← All EJPT Flashcard Decks

Web Application Security & Testing Flashcards

7 cards from real EJPT practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Web Application Security & Testing flashcards as text
  1. What type of attack involves an adversary tricking a user's authenticated browser into submitting an unwanted request to a web application?

    Answer: Cross-Site Request Forgery (CSRF)

    CSRF exploits the trust a web application has in the user's browser, causing it to send authenticated state-changing requests without the user's knowledge.

  2. During a black-box web assessment, you observe that the application appends user input directly to a shell command. Which vulnerability class does this represent?

    Answer: OS command injection

    OS command injection occurs when unsanitized user input is incorporated into a system command, allowing attackers to execute arbitrary OS-level commands.

  3. Which encoding technique is commonly used to obfuscate XSS payloads and bypass basic input filters?

    Answer: All of the above can be used depending on the context

    Attackers use Base64, HTML entities, URL encoding, and combinations thereof depending on where the payload is reflected and what filters are in place.

  4. What is the key difference between reflected XSS and stored XSS from an impact perspective?

    Answer: Stored XSS can attack multiple users automatically; reflected XSS requires tricking individual users into clicking a link

    Stored XSS is more dangerous at scale because every user who visits the infected page is attacked automatically, whereas reflected XSS requires delivering a crafted link to each victim.

  5. Which Burp Suite feature is best suited for discovering hidden parameters and values through automated fuzzing?

    Answer: Burp Intruder

    Burp Intruder automates customizable attack patterns against HTTP requests, making it ideal for fuzzing parameter values, discovering injection points, and brute-forcing inputs.

  6. A web application is vulnerable to XML External Entity (XXE) injection. Which of the following is a direct consequence?

    Answer: Attackers can read arbitrary files on the server or perform SSRF

    XXE allows attackers to define external entities in XML that reference local file paths or internal URLs, enabling file disclosure and server-side request forgery.

  7. What does 'security misconfiguration' refer to in the OWASP Top 10 context, as relevant to web application testing?

    Answer: Improperly configured permissions, defaults, or settings that expose the application to attack

    Security misconfiguration covers a broad category of issues including default credentials, open cloud storage, verbose error messages, unnecessary features enabled, and missing security headers.