ECCouncil Certified Application Security Engineer (CASE) JAVA 312-96 Question # 3 Topic 1 Discussion

ECCouncil Certified Application Security Engineer (CASE) JAVA 312-96 Question # 3 Topic 1 Discussion

312-96 Exam Topic 1 Question 3 Discussion:
Question #: 3
Topic #: 1

Thomas is not skilled in secure coding. He neither underwent secure coding training nor is aware of the consequences of insecure coding. One day, he wrote code as shown in the following screenshot. He passed 'false' parameter to setHttpOnly() method that may result in the existence of a certain type of vulnerability. Identify the attack that could exploit the vulnerability in the above case.

312-96 Question 3


A.

Denial-of-Service attack


B.

Client-Side Scripts Attack


C.

SQL Injection Attack


D.

Directory Traversal Attack


Get Premium 312-96 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.