Free OffSec OSWA Exam Questions

Become OffSec Certified with updated OSWA exam questions and correct answers

Page:    1 / 36      
Total 180 Questions | Updated On: Aug 18, 2026
Add To Cart
Question 1

A healthcare portal blocks standard CSRF submissions, but accepts GET requests with sensitive parameters. You need to trick a logged-in doctor into issuing a prescription refill.Which payload works best?


Answer: C
Question 2

You find:POST /upload{"filename":"invoice.pdf","path":"/users/123/docs/"}Which exploitation demonstrates maximum impact?


Answer: A
Question 3

You find:POST /upload{"filename":"invoice.pdf","path":"/users/123/docs/"}Which exploitation demonstrates maximum impact?


Answer: A
Question 4

You gain SELECT access via SQLi on MySQL. You want SUPER privileges.What technique applies?


Answer: D
Question 5

During a penetration test, you find a reflected XSS in a GET parameter ?q=. The web app sets a HttpOnly session cookie. Which of the following BEST allows you to hijack the victim’s authenticated session?


Answer: B
Page:    1 / 36      
Total 180 Questions | Updated On: Aug 18, 2026
Add To Cart

© Copyrights DumpsCertify 2026. All Rights Reserved

We use cookies to ensure your best experience. So we hope you are happy to receive all cookies on the DumpsCertify.