Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GAQM Exam CFA-001 Topic 1 Question 74 Discussion

Actual exam question for GAQM's CFA-001 exam
Question #: 74
Topic #: 1
[All CFA-001 Questions]

Attackers can manipulate variables that reference files with "dot-dot-slash (./)" sequences and their variations such as http://www.juggyDoy.corn/GET/process.php./././././././././etc/passwd.

Identify the attack referred.

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

Mitzie
6 days ago
Haha, nice try with the SQL injection option, but this is clearly about navigating the file system, not the database.
upvoted 0 times
...
Devorah
10 days ago
I'm not sure, but I think it could also be File injection.
upvoted 0 times
...
Celestina
10 days ago
Definitely directory traversal! Those dot-dot-slash sequences are a classic giveaway.
upvoted 0 times
...
Nana
14 days ago
I agree with Tommy, because the example given involves manipulating file paths.
upvoted 0 times
...
Tommy
17 days ago
I think the attack referred is Directory traversal.
upvoted 0 times
...

Save Cancel