A weekly vulnerability scan of the city's permitting API hosts reports several outdated application libraries. Which vulnerability-management activity does that report represent?
Select an answer to reveal the explanation.
Short Explanation
The weekly scan is the neighborhood watch spotting cracked windows—it finds the outdated libraries. Finding them is identification; fixing, accepting, or proving them gone comes later.
Full Explanation
Identification is the vulnerability-management phase that discovers weaknesses on in-scope assets, such as outdated libraries reported by a scan. Remediation addresses findings, assessment prioritizes them, and verification confirms closure after changes. A discovery report alone does not patch, accept risk, or prove CVEs are gone.