CEH • Practice Test 43
Free CEH practice test — 15 questions with explanations. Set 43. No signup required.
During an assessment, a tester discovers that the web application accepts XML input and returns the parsed data. The tester submits the following payload: <!DOCTYPE foo [<!ENTITY xxe SYSTEM "file:///etc/passwd">]><root>&xxe;</root>. The response contains the contents of /etc/passwd. This vulnerability is known as:
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.