nerdexam
EC-Council

312-39 · Question #147

John, a SOC analyst, while monitoring and analyzing Apache web server logs, identified an event log matching Regex /(\.|(%|%25)2E)(\.|(%|%25)2E)(\/|(%|%25)2F|\\|(%|%25)5C)/i. What does this event log

Sign in or unlock 312-39 to reveal the answer and full explanation for question #147. The question stem and answer options stay visible for context.

Security Incident Detection

Question

John, a SOC analyst, while monitoring and analyzing Apache web server logs, identified an event log matching Regex /(.|(%|%25)2E)(.|(%|%25)2E)(/|(%|%25)2F|\|(%|%25)5C)/i. What does this event log indicate?

Options

  • AXSS Attack
  • BSQL injection Attack
  • CDirectory Traversal Attack
  • DParameter Tampering Attack

Unlock 312-39 to see the answer

You've previewed enough free 312-39 questions. Unlock 312-39 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#directory traversal#web server logs#regex detection#Apache logs
Full 312-39 Practice