Misconfiguration Vulnerabilities 2.3 Flashcards

1
Q

A very common misconfiguration someone might make is not putting any […] on data, leaving it open for anyone to view / modify

A

Permissions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

[…] allows an attacker to have full control over an environment. Prevent this by not having an intentionally easy-to-hack or simple password

A

Unsecure Admin Accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Best practice involves […] direct access to the admin account so that a user must go through a UAC prompt and enter the admin credentials there.

A

Disabling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Another best practice to protect administrator access is by […] how many accounts actually have admin rights

A

Limiting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

[…] create a security risk due to there being no encryption involved, all traffic is sent in the clear

A

Insecure Protocols

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

New applications and network devices usually come with a preset login, called […], which should be changed immediately upon setup

A

Default Credentials

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

It’s possible for […] to pose a risk, which can be managed using a firewall to control traffic flows

A

Open Ports and Services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly