Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 78 Topic 8 Discussion

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 78 Topic 8 Discussion

312-50v13 Exam Topic 8 Question 78 Discussion:
Question #: 78
Topic #: 8

A penetration tester discovers that a web application uses unsanitized user input to dynamically generate file paths. The tester identifies that the application is vulnerable to Remote File Inclusion (RFI). Which action should the tester take to exploit this vulnerability?


A.

Inject a SQL query into the input field to perform SQL injection


B.

Use directory traversal to access sensitive system files on the server


C.

Provide a URL pointing to a remote malicious script to include it in the web application


D.

Upload a malicious shell to the server and execute commands remotely


Get Premium 312-50v13 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.