GPEN Vulnerability Scanning • Set 2
GPEN Vulnerability Scanning Practice Test 2 — 15 questions with explanations. Free, no signup.
During a vulnerability scan of a web application, the scanner reports a critical SQL injection vulnerability on a login form. A manual test using a single quote in the username field returns a generic error page with no database details. The scanner's evidence shows a time-based blind SQL injection payload that caused a five-second delay. Which action should the penetration tester take next to validate the finding?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.