CEH • Practice Test 49
Free CEH practice test — 15 questions with explanations. Set 49. No signup required.
A web application allows users to view documents by specifying a filename in the URL, e.g., /getDocument?file=report.pdf. A tester changes the file parameter to '../../etc/passwd' and retrieves the system password file. Which vulnerability is being exploited?