GAQM
CPEH-001 · Question #1001
CPEH-001 Question #1001: Real Exam Question with Answer & Explanation
The correct answer is B. Improper use of CORS. See the full explanation below for the reasoning.
Question
Ron, a security professional, was pen testing web applications and SaaS platforms used by his company. While testing, he found a vulnerability that allows hackers to gain unauthorized access to API objects and perform actions such as view, update, and delete sensitive data of the company. What is the API vulnerability revealed in the above scenario?
Options
- ACode injections
- BImproper use of CORS
- CNo ABAC validation
- DBusiness logic flaws
Community Discussion
No community discussion yet for this question.