nerdexam
EC-Council

412-79V10 · Question #153

In the process of hacking a web application, attackers manipulate the HTTP requests to subvert the application authorization schemes by modifying input fields and parameters that are passed to the…

The correct answer is B. Broken authentication. See the full explanation below for the reasoning.

Question

In the process of hacking a web application, attackers manipulate the HTTP requests to subvert the application authorization schemes by modifying input fields and parameters that are passed to the application. An attacker can use these flaws to first access the web application using a low privileged account and then escalate privileges to access protected resources. What attack has been carried-out?

Options

  • AXPath Injection Attack
  • BBroken authentication
  • CAuthentication Attack
  • DFrame Injection Attack

How the community answered

(50 responses)
  • A
    8% (4)
  • B
    84% (42)
  • C
    4% (2)
  • D
    4% (2)

Community Discussion

No community discussion yet for this question.

Full 412-79V10 Practice