CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 80: PT0-003: CompTIA PenTest+

A penetration tester has found a web application that is running on a cloud virtual machine instance. Vulnerability scans show a potential SSRF for the same application URL path with an injectable parameter. Which of the following commands should the tester run to successfully test for secrets exposure exploitabilty?

Nội dung câu hỏi

A penetration tester has found a web application that is running on a cloud virtual machine instance. Vulnerability scans show a potential SSRF for the same application URL path with an injectable parameter. Which of the following commands should the tester run to successfully test for secrets exposure exploitabilty?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. curl ?param=http://169.254.169.254/latest/meta-data/ — đáp án hiện tại
  2. B. curl ' ?param=http://127.0.0.1/etc/passwd'
  3. C. curl ' ?param= alert(1} /'
  4. D. curl ?param=http://127.0.0.1/

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề