Reference no: EM133337686
Based on the CVE-2022-1040 and description of scenario below. Answer the following question; see BOTH diagrams below, Network diagram and (Risk Vulnerability Response Model). The Network diagram is the set up for scenario.
Question 1. a) Triage the vulnerabilities according to their potential impacts on the organization.
Question 1. b) Rank the vulnerabilities according to the relative risk they pose on the organization. Be sure to provide a detailed explanation to justify your answer. Many vulnerabilities found are high severity there are other factors to consider which have not been provided. Is the vulnerable system internet connected? what is likelihood of exploitation etc? Security Architecture is more about strategic thinking, planning and analysis and less about tactical reactive solutions. (SEE DIAGRAM #2 BELOW)
2. The Edge Router has the following vulnerability: CVE-2022-1040
a. The affected unit is a Sophos Firewall XGS 6500 running firmware version 18.5 MR1
b. The WAN interfaces are connected upstream to two different ISP's via 1Gbps Fiber Optic.
c. Downstream from the router there are a series of managed switches for each of the network segments (DMZ, Enterprise Users, Enterprise Services, and ICS).
d. There are Firewall rules allowing certain services and ports to traverse the Edge Router in either a North/South aka WAN/LAN direction or in an EAST/WEST aka LAN/LAN direction.
e. There is an IPS built into the Sophos Firewall XGS 6500. However, the Network Engineer who configured it is no longer with the organization and its status and configuration is unknown.