GAQM Certified Ethical Hacker (CEH) CEH-001 Question # 40 Topic 5 Discussion

GAQM Certified Ethical Hacker (CEH) CEH-001 Question # 40 Topic 5 Discussion

CEH-001 Exam Topic 5 Question 40 Discussion:
Question #: 40
Topic #: 5

During a penetration test, a tester finds that the web application being analyzed is vulnerable to Cross Site Scripting (XSS). Which of the following conditions must be met to exploit this vulnerability?


A.

The web application does not have the secure flag set.


B.

The session cookies do not have the HttpOnly flag set.


C.

The victim user should not have an endpoint security solution.


D.

The victim's browser must have ActiveX technology enabled.


Get Premium CEH-001 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.