1.

Which of the following attack-based checks WebInspect cannot do?(a) cross-site scripting(b) directory traversal(c) parameter injection(d) injecting shell codeThe question was posed to me by my school principal while I was bunking the class.I'm obligated to ask this question of Popular Tools used in Security in division Cyber Laws, Security Tools, Bugs and Vulnerabilities of Cyber Security

Answer»

Right answer is (d) injecting shell code

Easy explanation: WebInspect can check whether a web server is PROPERLY configured or not by ATTEMPTING for common ATTACKS such as Cross-site scripting, directory traversal, and parameter injection. But it cannot inject malicious shell code in the server.



Discussion

No Comment Found

Related InterviewSolutions