
EC-CouncilCertified Penetration Testing Professional
Domain 3Objective 1
Web Application Penetration Testing CPENT Practice Questions (Page 3)
Part of the Web and API Penetration Testing domain, which makes up ~15% of our current practice bank.
63questions here
13free pages
16concepts
Questions 11–15
- 11
A web application uses a JWT-based authentication system. The JWT is stored in a cookie without the HttpOnly flag. You discover that the JWT does not have an expiration time. Which combination of findings represents the most critical security issues?
Select an answer first - 12
You are testing a banking application. The 'transfer funds' endpoint accepts a POST request with 'amount' and 'toAccount' parameters. The application does not use anti-CSRF tokens. You also notice that the application reflects the 'amount' parameter in the response without encoding. Which attack would be most effective to demonstrate the CSRF vulnerability?
Select an answer first - 13
Which of the following is a common target for business logic testing?
Select an answer first - 14
During authentication testing, a penetration tester notices that the application accepts a session ID provided in the URL query string and does not regenerate it after login. Which vulnerability is most likely present?
Select an answer first - 15
You are testing a web application that allows users to fetch a URL and display its content. The application does not validate or block internal IP addresses. You craft a request to 'http://169.254.169.254/latest/meta-data/' and successfully retrieve the cloud instance metadata. Which vulnerability is present, and what is the most effective remediation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.