Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

ECCouncil Certified SOC Analyst (CSA v2) 312-39 Question # 9 Topic 1 Discussion

ECCouncil Certified SOC Analyst (CSA v2) 312-39 Question # 9 Topic 1 Discussion

312-39 Exam Topic 1 Question 9 Discussion:
Question #: 9
Topic #: 1

During a routine security audit, analysts discover several web servers still use a vulnerable third-party library flagged for a zero-day exploit. The vulnerability was identified previously and patches were deployed, but the application team rolled back patches due to instability and compatibility issues. The vulnerability remains unaddressed, and no alternative mitigations are in place. How should the security team classify this risk in the context of web application security?


A.

Software and data integrity failures


B.

Security logging and monitoring failures


C.

Vulnerable and outdated components


D.

Insecure design


Get Premium 312-39 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.