nerdexam
EC-Council

EC0-350 · Question #814

Jimmy, an attacker, knows that he can take advantage of poorly designed input validation routines to create or alter SQL commands to gain access to private data or execute commands in the database…

The correct answer is D. Jimmy can utilize this particular database threat that is an SQL injection technique to penetrate a. See the full explanation below for the reasoning.

Question

Jimmy, an attacker, knows that he can take advantage of poorly designed input validation routines to create or alter SQL commands to gain access to private data or execute commands in the database. What technique does Jimmy use to compromise a database?

Options

  • AJimmy can submit user input that executes an operating system command to compromise a
  • BJimmy can gain control of system to flood the target system with requests, preventing legitimate
  • CJimmy can utilize an incorrect configuration that leads to access with higher-than expected privilege
  • DJimmy can utilize this particular database threat that is an SQL injection technique to penetrate a

How the community answered

(59 responses)
  • A
    5% (3)
  • B
    2% (1)
  • C
    8% (5)
  • D
    85% (50)

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice