The error message provides potentially sensitive information about the database server and table that the web application is using. An attacker could use this information to launch targeted attacks against the web application or the database server. To mitigate this issue, the error message should be modified to provide a more generic message that does not disclose any specific information about the application's database or infrastructure. Additionally, any error logs generated by the web application should be reviewed regularly to identify potential security issues and address them promptly.
Nothing indicates sql injection and the log message disclouses internal details of a system to a "standard" user. This is also in current OWASP TOP 10.
This section is not available anymore. Please use the main Exam Page.CAS-004 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
javier051977
10 months agolast_resort
10 months, 1 week agosmqzbq
11 months agoSerliop378
11 months agoBroesweelies
11 months, 1 week agoOneSaint
11 months, 4 weeks ago