StudyToCert

All certifications / Security+ / Lessons

CompTIA Security+ SY0-701 · Domain 4: Security operations

Vulnerability scanning: credentialed, false positives, CVSS, CVE

▶ Watch the overview video

Last reviewed September 25, 2026 · Leer en español

A vulnerability is a weakness that could be exploited: missing patches, insecure configurations, default passwords, outdated software. Vulnerability scanning uses automated tools to check systems for known weaknesses and report them, so they can be fixed before attackers find them. It is a core part of vulnerability management, the ongoing cycle of identifying, analyzing, prioritizing, remediating and verifying. Security+ expects you to understand how scans are run, how to read and prioritize results, and the standard names and scores used to describe vulnerabilities.

Free account

Keep reading for free

Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 7 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.

Sign up free Log in

Study Security+ for free
A week-by-week plan with every lesson, quizzes, checkpoint tests, a practice exam and hands-on labs.
Open the Security+ study plan