Soru

Zorluk: OrtaHost, Network, and Architecture Vulnerabilities

A security posture assessment identified several vulnerability findings across an enterprise environment. Match each vulnerability finding on the left to its corresponding infrastructure exposure category on the right.

  • Default administrative credentials remaining enabled on network-attached security camerasEmbedded / IoT System Vulnerability
  • Transmission of cleartext management traffic using unencrypted SNMPv1Network Protocol Weakness
  • Unpatched kernel memory flaw on a legacy server operating system past its end-of-life dateHost Operating System Vulnerability
  • Permissive security group rule allowing inbound public access to a database listener portCloud Infrastructure Misconfiguration

Cevap

Default camera credentials map to Embedded / IoT System Vulnerability; SNMPv1 cleartext management traffic maps to Network Protocol Weakness; unpatched legacy kernel flaw maps to Host Operating System Vulnerability; public database security group rule maps to Cloud Infrastructure Misconfiguration.
Each vulnerability finding aligns with a specific architecture category. Factory credentials on IP cameras affect embedded IoT devices. Cleartext SNMPv1 represents an insecure legacy network protocol. Kernel vulnerabilities on unpatched operating systems target host platforms. Publicly accessible cloud security group rules represent cloud resource misconfigurations.

Adım Adım Çözüm

1
Analyze the technical layer affected by each finding.
Identify whether the issue stems from hardware/firmware, network protocols, operating system software, or virtual network policy controls.
Different vulnerabilities require distinct remediation strategies based on their architectural layer.
2
Match embedded hardware and protocol risks.
Default camera passwords map to Embedded / IoT System Vulnerability, and SNMPv1 cleartext traffic maps to Network Protocol Weakness.
IoT devices frequently suffer from default credential issues, while legacy management protocols lack transit encryption.
3
Match operating system and virtual access control risks.
Kernel bugs map to Host Operating System Vulnerability, and open port rules map to Cloud Infrastructure Misconfiguration.
Kernel patches apply directly to host OS instances, whereas security group rules govern access boundaries in cloud environments.

Anahtar Kavram

Host, Network, and Architecture Vulnerabilities
Bu soruyu puanla