Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 350-201 Exam - Topic 3 Question 68 Discussion

A customer is using a central device to manage network devices over SNMPv2. A remote attacker caused a denial of service condition and can trigger this vulnerability by issuing a GET request for the ciscoFlashMIB OID on an affected device. Which should be disabled to resolve the issue?
C) port UDP 161 and 162
A) SNMPv2
B) TCP small services
D) UDP small services

Cisco 350-201 Exam - Topic 3 Question 68 Discussion

Actual exam question for Cisco's 350-201 exam
Question #: 68
Topic #: 3
[All 350-201 Questions]

A customer is using a central device to manage network devices over SNMPv2. A remote attacker caused a denial of service condition and can trigger this vulnerability by issuing a GET request for the ciscoFlashMIB OID on an affected device. Which should be disabled to resolve the issue?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Maynard
10 months ago
Disabling TCP small services could help too, right?
upvoted 0 times
...
Luisa
10 months ago
I thought UDP 161 was essential for SNMP?
upvoted 0 times
...
Taryn
10 months ago
Wait, are we sure that's the only fix?
upvoted 0 times
...
Noel
11 months ago
Agreed, it's the best way to prevent that attack.
upvoted 0 times
...
Emilio
11 months ago
Definitely SNMPv2 needs to be disabled.
upvoted 0 times
...
Berry
11 months ago
I have a vague memory that disabling UDP 161 and 162 could help, but I’m not confident if that’s the best option in this case.
upvoted 0 times
...
Lenita
11 months ago
I practiced a similar question where we had to disable a service to prevent DoS attacks. I think it was about SNMP too, but I can't recall the specifics.
upvoted 0 times
...
Julio
11 months ago
I'm not entirely sure, but I feel like we discussed something about UDP ports being a target for attacks. Could it be related to option C?
upvoted 0 times
...
Judy
11 months ago
I remember studying SNMP vulnerabilities, and I think disabling SNMPv2 might be the right move here.
upvoted 0 times
...
Jenise
11 months ago
I'm feeling pretty confident about this one. The best solution is to use an environment variable that is then consumed by an OSGi configuration. That way, the sensitive data is kept separate from the codebase and can be easily managed across different environments.
upvoted 0 times
...
Wendell
11 months ago
Okay, let's see. The batch file has two types of transactions, add and change, and each has two record types. I think I need to figure out how many EIs are counted for each type of transaction.
upvoted 0 times
...
Joye
11 months ago
I'm not too familiar with Oracle Service Bus, so I'm not entirely sure how to approach this. I'll try to reason through the options and see if I can identify the three proper applications.
upvoted 0 times
...
Bonita
11 months ago
I'm a bit confused on this one. Is the availability of a workaround really the most important thing? Wouldn't the customer's needs and the impact of the incident be more crucial in determining the priority?
upvoted 0 times
...
Lina
1 year ago
This is a classic case of 'the problem is not the problem, the problem is your reaction to the problem.' Disable the whole network, that'll show them!
upvoted 0 times
Christene
1 year ago
D: Let's disable UDP small services as well just to be safe.
upvoted 0 times
...
Glory
1 year ago
C: We also need to disable port UDP 161 and 162.
upvoted 0 times
...
Kerrie
1 year ago
B: But what about TCP small services?
upvoted 0 times
...
Linwood
1 year ago
A: We should disable SNMPv2 to resolve the issue.
upvoted 0 times
...
...
Shannan
1 year ago
You know, if I were the attacker, I'd probably just try to use a different OID to trigger the vulnerability. Disabling the MIB seems like a Band-Aid solution.
upvoted 0 times
...
Noah
1 year ago
I disagree. Disabling the specific ports used by SNMP, 161 and 162, would be the most targeted approach. That way, you don't have to completely disable the protocol.
upvoted 0 times
Cassie
1 year ago
Agreed, disabling the ports would be a targeted approach to address the vulnerability.
upvoted 0 times
...
Leslie
1 year ago
I think disabling the specific ports used by SNMP, 161 and 162, would be more effective.
upvoted 0 times
...
Rosalyn
1 year ago
Disabling SNMPv2 would be the best option to resolve the issue.
upvoted 0 times
...
...
Cathrine
1 year ago
I'm not sure about that. Disabling TCP small services or UDP small services might be a better option. Those could also be contributing to the problem.
upvoted 0 times
Bettyann
1 year ago
User 3: What about disabling TCP small services or UDP small services? Could that also help?
upvoted 0 times
...
Eun
1 year ago
User 2: I agree, disabling SNMPv2 could help prevent the denial of service.
upvoted 0 times
...
Paris
1 year ago
User 1: I think we should disable SNMPv2 to resolve the issue.
upvoted 0 times
...
...
Xenia
1 year ago
Hmm, I think disabling SNMPv2 would be the best way to resolve this issue. It's the root cause of the vulnerability, so that's the logical solution.
upvoted 0 times
Annice
1 year ago
User 2: Yeah, that's the root cause of the vulnerability.
upvoted 0 times
...
Ceola
1 year ago
User 1: I agree, disabling SNMPv2 is the way to go.
upvoted 0 times
...
...
Mila
1 year ago
I'm not sure, but I think SNMPv2 should also be disabled to prevent further attacks.
upvoted 0 times
...
Truman
1 year ago
I agree with Denny, disabling those ports should resolve the issue.
upvoted 0 times
...
Denny
1 year ago
I think the answer is C) port UDP 161 and 162.
upvoted 0 times
...

Save Cancel