EC-Council
EC0-350 · Question #835
Dan is conducting penetration testing and has found a vulnerability in a Web Application which gave him the sessionID token via a cross site scripting vulnerability. Dan wants to replay this token…
The correct answer is C. The server will send replies back to the spoofed IP address. See the full explanation below for the reasoning.
Question
Dan is conducting penetration testing and has found a vulnerability in a Web Application which gave him the sessionID token via a cross site scripting vulnerability. Dan wants to replay this token. However, the session ID manager (on the server) checks the originating IP address as well. Dan decides to spoof his IP address in order to replay the sessionID. Why do you think Dan might not be able to get an interactive session?
Options
- ADan cannot spoof his IP address over TCP network
- BThe scenario is incorrect as Dan can spoof his IP and get responses
- CThe server will send replies back to the spoofed IP address
- DDan can establish an interactive session only if he uses a NAT
How the community answered
(28 responses)- A7% (2)
- B4% (1)
- C75% (21)
- D14% (4)
Community Discussion
No community discussion yet for this question.