GAQM
CPEH-001 · Question #231
A company's Web development team has become aware of a certain type of security vulnerability in their Web software. To mitigate the possibility of this vulnerability being exploited, the team wants…
The correct answer is A. Cross-site scripting vulnerability. See the full explanation below for the reasoning.
Question
A company's Web development team has become aware of a certain type of security vulnerability in their Web software. To mitigate the possibility of this vulnerability being exploited, the team wants to modify the software requirements to disallow users from entering HTML as input into their Web application. What kind of Web application vulnerability likely exists in their software?
Options
- ACross-site scripting vulnerability
- BSession management vulnerability
- CSQL injection vulnerability
- DCross-site Request Forgery vulnerability
How the community answered
(41 responses)- A83% (34)
- B10% (4)
- C5% (2)
- D2% (1)
Community Discussion
No community discussion yet for this question.