ExamGecko
Home Home / ISC / CISSP
Question list
Search
Search

Question 809 - CISSP discussion

Report
Export

Which of the following is the BEST definition of Cross-Site Request Forgery (CSRF)?

A.
An attack which forces an end user to execute unwanted actions on a web application in which they are currently authenticated
Answers
A.
An attack which forces an end user to execute unwanted actions on a web application in which they are currently authenticated
B.
An attack that injects a script into a web page to execute a privileged command
Answers
B.
An attack that injects a script into a web page to execute a privileged command
C.
An attack that makes an illegal request across security zones and thereby forges itself into the security database of the system
Answers
C.
An attack that makes an illegal request across security zones and thereby forges itself into the security database of the system
D.
An attack that forges a false Structure Query Language (SQL) command across systems
Answers
D.
An attack that forges a false Structure Query Language (SQL) command across systems
Suggested answer: A

Explanation:

Reference: https://portswigger.net/web-security/csrf

asked 18/09/2024
Alois Braid
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first