ExamGecko
Question list
Search
Search

Related questions











Question 451 - 312-50v12 discussion

Report
Export

Calvin, a software developer, uses a feature that helps him auto-generate the content of a web page without manual involvement and is integrated with SSI directives. This leads to a vulnerability in the developed web application as this feature accepts remote user inputs and uses them on the page.

Hackers can exploit this feature and pass malicious SSI directives as input values to perform malicious activities such as modifying and erasing server files. What is the type of injection attack Calvin's web application is susceptible to?

A.
Server-side template injection
Answers
A.
Server-side template injection
B.
Server-side JS injection
Answers
B.
Server-side JS injection
C.
CRLF injection
Answers
C.
CRLF injection
D.
Server-side includes injection
Answers
D.
Server-side includes injection
Suggested answer: D
asked 18/09/2024
Oleksandr Kondratchuk
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first