nerdexam
EC-Council

EC0-350 · Question #389

During a penetration test, a tester finds a target that is running MS SQL 2000 with default credentials. The tester assumes that the service is running with Local System account. How can this…

The correct answer is D. Invoking the stored procedure xp_cmdshell to spawn a Windows command shell. See the full explanation below for the reasoning.

Question

During a penetration test, a tester finds a target that is running MS SQL 2000 with default credentials. The tester assumes that the service is running with Local System account. How can this weakness be exploited to access the system?

Options

  • AUsing the Metasploit psexec module setting the SA / Admin credential
  • BInvoking the stored procedure xp_shell to spawn a Windows command shell
  • CInvoking the stored procedure cmd_shell to spawn a Windows command shell
  • DInvoking the stored procedure xp_cmdshell to spawn a Windows command shell

How the community answered

(50 responses)
  • A
    8% (4)
  • B
    4% (2)
  • C
    16% (8)
  • D
    72% (36)

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice