ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 69 - CS0-003 discussion

Report
Export

A zero-day command injection vulnerability was published. A security administrator is analyzing the following logs for evidence of adversaries attempting to exploit the vulnerability:

Which of the following log entries provides evidence of the attempted exploit?

A.
Log entry 1
Answers
A.
Log entry 1
B.
Log entry 2
Answers
B.
Log entry 2
C.
Log entry 3
Answers
C.
Log entry 3
D.
Log entry 4
Answers
D.
Log entry 4
Suggested answer: D

Explanation:

Log entry 4 shows an attempt to exploit the zero-day command injection vulnerability by appending a malicious command (;cat /etc/passwd) to the end of a legitimate request (/cgi-bin/index.cgi?name=John). This command would try to read the contents of the/etc/passwdfile, which contains user account information, and could lead to further compromise of the system. The other log entries do not show any signs of command injection, as they do not contain any special characters or commands that could alter the intended behavior of the application. Official

Reference:

https://www.imperva.com/learn/application-security/command-injection/

https://www.zerodayinitiative.com/advisories/published/

asked 02/10/2024
J. Cuylits
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first