“http://www.MyPersonalBank/Account?

Posted by: Pdfprep Category: 312-50v9 Tags: , ,

While using your bank’s online servicing you notice the following string in the URL bar:

“http://www.MyPersonalBank/Account?

Id=368940911028389&Damount=10980&Camount=21” You observe that if you modify the Damount & Camount values and submit the request, that data on the web page reflect the changes.

What type of vulnerability is present on this site?
A . SQL injection
B . XSS Reflection
C . Web Parameter Tampering
D . Cookie Tampering

Answer: C

Leave a Reply

Your email address will not be published.