New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

CompTIA PenTest+ Exam PT0-003 Question # 2 Topic 1 Discussion

CompTIA PenTest+ Exam PT0-003 Question # 2 Topic 1 Discussion

PT0-003 Exam Topic 1 Question 2 Discussion:
Question #: 2
Topic #: 1

A penetration tester has found a web application that is running on a cloud virtual machine instance. Vulnerability scans show a potential SSRF for the same application URL path with an injectable parameter. Which of the following commands should the tester run to successfully test for secrets exposure exploitability?


A.

curl ?param=http://169.254.169.254/latest/meta-data/


B.

curl '?param=http://127.0.0.1/etc/passwd '


C.

curl '?param=<script>alert(1)<script>/'


D.

curl ?param=http://127.0.0.1/


Get Premium PT0-003 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.