nerdexam
CompTIA

PT0-003 · Question #292

During a web application assessment, a penetration tester accesses the site unauthenticated and receives the following Set-Cookie on the first response: auth=yYKGORbrpabgr842ajbvrpbptaui42342 When the

Sign in or unlock PT0-003 to reveal the answer and full explanation for question #292. The question stem and answer options stay visible for context.

Submitted by fatima_kr· Mar 6, 2026Vulnerability discovery and analysis

Question

During a web application assessment, a penetration tester accesses the site unauthenticated and receives the following Set-Cookie on the first response:

auth=yYKGORbrpabgr842ajbvrpbptaui42342 When the tester logs in, the server sends only one Set-Cookie header, and the value is exactly the same as shown above. Which of the following vulnerabilities has the tester discovered?

Options

  • AJWT manipulation
  • BCookie poisoning
  • CSession fixation
  • DCollision attack

Unlock PT0-003 to see the answer

You've previewed enough free PT0-003 questions. Unlock PT0-003 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#web application security#session fixation#cookies#authentication vulnerabilities
Full PT0-003 Practice