CompTIA PenTest+ PT0-003 (V3) Practice Question

During an internal engagement, a penetration tester reviews a vulnerability-scan report for the legacy Windows file server 10.10.15.20. The scanner flags SMBv1 and notes that anonymous authentication (NULL session) is enabled. Probe details include:

  • tcp/445 open Microsoft Windows 7/2008 R2 SMB (v1 enabled)
  • Share enumeration (anonymous): HR, Public, Finance

Using rpcclient -U "" -N 10.10.15.20, the tester successfully runs netshareenumall. The rules of engagement permit read-only validation of data exposure but prohibit privilege escalation. Which NEXT action would BEST confirm whether sensitive information is accessible because of this misconfiguration?

  • Attempt an internal DNS zone-transfer (AXFR) to gather additional host records.

  • Run Hydra to brute-force common passwords against each enumerated share.

  • Use smbclient -N //10.10.15.20/Finance, download a representative file, and inspect its contents.

  • Replay a captured NTLM hash with CrackMapExec to obtain an interactive shell on 10.10.15.20.

CompTIA PenTest+ PT0-003 (V3)
Attacks and Exploits
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA PenTest+ Voucher with Retake
v3 / PT0-003
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot