nerdexam
EC-Council

412-79V8 · Question #58

The amount of data stored in organizational databases has increased rapidly in recent years due to the rapid advancement of information technologies. A high percentage of these data is sensitive…

The correct answer is B. LDAP Injection Attack. alonso-parada-WP.pdf( page 3 to 5)

Section 3: Attack Vectors and Mitigation

Question

The amount of data stored in organizational databases has increased rapidly in recent years due to the rapid advancement of information technologies. A high percentage of these data is sensitive, private and critical to the organizations, their clients and partners. Therefore, databases are usually installed behind internal firewalls, protected with intrusion detection mechanisms and accessed only by applications. To access a database, users have to connect to one of these applications and submit queries through them to the database. The threat to databases arises when these applications do not behave properly and construct these queries without sanitizing user inputs first. Identify the injection attack represented in the diagram below:

Exhibit

412-79V8 question #58 exhibit

Options

  • AFrame Injection Attack
  • BLDAP Injection Attack
  • CXPath Injection Attack
  • DSOAP Injection Attack

How the community answered

(22 responses)
  • A
    5% (1)
  • B
    86% (19)
  • C
    9% (2)

Explanation

alonso-parada-WP.pdf( page 3 to 5)

Topics

#LDAP injection#database attacks#injection attacks#application security

Community Discussion

No community discussion yet for this question.

Full 412-79V8 Practice