EC-Council
EC0-350 · Question #176
EC0-350 Question #176: Real Exam Question with Answer & Explanation
Sign in or unlock EC0-350 to reveal the answer and full explanation for question #176. The question stem and answer options stay visible for context.
Question
Jeremy is web security consultant for Information Securitas. Jeremy has just been hired to perform contract work for a large state agency in Michigan. Jeremy's first task is to scan all the company's external websites. Jeremy comes upon a login page which appears to allow employees access to sensitive areas on the website. James types in the following statement in the username field: SELECT * from Users where username='admin' ?AND password='' AND email like '%@testers.com%' What will the SQL statement accomplish?
Options
- AIf the page is susceptible to SQL injection, it will look in the Users table for usernames of admin
- BThis statement will look for users with the name of admin, blank passwords, and email addresses
- CThis Select SQL statement will log James in if there are any users with NULL passwords
- DJames will be able to see if there are any default user accounts in the SQL database
Unlock EC0-350 to see the answer
You've previewed enough free EC0-350 questions. Unlock EC0-350 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.