CEH Server-Side Request Forgery (SSRF) Practice Question
An attacker sends a request to a web server with the following header: X-Forwarded-For: 127.0.0.1. The server processes the request as if it came from localhost and grants administrative access. This is an example of:
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Server-Side Request Forgery (SSRF)
The scenario describes spoofing the X-Forwarded-For header to bypass IP-based access controls. This is not SSRF; SSRF involves the server making outbound requests to internal resources based on user input. None of the listed options correctly identifies this attack.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
HTTP request smuggling
Why it's wrong here
Incorrect. HTTP request smuggling exploits discrepancies in how front-end and back-end servers parse HTTP headers to cause request misrouting, not IP spoofing via X-Forwarded-For.
- ✗
IDOR (Insecure Direct Object Reference)
Why it's wrong here
Incorrect. IDOR involves accessing unauthorized resources by manipulating direct object references (e.g., IDs, filenames), not by spoofing IP addresses via headers.
- ✗
Clickjacking
Why it's wrong here
Incorrect. Clickjacking tricks users into clicking hidden elements via transparent overlays; it does not involve header manipulation.
- ✓
Server-Side Request Forgery (SSRF)
Why this is correct
Correct. SSRF occurs when the server is tricked into making internal requests based on user-controlled input, such as the X-Forwarded-For header, which can lead to access to internal resources or administrative interfaces.
About these practice questions
This CEH question is part of Courseiva's 913-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This CEH practice question is part of Courseiva's free EC-Council certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CEH exam.