nerdexam
EC-Council

412-79V9 · Question #66

In the process of hacking a web application, attackers manipulate the HTTP requests to subvert the application authorization schemes by modifying input fields that relate to the user ID, username…

The correct answer is B. Authorization Attack. See the full explanation below for the reasoning.

Question

In the process of hacking a web application, attackers manipulate the HTTP requests to subvert the application authorization schemes by modifying input fields that relate to the user ID, username, access group, cost, file names, file identifiers, etc. They first access the web application using a low privileged account and then escalate privileges to access protected resources. What attack has been carried out?

Options

  • AXPath Injection Attack
  • BAuthorization Attack
  • CAuthentication Attack
  • DFrame Injection Attack

How the community answered

(45 responses)
  • A
    7% (3)
  • B
    82% (37)
  • C
    9% (4)
  • D
    2% (1)

Community Discussion

No community discussion yet for this question.

Full 412-79V9 Practice