EC-Council
312-50V7 · Question #368
A tester has been hired to do a web application security test. The tester notices that the site is dynamic and must make use of a back end database. In order for the tester to see if SQL injection…
The correct answer is B. Single quote. See the full explanation below for the reasoning.
Question
A tester has been hired to do a web application security test. The tester notices that the site is dynamic and must make use of a back end database. In order for the tester to see if SQL injection is possible, what is the first character that the tester should use to attempt breaking a valid SQL request?
Options
- ASemicolon
- BSingle quote
- CExclamation mark
- DDouble quote
How the community answered
(67 responses)- A10% (7)
- B82% (55)
- C3% (2)
- D4% (3)
Community Discussion
No community discussion yet for this question.