Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam CS0-003 topic 1 question 1 discussion

Actual exam question from CompTIA's CS0-003
Question #: 1
Topic #: 1
[All CS0-003 Questions]

A recent zero-day vulnerability is being actively exploited, requires no user interaction or privilege escalation, and has a significant impact to confidentiality and integrity but not to availability. Which of the following CVE metrics would be most accurate for this zero-day threat?

  • A. CVSS:31/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:K/A:L
  • B. CVSS:31/AV:K/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:L
  • C. CVSS:31/AV:N/AC:L/PR:N/UI:H/S:U/C:L/I:N/A:H
  • D. CVSS:31/AV:L/AC:L/PR:R/UI:R/S:U/C:H/I:L/A:H
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
roviy18891
Highly Voted 2 months, 2 weeks ago
Selected Answer: A passed the exams 01/10/24, 90% of my questions were from here. Had 3 PBQs which was from the version 2. Passed with 810. https://rb.gy/p0a693
upvoted 38 times
fepawim315
1 week, 3 days ago
Really thanks for your suggestion. I am glad that I selected this source and get 92%. I would recommend it a 100% Thanks again
upvoted 1 times
...
truearc
1 month, 1 week ago
I took the test last week almost all except for one or two were from here. The 3/4 PBQs I got were questions 6,28,183 from 002 dump and the other was nmap scanning on command line.
upvoted 4 times
0ee8014
1 month, 1 week ago
"except for one or two were from here" what do you mean ?
upvoted 1 times
RuMMeL
1 month ago
he means there were only one or two questions from here that weren't on his exam
upvoted 1 times
RuMMeL
1 month ago
correction, one or two questions on his exam that were not in this dump lol
upvoted 1 times
0ee8014
4 weeks ago
Thank You
upvoted 1 times
...
...
...
...
...
...
cybergirl97
Highly Voted 5 months, 2 weeks ago
Very valid dump, 90% of my questions were from here. I used the 002 dump for the PBQs. I passed with 807 on 30 Nov 2023.
upvoted 13 times
LifeElevated
5 months, 1 week ago
What PBQ's did you see
upvoted 3 times
cybergirl97
4 months, 1 week ago
The first set of PBQs before you have to pay for full access, those were the ones I saw.
upvoted 2 times
...
...
Sebatian20
5 months, 1 week ago
Thank you Cybergirl - was any questions from 002 (beside the PBQ) valid for the 003 exam?
upvoted 2 times
cybergirl97
4 months, 1 week ago
Sorry for the late reply, just now seeing this. All of my questions were from here.
upvoted 3 times
...
...
...
marty_mcfly
Most Recent 1 week, 1 day ago
Just took my exam & passed. 90% off the questions from this dump. 65 Multiple Choice, 4 PBQs, 69 questions total. PBQs were from 002 dump. PBQ = 6, 28, 183 & the last was one I did not recognize where they give you Firewall Logs, Malicious IP list, Scan results, and they ask you what could have been done to harden from the kill chain while also identifying what the malicious file, malicious IP and the time it entered the organization.
upvoted 1 times
...
Brick69
1 week, 2 days ago
Just took the exam and passed. I will say I got a 60/40 split. 60 of the questions were on here. I also got a new PBQ about phishing / remediation's which is not shown on the 002 exam. Id suggest looking at the cyber kill chain to understand it, I had a good few new questions about that
upvoted 1 times
...
suribamba
2 weeks, 1 day ago
has anyone taken the exam lately that could confirm if this dump still valid?
upvoted 3 times
...
ca96
2 weeks, 3 days ago
Took the exam on the 4/26 and I'd say about 85-90% was on the test. Very good set of questions.
upvoted 4 times
...
FrankyD92
3 weeks ago
Took the test today 4/27/24. There were only a handful of questions from this, and I mean like maybe 5 that I recognized immediately and a couple that were adjacent. I'd say unfortunately it was maybe 10% of the exam for me. Sucks because I paid for the contributor access but I wouldn't say it wasn't worth it. Everyone get's a different exam so your's may have more
upvoted 1 times
FrankyD92
3 weeks ago
Forgot to mention I did pass either way. Having the knowledge is much more important than getting the cert
upvoted 1 times
...
...
DiddyKongJr
3 weeks ago
Good questions about 85% from here, especially the last 20ish, paid version definitely worth it, saw same pbqs as truearc
upvoted 1 times
...
dave_delete_me
3 weeks, 1 day ago
Great job
upvoted 1 times
...
biggydanny
3 weeks, 3 days ago
I just took the test 3 hours ago and scored 821, all the questions were from this dump, and only one question was not from this dump, it was an nmap question, 69 questions with 3 pbq's, the pbq's were question 6 on cs0-002 dump , question https://vceguide.com/simulation-686/ (help desk) and https://vceguide.com/simulation-421/, but these pbq's are on the CS0-002 dump
upvoted 4 times
...
cartman_sc
1 month ago
Selected Answer: A
Baseado no contexto do enunciado, que diz que não há interação do usuário, a única resposta possível é a letra A. "UI:N"
upvoted 1 times
...
CyberJackal
1 month, 2 weeks ago
Correct answer is A as the UI (User Interaction) criteria specifies N for none.
upvoted 1 times
...
testicaleight
2 months ago
This is what ChatGPT said when I asked it this question and then asked what "K" meant: I apologize for the oversight. In the context of CVSS (Common Vulnerability Scoring System), "K" represents "Key" and indicates a potential compromise of integrity, meaning that the integrity of the system might be compromised, but not to the extent of being completely altered or destroyed. Here's what each value of the Integrity (I) metric means: I:None (None): There is no impact on integrity. I:Low (Low): The integrity of the system can be partially modified. I:High (High): The integrity of the system can be completely compromised. I:K (Key): The integrity of the system can be compromised, but not to the extent of being completely altered or destroyed.
upvoted 2 times
...
Rumos_Ciber
3 months, 2 weeks ago
Today, i passed with 900 of 900. Thank you all for your explication of this questions. Good luck!
upvoted 3 times
fernandope_04
3 months, 2 weeks ago
were the questions from this dump on the test? or was it something different like cremeboys?
upvoted 1 times
Rumos_Ciber
3 months, 2 weeks ago
80% of the questions were from this dump
upvoted 1 times
...
...
...
cremeboy01
3 months, 3 weeks ago
so happy i passed today i saw like 40 percent of the question from this dump the rest i have to use my brain. All the PBQs are from CySA 002 the one with how many workstation was infected, the one with nmap, the one with help desk ticket and a new pbq.
upvoted 1 times
...
ussliberty
4 months, 3 weeks ago
K is not a possilbe value, yet it appears in A and B H is not a possible value for UI, yet it appears in C R is not a possible value for PR, yet it appears in D So every statement contains invalid outputs. The statement tells us the following are true. Therefore, A is the most correct answer. PR=N UI=N C=H I=H A=/=H
upvoted 4 times
...
LifeElevated
4 months, 4 weeks ago
Over 90% questions from here, PBQ’s from 002 dump were close to exactly the same. Only a few questions I didn’t recognize. Scored in the 800’s. First PBQ was about an email spreading malware, just count how many GET requests to answer how many people downloaded it, look at the process name (mailserver.exe or something). Another was the PBQ from 002 where you identify what each server is using nmap (look at the open ports utilized), last PBQ was two parts, one for identifying which app servers where out of compliance (with the reqs in the questions) regarding TLS and Apache versions. Part two of the same question was providing recommendations to change to be complaint.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...