ECCouncil Certified Application Security Engineer (CASE) JAVA 312-96 Question # 11 Topic 2 Discussion

ECCouncil Certified Application Security Engineer (CASE) JAVA 312-96 Question # 11 Topic 2 Discussion

312-96 Exam Topic 2 Question 11 Discussion:
Question #: 11
Topic #: 2

A US-based ecommerce company has developed their website www.ec-sell.com to sell their products online. The website has a feature that allows their customer to search products based on the price. Recently, a bug bounty has discovered a security flaw in the Search page of the website, where he could see all products from the database table when he altered the website URL http://www.ec-sell.com/products.jsp?val=100 to http://www.ec-sell.com/products.jsp?val=200 OR '1'='1 -. The product.jsp page is vulnerable to


A.

Session Hijacking attack


B.

Cross Site Request Forgery attack


C.

SQL Injection attack


D.

Brute force attack


Get Premium 312-96 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.