Courseiva
Vulnerability Management →mediumMultiple Choice

CS0-003 Vulnerability Management Practice Question

A security analyst is configuring a vulnerability scan using OpenVAS. The scan should identify missing patches on Windows servers. Which of the following scan types should the analyst select?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Credentialed scan

OpenVAS uses authenticated scans to check for missing patches. Unauthenticated scans only detect open ports and services. A credentialed scan with valid credentials allows checking patch levels.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Credentialed scan

    Why this is correct

    Credentialed scans utilize valid administrative or user credentials to authenticate directly to the target system. This allows the scanner to query the local registry, inspect the file system, and query package managers to verify the exact patch levels and configuration settings. Consequently, this approach provides the most accurate assessment with minimal false positives.

  • ✗

    Passive scan

    Why it's wrong here

    Passive scanning relies on sniffing network traffic and analyzing packet headers or payloads to identify active hosts, operating systems, and running services. Because it does not actively interact with the target host's internal operating system files or registry, it cannot verify whether specific software patches or hotfixes have been applied.

  • ✗

    Unauthenticated scan

    Why it's wrong here

    Unauthenticated scans probe the target from an external perspective, identifying open ports and analyzing service banners. While this method is excellent for mapping the external attack surface and finding exposed vulnerabilities, it lacks the system-level access required to inspect local patch registries or internal configuration files.

  • ✗

    Port scan

    Why it's wrong here

    Port scanning is a preliminary reconnaissance technique designed to discover active hosts and determine which TCP or UDP ports are open, closed, or filtered. It does not perform vulnerability assessment checks or evaluate the patch status of the underlying services, making it insufficient for comprehensive patch management verification.

About these practice questions

One of 701 original CS0-004 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This CS0-004 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CS0-004 exam.