CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 55: PT0-003: CompTIA PenTest+

SIMULATION -A penetration tester is using a test account within an application to discover any vulnerabilities within the change email function. During testing, the penetration tester discovers the application is vulnerable to an attack that would allow for the tester to change a user’s email address wile logged in. T…

Nội dung câu hỏi

SIMULATION -A penetration tester is using a test account within an application to discover any vulnerabilities within the change email function. During testing, the penetration tester discovers the application is vulnerable to an attack that would allow for the tester to change a user’s email address wile logged in. The user's account would be disabled after three unsuccessful login attempts. INSTRUCTIONS -Part 1 -Examine the two HTTP requests in which the penetration tester was successful in changing the test email address within the application and identify the type of attack that has most likely exploited the vulnerability. Part 2 -Use the drop-down menus to select elements to represent the malicious HTTP request that will accomplish the desired exploit. If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Minh họa câu hỏi Minh họa câu hỏi

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Lựa chọn A bằng hình ảnh — đáp án hiện tạiLựa chọn A

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề