New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

ECCouncil Certified Application Security Engineer (CASE) JAVA 312-96 Question # 8 Topic 1 Discussion

ECCouncil Certified Application Security Engineer (CASE) JAVA 312-96 Question # 8 Topic 1 Discussion

312-96 Exam Topic 1 Question 8 Discussion:
Question #: 8
Topic #: 1

A US-based ecommerce company has developed their website www.ec-sell.com to sell their products online. The website has a feature that allows their customer to search products based on the price. Recently, a bug bounty has discovered a security flaw in the Search page of the website, where he could see all products from the database table when he altered the website URL http://www.ec-sell.com/products.jsp?val=100 to http://www.ec-sell.com/products.jsp?val=200 OR '1'='1 -. The product.jsp page is vulnerable to


A.

Session Hijacking attack


B.

Cross Site Request Forgery attack


C.

SQL Injection attack


D.

Brute force attack


Get Premium 312-96 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.