EC-Council
312-50V7 · Question #124
312-50V7 Question #124: Real Exam Question with Answer & Explanation
Sign in or unlock 312-50V7 to reveal the answer and full explanation for question #124. The question stem and answer options stay visible for context.
Question
Jeremy is web security consultant for Information Securitas. Jeremy has just been hired to perform contract work for a large state agency in Michigan. Jeremy's first task is to scan all the company's external websites. Jeremy comes upon a login page which appears to allow employees access to sensitive areas on the website. James types in the following statement in the username field: SELECT * from Users where username='admin' ?AND password='' AND email like '%@testers.com%' What will the SQL statement accomplish?
Options
- AIf the page is susceptible to SQL injection, it will look in the Users table for usernames of admin
- BThis statement will look for users with the name of admin, blank passwords, and email addresses that
- CThis Select SQL statement will log James in if there are any users with NULL passwords
- DJames will be able to see if there are any default user accounts in the SQL database
Unlock 312-50V7 to see the answer
You've previewed enough free 312-50V7 questions. Unlock 312-50V7 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.