nerdexam
EC-Council

412-79V10 · Question #17

The penetration testing team of MrTech Inc. identified the presence of various vulnerabilities in the web application coding. They prepared a detailed report and shared it with the developers and…

The correct answer is A. Buffer overflow. See the full explanation below for the reasoning.

Question

The penetration testing team of MrTech Inc. identified the presence of various vulnerabilities in the web application coding. They prepared a detailed report and shared it with the developers and software testers of the client for immediate action and to prevent any further vulnerabilities and to implement a standard library functions. They also informed the web developers that the web application copies the data without checking whether it fits into the target buffer in the web server and the attacker exploits the application by sending malformed data. According to the findings by the penetration testing team, which type of attack was possible on the web application?

Options

  • ABuffer overflow
  • BSQL injection
  • CCross-site scripting
  • DSession hijacking

How the community answered

(30 responses)
  • A
    73% (22)
  • B
    7% (2)
  • C
    3% (1)
  • D
    17% (5)

Community Discussion

No community discussion yet for this question.

Full 412-79V10 Practice