Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam CAS-004 All Questions
Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

CompTIA CASP CAS-004 Question # 155 Topic 16 Discussion

CAS-004 Exam Topic 16 Question 155 Discussion:
Question #: 155
Topic #: 16

A company suspects a web server may have been infiltrated by a rival corporation. The security engineer reviews the web server logs and finds the following:

CAS-004 Question 155

The security engineer looks at the code with a developer, and they determine the log entry is created when the following line is run:

CAS-004 Question 155

Which of the following is an appropriate security control the company should implement?


A.

Restrict directory permission to read-only access.


B.

Use server-side processing to avoid XSS vulnerabilities in path input.


C.

Separate the items in the system call to prevent command injection.


D.

Parameterize a query in the path variable to prevent SQL injection.


Get Premium CAS-004 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.