Question 113 of 730 from exam SY0-601: CompTIA Security+

Question 113 of 730 from exam SY0-601: CompTIA Security+

Prev Question Next Question

Question

A systems administrator is reviewing the following information from a compromised server:

Process
LSASS
APACHE
MySQL
TFTP

DEP
YES
NO
NO
YES

Local Address
0.0.0.0.
0.0.0.0
127.0.0.1
191.168.1.10

Remote Address
10.210.100.62
10.130.210.20
127.0.0.1
10.34.221.96

Given the above information, which of the following processes was MOST likely exploited via a remote buffer overflow attack?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

A.