Free GAQM CPEH-001 Exam Questions

Become GAQM Certified with updated CPEH-001 exam questions and correct answers

Page:    1 / 177      
Total 881 Questions | Updated On: Aug 18, 2026
Add To Cart
Question 1

Consider the following code:
URL:http://www.certified.com/search.pl?
text=<script>alert([removed])</script>
If an attacker can trick a victim user to click a link like this, and the Web application does not validate input, then the victim's browser will pop up an alert showing the users current set of cookies. An attacker can do much more damage, including stealing passwords, resetting your home page, or redirecting the user to another Web site. What is the countermeasure against XSS scripting?


Answer: B
Question 2

A tester has been using the msadc.pl attack script to execute arbitrary commands on a Windows NT4 web server. While it is effective, the tester finds it tedious to perform extended functions. On further research, the tester come across a perl script that runs the following msadc functions:system('perl msadc.pl -h $host -C \'echo open $your >testfile\'');
Other-Image-2b59c889b-c75b-4ac0-b591-85f86c0ab8a6
Which exploit is indicated by this script?


Answer: B
Question 3

Bob was frustrated with his competitor, Brownies Inc., and decided to launch an attack that would result in serious financial losses. He planned the attack carefully and carried out the attack at the appropriate moment. Meanwhile, Trent, an administrator at Brownies Inc., realized that their main financial transaction server had been attacked. As a result of the attack, the server crashed and Trent needed to reboot the system, as no one was able to access the resources of the company. This process involves human interaction to fix it. What kind of Denial of Service attack was best illustrated in the scenario above?


Answer: C
Question 4

Use the traceroute results shown above to answer the following
Question:
Other-Image-2b59c889b-c75b-4ac0-b591-85f86c0ab8a6
The perimeter security at targetcorp.com does not permit ICMP TTL-expired packets out.


Answer: A
Question 5

While performing ping scans into a target network you get a frantic call from the organization's security team. They report that they are under a denial of service attack. When you stop your scan, the smurf attack event stops showing up on the organization's IDS monitor. How can you modify your scan to prevent triggering this event in the IDS?


Answer: B
Page:    1 / 177      
Total 881 Questions | Updated On: Aug 18, 2026
Add To Cart

© Copyrights DumpsCertify 2026. All Rights Reserved

We use cookies to ensure your best experience. So we hope you are happy to receive all cookies on the DumpsCertify.