Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam GCIH topic 1 question 622 discussion

Actual exam question from GIAC's GCIH
Question #: 622
Topic #: 1
[All GCIH Questions]

An attacker is launching an attack against an input field in a form that is used to retrieve restricted information that is filtered dependent upon the privileges of the logged in user. This attacker inserts "' or 1=1;--" into this field. What is most likely the attacker's desired result from this insertion?

  • A. This forces a bypass on the back-end authentication mechanism, allowing total access to the entire database
  • B. This forces a TRUE condition and may cause the SQL server to return all of the information in the selected field(s)
  • C. This forces a UNION condition and may cause the SQL server to return a list of all columns in the database
  • D. This forces an INSERT condition and will dump all rows in the table to the users screen
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
847ch0n3
2 months, 2 weeks ago
Selected Answer: B
It is B, true condition
upvoted 1 times
...
Raj8933
7 months, 1 week ago
Answer should be B
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...