Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 350-701 Exam - Topic 7 Question 73 Discussion

An organization has two systems in their DMZ that have an unencrypted link between them for communication.The organization does not have a defined password policy and uses several default accounts on the systems.The application used on those systems also have not gone through stringent code reviews. Which vulnerabilitywould help an attacker brute force their way into the systems?
C) missing encryption
A) weak passwords
B) lack of input validation
D) lack of file permission

Cisco 350-701 Exam - Topic 7 Question 73 Discussion

Actual exam question for Cisco's 350-701 exam
Question #: 73
Topic #: 7
[All 350-701 Questions]

An organization has two systems in their DMZ that have an unencrypted link between them for communication.

The organization does not have a defined password policy and uses several default accounts on the systems.

The application used on those systems also have not gone through stringent code reviews. Which vulnerability

would help an attacker brute force their way into the systems?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Lorrine
9 months ago
Not so sure about that, I think missing encryption plays a bigger role.
upvoted 0 times
...
Brandon
10 months ago
Lack of input validation could be a problem too, but weak passwords are the main issue here.
upvoted 0 times
...
Blair
10 months ago
Wait, are they really not using any encryption? That's wild!
upvoted 0 times
...
Augustine
10 months ago
I agree, those default accounts are a huge risk.
upvoted 0 times
...
Andree
10 months ago
Definitely weak passwords!
upvoted 0 times
...
Sylvie
11 months ago
I think the lack of a password policy really points to weak passwords being the main vulnerability here.
upvoted 0 times
...
Samuel
11 months ago
I feel like the missing encryption is a big issue, but it seems more related to data security than directly to brute forcing.
upvoted 0 times
...
Rupert
11 months ago
I'm not entirely sure, but I think lack of input validation might lead to other types of attacks, not specifically brute force.
upvoted 0 times
...
Linn
11 months ago
I remember we talked about how weak passwords can be easily brute-forced, especially with default accounts in use.
upvoted 0 times
...
Joanna
11 months ago
This one's a bit tricky. I'm not totally sure about the right approach here. I'm thinking either option B or C could work, but I'm a little confused about the difference between them. Maybe I'll eliminate the other choices first and then decide between those two.
upvoted 0 times
...
Haydee
11 months ago
Hmm, this seems like a tricky one. I'll need to think through the network setup and the role of the firewall and route filters carefully.
upvoted 0 times
...
Teri
11 months ago
Okay, let's see. The question is asking if the underlined text is correct, and the options are suggesting alternative terms like "InPrivate Filtering" and "SmartScreen Filter". I'll need to consider each of those to determine if the original text is correct or needs to be changed.
upvoted 0 times
...
Meghan
1 year ago
I bet the IT team responsible for this setup is sweating bullets right now. This is like a buffet for hackers. C) missing encryption is the way to go!
upvoted 0 times
Zachary
1 year ago
D) lack of file permission
upvoted 0 times
...
Craig
1 year ago
C) missing encryption
upvoted 0 times
...
Pearly
1 year ago
B) lack of input validation
upvoted 0 times
...
Jerry
1 year ago
A) weak passwords
upvoted 0 times
...
Johnson
1 year ago
I hope they address these issues before it's too late.
upvoted 0 times
...
Lizbeth
1 year ago
They really need to tighten up their security measures.
upvoted 0 times
...
Mozell
1 year ago
Definitely, weak passwords would also make it easy for attackers.
upvoted 0 times
...
Erick
1 year ago
I agree, missing encryption is a huge vulnerability.
upvoted 0 times
...
...
Xenia
1 year ago
B) lack of input validation. Even if the other issues are present, proper input validation could help mitigate many attacks. Gotta cover all the bases, you know?
upvoted 0 times
...
Thurman
1 year ago
Haha, this is like a hacker's paradise! With no encryption, default accounts, and sloppy code reviews, it's like leaving the keys in the ignition and the doors unlocked. I'm going with C) missing encryption.
upvoted 0 times
...
Lucille
1 year ago
I think lack of input validation could also be a vulnerability, as it can allow attackers to inject malicious code into the systems.
upvoted 0 times
...
Lili
1 year ago
I'm going with A) weak passwords. If the organization doesn't have a password policy, chances are those default accounts have weak, easy-to-guess passwords. That's the low-hanging fruit for an attacker.
upvoted 0 times
Loreen
1 year ago
User 4: True, but if they have default accounts with weak passwords, that's a big risk.
upvoted 0 times
...
Leonor
1 year ago
User 3: Lack of input validation could also be a vulnerability.
upvoted 0 times
...
Stanton
1 year ago
User 2: Definitely, weak passwords are a common entry point for attackers.
upvoted 0 times
...
Shizue
1 year ago
User 1: A) weak passwords
upvoted 0 times
...
...
Cecil
1 year ago
I agree with Olene, weak passwords make it easier for attackers to guess and gain unauthorized access.
upvoted 0 times
...
Gilberto
1 year ago
The obvious answer is C) missing encryption. With unencrypted communication and default accounts, an attacker can easily brute-force their way in. This is like leaving the front door wide open!
upvoted 0 times
...
Olene
1 year ago
I think the vulnerability that would help an attacker brute force their way into the systems is weak passwords.
upvoted 0 times
...

Save Cancel