter 11 ■ Practice Test 3 275



  1. The IP address 201.19.7.45 is what type of address?


A. A public IP address
B. An RFC 1918 address
C. An APIPA address
D. A loopback address

7 7. Sam is a security risk analyst for an insurance company. He is currently examining a
scenario where a hacker might use a SQL injection attack to deface a web server due to a
missing patch in the company’s web application. In this scenario, what is the vulnerability?
A. Unpatched web application
B. Web defacement
C. Hacker
D. Operating system



  1. Which one of the following categories of secure data removal techniques would include
    degaussing?
    A. Clear
    B. Shrink
    C. Purge
    D. Destroy

  2. What type of alternate processing facility includes all of the hardware and data necessary
    to restore operations in a matter of minutes or seconds?
    A. Hot site
    B. Warm site
    C. Cold site
    D. Mobile site

  3. What UDP port is typically used by the syslog service?


A. 443
B. 514
C. 515
D. 445


  1. Fred finds a packet that his protocol analyzer shows with both PSH and URG set. What
    type of packet is he looking at, and what do the flags mean?
    A. A UDP packet; PSH and URG are used to indicate that the data should be sent at high
    speed
    B. A TCP packet; PSH and URG are used to clear the buffer and indicate that the data is
    urgent
    C. A TCP packet; PSH and URG are used to preset the header and indicate that the speed
    of the network is unregulated
    D. A UDP packet; PSH and URG are used to indicate that the UDP buffer should be
    cleared and that the data is urgent

Free download pdf