CompTIA PenTest+ PT0-003 (V3) Practice Question

During an internal engagement, a vulnerability scan identifies critical issues on four different hosts:

  • HR-SQL01 (Windows Server 2022) - production payroll database; CVSS 9.8 (CVE-2024-3910)
  • LAB-WS19 (Windows Server 2019) - isolated lab server; CVSS 10.0 (CVE-2022-2452)
  • LegacyBackupSrv - end-of-life FreeBSD 11 backup server; CVSS 8.6 (CVE-2019-5600)
  • WebDev-Container01 - Docker host for staging web apps; CVSS 9.4 (CVE-2023-4103)

The rules of engagement allow you to exploit only two additional hosts. According to best-practice target prioritization, which single factor should carry the most weight when deciding which host to attack next?

  • It lists the highest CVSS score of the remaining vulnerabilities.

  • The host provides a daily-used business function essential to payroll processing.

  • Its software version appeared in an exploit database update last year.

  • It is running an operating system that is no longer supported.

CompTIA PenTest+ PT0-003 (V3)
Attacks and Exploits
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA PenTest+ Voucher with Retake
v3 / PT0-003
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot