CompTIA PenTest+ PT0-003 (V3) Practice Question

During an external penetration test you discover a short-lived session token for an administrative account embedded in a public Git repository. Which of the following best explains why this finding is considered high severity?

  • Short-lived tokens are encrypted in transit and cannot be reused even if intercepted, so the impact is negligible.

  • An attacker who obtains the token before it expires can perform privileged actions without needing to provide credentials.

  • Modern browsers automatically detect and invalidate leaked session tokens, so actual exploitation is unlikely.

  • Because the token expires quickly, defenders will not be able to recover forensic evidence, making incident response impossible.

CompTIA PenTest+ PT0-003 (V3)
Reconnaissance and Enumeration
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA PenTest+ Voucher with Retake
v3 / PT0-003
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot