nerdexam
GAQM

CPEH-001 · Question #985

Which of the following web vulnerabilities would an attacker be attempting to exploit if they delivered the following input? <!DOCTYPE blah [ < IENTITY trustme SYSTEM "file:///etc/passwd" > ] >

The correct answer is A. XXE. See the full explanation below for the reasoning.

Question

Which of the following web vulnerabilities would an attacker be attempting to exploit if they delivered the following input? <!DOCTYPE blah [ < IENTITY trustme SYSTEM "file:///etc/passwd" > ] >

Options

  • AXXE
  • BSQLi
  • CIDOR
  • DXXS

How the community answered

(55 responses)
  • A
    82% (45)
  • B
    5% (3)
  • C
    2% (1)
  • D
    11% (6)

Community Discussion

No community discussion yet for this question.

Full CPEH-001 Practice