CompTIA
SY0-501 · Question #47
Although a web enabled application appears to only allow letters in the comment field of a web form, malicious user was able to carry a SQL injection attack by sending special characters through the w
Sign in or unlock SY0-501 to reveal the answer and full explanation for question #47. The question stem and answer options stay visible for context.
Submitted by jaden.t· Mar 4, 2026Threats, vulnerabilities, and mitigations
Question
Although a web enabled application appears to only allow letters in the comment field of a web form, malicious user was able to carry a SQL injection attack by sending special characters through the web comment field. Which of the following has the application programmer failed to implement?
Options
- ARevision control system
- BClient side exception handling
- CServer side validation
- DServer hardening
Unlock SY0-501 to see the answer
You've previewed enough free SY0-501 questions. Unlock SY0-501 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#SQL injection#server-side validation#input validation#web application security