EC-Council
312-49V9 · Question #481
Attacker uses vulnerabilities in the authentication or session management functions such as exposed accounts, session IDs, logout, password management, timeouts, remember me. secret question…
The correct answer is B. Timeout Exploitation. See the full explanation below for the reasoning.
Question
Attacker uses vulnerabilities in the authentication or session management functions such as exposed accounts, session IDs, logout, password management, timeouts, remember me. secret question, account update etc. to impersonate users, if a user simply closes the browser without logging out from sites accessed through a public computer, attacker can use the same browser later and exploit the user's privileges. Which of the following vulnerability/exploitation is referred above?
Options
- ASession ID in URLs
- BTimeout Exploitation
- CI/O exploitation
- DPassword Exploitation
How the community answered
(36 responses)- A3% (1)
- B81% (29)
- C11% (4)
- D6% (2)
Community Discussion
No community discussion yet for this question.