CompTIA
PT0-001 · Question #232
A penetration tester is assessing the security of a web form for a client and enters ";id" in one of the fields. The penetration tester observes the following response: Based on the response, which…
The correct answer is C. Command injection. https://null-byte.wonderhowto.com/how-to/find-exploits-get-root-with-linux-exploit-suggester-
Attacks and exploits
Question
A penetration tester is assessing the security of a web form for a client and enters ";id" in one of the fields. The penetration tester observes the following response:
Based on the response, which of the following vulnerabilities exists?
Options
- ASQL injection
- BSession hijacking
- CCommand injection
- DXSS/XSRF
How the community answered
(42 responses)- A2% (1)
- B2% (1)
- C88% (37)
- D7% (3)
Explanation
https://null-byte.wonderhowto.com/how-to/find-exploits-get-root-with-linux-exploit-suggester-
Topics
#command injection#web application#OS command execution#input validation
Community Discussion
No community discussion yet for this question.