Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 91 Topic 10 Discussion

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 91 Topic 10 Discussion

312-50v13 Exam Topic 10 Question 91 Discussion:
Question #: 91
Topic #: 10

A penetration tester suspects that a web application ' s product search feature is vulnerable to SQL injection. The tester needs to confirm this by manipulating the SQL query. What is the best technique to test for SQL injection?


A.

Inject a malicious script into the search field to test for Cross-Site Scripting (XSS)


B.

Use directory traversal syntax in the search field to access server files


C.

Input 1 OR 1=1 in the search field to retrieve all products from the database


D.

Insert admin ' — in the search field to attempt bypassing authentication


Get Premium 312-50v13 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.