Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam CS0-003 All Questions
Exam CS0-003 All Questions

View all questions & answers for the CS0-003 exam

CompTIA CySA+ CS0-003 Question # 70 Topic 8 Discussion

CS0-003 Exam Topic 8 Question 70 Discussion:
Question #: 70
Topic #: 8

A security analyst recently used Arachni to perform a vulnerability assessment of a newly developed web application. The analyst is concerned about the following output:

[+] XSS: In form input 'txtSearch' with action https://localhost/search.aspx

[-] XSS: Analyzing response #1...

[-] XSS: Analyzing response #2...

[-] XSS: Analyzing response #3...

[+] XSS: Response is tainted. Looking for proof of the vulnerability.

Which of the following is the most likely reason for this vulnerability?


A.

The developer set input validation protection on the specific field of search.aspx.


B.

The developer did not set proper cross-site scripting protections in the header.


C.

The developer did not implement default protections in the web application build.


D.

The developer did not set proper cross-site request forgery protections.


Get Premium CS0-003 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.