Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CompTIA Exam SY0-701 Topic 1 Question 36 Discussion

Actual exam question for CompTIA's SY0-701 exam
Question #: 36
Topic #: 1
[All SY0-701 Questions]

While reviewing logs, a security administrator identifies the following code:

Which of the following best describes the vulnerability being exploited?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

Buck
47 minutes ago
You know, I bet the developers were just trying to 'send_info' in the most efficient way possible. Efficiency at its finest, amirite?
upvoted 0 times
...
Sanda
2 days ago
CSRF? Nah, that doesn't make sense. Gotta be XSS, my dude. Straight up web injection shenanigans.
upvoted 0 times
...
Leslie
5 days ago
DDoS? Really? That's a bit of a stretch, don't you think? This is clearly an XSS vulnerability.
upvoted 0 times
...
Julio
7 days ago
I think it could also be CSRF, as it involves unauthorized actions being performed on behalf of the user.
upvoted 0 times
...
Shawna
9 days ago
But the code looks like it's trying to send information, which is more characteristic of XSS.
upvoted 0 times
...
Mary
11 days ago
I disagree, I believe it's SQLi.
upvoted 0 times
...
Elizabeth
17 days ago
Hmm, I'm not sure. Could it be SQLi too? That function name seems a bit suspicious.
upvoted 0 times
Iluminada
1 days ago
User 1: It's actually XSS, not SQLi. That function could be used to inject malicious scripts.
upvoted 0 times
...
...
Shawna
18 days ago
I think the vulnerability being exploited is XSS.
upvoted 0 times
...
Goldie
28 days ago
Definitely XSS, that code looks like it's trying to run something shady in the browser.
upvoted 0 times
Vinnie
16 days ago
User 3: It's important to always sanitize user input to prevent XSS attacks.
upvoted 0 times
...
Chantell
17 days ago
User 2: XSS is a common vulnerability that attackers use to run malicious scripts.
upvoted 0 times
...
Nakisha
18 days ago
User 1: I agree, that code definitely looks like it's trying to execute something in the browser.
upvoted 0 times
...
...

Save Cancel