Courseiva

CEH Server-Side Request Forgery (SSRF) Practice Question

An attacker sends a request to a web server with the following header: X-Forwarded-For: 127.0.0.1. The server processes the request as if it came from localhost and grants administrative access. This is an example of:

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Server-Side Request Forgery (SSRF)

The scenario describes spoofing the X-Forwarded-For header to bypass IP-based access controls. This is not SSRF; SSRF involves the server making outbound requests to internal resources based on user input. None of the listed options correctly identifies this attack.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    HTTP request smuggling

    Why it's wrong here

    Incorrect. HTTP request smuggling exploits discrepancies in how front-end and back-end servers parse HTTP headers to cause request misrouting, not IP spoofing via X-Forwarded-For.

  • ✗

    IDOR (Insecure Direct Object Reference)

    Why it's wrong here

    Incorrect. IDOR involves accessing unauthorized resources by manipulating direct object references (e.g., IDs, filenames), not by spoofing IP addresses via headers.

  • ✗

    Clickjacking

    Why it's wrong here

    Incorrect. Clickjacking tricks users into clicking hidden elements via transparent overlays; it does not involve header manipulation.

  • ✓

    Server-Side Request Forgery (SSRF)

    Why this is correct

    Correct. SSRF occurs when the server is tricked into making internal requests based on user-controlled input, such as the X-Forwarded-For header, which can lead to access to internal resources or administrative interfaces.

About these practice questions

This CEH question is part of Courseiva's 913-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This CEH practice question is part of Courseiva's free EC-Council certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CEH exam.