What does Nikto scan for on web servers?

Boost your skills for the EC-Council Certified Ethical Hacker v13 Exam. Use flashcards and multiple choice questions to prepare effectively. Each question includes hints and explanations. Get exam-ready now!

Multiple Choice

What does Nikto scan for on web servers?

Explanation:
Nikto is a web server vulnerability scanner. Its purpose is to identify security issues that sit on the web server and its web-facing components. It scans for dangerous files and CGI scripts, outdated server software, and a wide range of misconfigurations and other security problems that attackers could exploit. Because of that focus, it looks at items like known vulnerable software versions, default or backup files, insecure server configurations, and exposed CGI scripts, rather than at DNS settings, open ports, or client-side file permissions. That’s why the best description of what Nikto scans for is dangerous files/CGIs, outdated server software, and other security issues.

Nikto is a web server vulnerability scanner. Its purpose is to identify security issues that sit on the web server and its web-facing components. It scans for dangerous files and CGI scripts, outdated server software, and a wide range of misconfigurations and other security problems that attackers could exploit. Because of that focus, it looks at items like known vulnerable software versions, default or backup files, insecure server configurations, and exposed CGI scripts, rather than at DNS settings, open ports, or client-side file permissions. That’s why the best description of what Nikto scans for is dangerous files/CGIs, outdated server software, and other security issues.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy