nerdexam
CompTIA

PT0-001 · Question #232

A penetration tester is assessing the security of a web form for a client and enters ";id" in one of the fields. The penetration tester observes the following response: Based on the response, which…

The correct answer is C. Command injection. https://null-byte.wonderhowto.com/how-to/find-exploits-get-root-with-linux-exploit-suggester-

Attacks and exploits

Question

A penetration tester is assessing the security of a web form for a client and enters ";id" in one of the fields. The penetration tester observes the following response:

Based on the response, which of the following vulnerabilities exists?

Options

  • ASQL injection
  • BSession hijacking
  • CCommand injection
  • DXSS/XSRF

How the community answered

(42 responses)
  • A
    2% (1)
  • B
    2% (1)
  • C
    88% (37)
  • D
    7% (3)

Explanation

https://null-byte.wonderhowto.com/how-to/find-exploits-get-root-with-linux-exploit-suggester-

Topics

#command injection#web application#OS command execution#input validation

Community Discussion

No community discussion yet for this question.

Full PT0-001 Practice