Free CompTIA Security+ SY0-701 Practice Question

You are conducting a penetration test on a web application recently purchased by the HR department of your employer. You find that when creating a new user account in the Web UI you can delete data from the database by entering '; DROP TABLE Users' into the field for the user account. What type of vulnerability have you discovered?

  • Request forgery

  • Drop database vulnerability

  • XML Injection

  • SQL injection

This question's topic:
CompTIA Security+ SY0-701 / 
Security Program Management and Oversight
Your Score:

Check or uncheck an objective to set which questions you will receive.