
EC-CouncilCertified Penetration Testing Professional
Domain 3Objective 1
Web Application Penetration Testing CPENT Practice Questions (Page 2)
Part of the Web and API Penetration Testing domain, which makes up ~15% of our current practice bank.
63questions here
13free pages
16concepts
Questions 6–10
- 6
Which security principle is violated when a web application allows a low-privileged user to perform administrative functions?
Select an answer first - 7
During a CPENT engagement, you are testing a financial application that uses a custom session management mechanism. The application sets a session cookie with the attribute 'Secure; HttpOnly' but does not set the 'SameSite' attribute. You observe that the session ID remains valid for 24 hours after the user clicks 'Logout'. The application also sends the full session ID in the URL query string for a legacy report-download feature. Which combination of findings represents the most critical session management weaknesses to report?
Select an answer first - 8
A web application has a feature that fetches a URL supplied by the user and displays the content. You want to access internal metadata from the cloud environment. Which payload is most likely to succeed if the application does not validate the URL?
Select an answer first - 9
Which attack involves manipulating file paths in a download request to access files outside the web root, such as /etc/passwd?
Select an answer first - 10
A penetration tester finds that a search field reflects user input directly into the page without sanitization, and the input is executed in the user's browser. Which type of XSS vulnerability is this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.