
EC-CouncilCertified Application Security Engineer (.NET)
Domain 3Objective 4
Input Validation for MVC CASENET Practice Questions (Page 2)
Part of the Secure Coding: Input Validation domain, which makes up ~11% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~6–9 in this domain), expect 2–2 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)
52questions here
11free pages
15concepts
Questions 6–10
- 6
Which HTML helper is used to generate an anti-forgery token in an MVC form?
Select an answer first - 7
Which attribute is used to specify a server-side action for remote validation?
Select an answer first - 8
In an ASP.NET MVC application, what is the primary purpose of client-side validation?
Select an answer first - 9
In the MVC pattern, what is the primary role of input validation?
Select an answer first - 10
An MVC application has a view that displays user-generated content. The content is stored in a database and can contain HTML formatting. The developer needs to prevent stored XSS while allowing safe HTML formatting like bold and italic. The current implementation uses @Html.Raw(Model.Content). Which change is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CASENET” is a trademark of its owner, used for identification only.