Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC GCCC Exam - Topic 10 Question 89 Discussion

An attacker is able to successfully access a web application as root using ' or 1 = 1 . as the password. The successful accessindicates a failure of what process?
A) Input Validation
B) Output Sanitization
C) URL Encoding
D) Account Management

GIAC GCCC Exam - Topic 10 Question 89 Discussion

Actual exam question for GIAC's GCCC exam
Question #: 89
Topic #: 10
[All GCCC Questions]

An attacker is able to successfully access a web application as root using ' or 1 = 1 . as the password. The successful access

indicates a failure of what process?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Sherman
3 days ago
I think it's Input Validation too. No checks on user input.
upvoted 0 times
...
Venita
8 days ago
Agreed, ' or 1 = 1 is classic SQL injection.
upvoted 0 times
...
Lonna
13 days ago
This is definitely about Input Validation.
upvoted 0 times
...
Luisa
19 days ago
Output Sanitization could also be a factor here.
upvoted 0 times
...
Christoper
24 days ago
I think it's more about Account Management, honestly.
upvoted 0 times
...
Caitlin
29 days ago
Wait, can you really log in like that? Sounds sketchy.
upvoted 0 times
...
Norah
1 month ago
Totally agree, how did they not catch that?
upvoted 0 times
...
Ciara
1 month ago
That's definitely a failure of Input Validation.
upvoted 0 times
...
Rebbecca
1 month ago
I guess it could also relate to account management, but it seems more like a failure in how inputs are handled.
upvoted 0 times
...
Bulah
2 months ago
This question feels familiar; I think we practiced a similar one where input validation was the key issue.
upvoted 0 times
...
Eva
2 months ago
I'm not entirely sure, but I remember something about output sanitization being important for preventing these kinds of attacks too.
upvoted 0 times
...
Xochitl
2 months ago
I think this might be related to input validation since the attacker used a SQL injection technique.
upvoted 0 times
...

Save Cancel