EC-Council
312-50V7 · Question #389
Jimmy, an attacker, knows that he can take advantage of poorly designed input validation routines to create or alter SQL commands to gain access to private data or execute commands in the database…
The correct answer is D. Jimmy can utilize this particular database threat that is an SQL injection technique to penetrate a target system. See the full explanation below for the reasoning.
Question
Jimmy, an attacker, knows that he can take advantage of poorly designed input validation routines to create or alter SQL commands to gain access to private data or execute commands in the database. What technique does Jimmy use to compromise a database?
Options
- AJimmy can submit user input that executes an operating system command to compromise a target system
- BJimmy can gain control of system to flood the target system with requests, preventing legitimate users
- CJimmy can utilize an incorrect configuration that leads to access with higher-than expected privilege of
- DJimmy can utilize this particular database threat that is an SQL injection technique to penetrate a target system
How the community answered
(43 responses)- A7% (3)
- B16% (7)
- C5% (2)
- D72% (31)
Community Discussion
No community discussion yet for this question.