Performing CyberOps Using Cisco Security Technologies (CBRCOR) — Question 89
A customer is using a central device to manage network devices over SNMPv2. A remote attacker caused a denial of service condition and can trigger this vulnerability by issuing a GET request for the ciscoFlashMIB OID on an affected device. Which should be disabled to resolve the issue?
Answer options
- A. SNMPv2
- B. TCP small services
- C. port UDP 161 and 162
- D. UDP small services
Correct answer: A
Explanation
Disabling SNMPv2 is essential because it is directly related to the vulnerability that allows the denial of service attack by the remote attacker. The other options, while they may involve network services, do not specifically address the issue stemming from the SNMPv2 protocol itself.