ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 22 - ECSS discussion

Report
Export

Melanie, a professional hacker, is attempting to break into a target network through an application server. In this process, she identified a logic flaw in the target web application that provided visibility into the source code. She exploited this vulnerability to launch further attacks on the target web application.

Which of the web application vulnerabilities was identified by Melanie in the above scenario?

A.

Insecure deserialization

Answers
A.

Insecure deserialization

B.

Security misconfiguration

Answers
B.

Security misconfiguration

C.

Command injection

Answers
C.

Command injection

D.

Broken authentication

Answers
D.

Broken authentication

Suggested answer: B

Explanation:

Melanie discovered alogic flawin the target web application that allowed her to view thesource code. This flaw indicates asecurity misconfiguration, which can lead to further attacks.Security misconfigurations occur when an application or system is not properly configured, leaving it vulnerable to exploitation.Reference: EC-Council Certified Security Specialist (E|CSS) documents and study guide12.

asked 24/10/2024
Rehan Malik
51 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first