Quiz 3 Question 3 of 20

A vulnerability assessment identifies a critical CVE with CVSS 9.8 on a web server. The finding notes the vulnerability is not exploitable because a compensating firewall rule blocks access to the affected service. How should the vulnerability management team handle this?

Select an answer to reveal the explanation.

Motivation