Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5Certified Technology Specialist, BIG-IP ASM (F5-CTS, BIG-IP ASM)

Domain 1Objective 1

Objective 1.01 Explain the Potential Effects of Common Attacks on Web Applications 303 Practice Questions (Page 5)

Part of the Section 1: Assess security needs and choose an appropriate ASM policy domain, which makes up ~22% of our current practice bank.

24questions here
5free pages
4concepts

Questions 21–24

  1. 21application · medium

    A security analyst is reviewing ASM logs and sees a series of requests with unusual HTTP methods (e.g., TRACE, CONNECT) being sent to a web server. The requests are not part of the application's normal functionality. Which OWASP Top Ten risk is this activity MOST likely probing for?

    Select an answer first
  2. 22foundation · easy

    Which OWASP Top Ten risk is characterized by an attacker injecting malicious SQL statements into an application's database query?

    Select an answer first
  3. 23application · medium

    A news website is defaced by an attacker who exploited a vulnerability to inject malicious content into the site's HTML. Visitors are now being redirected to a phishing site. Which OWASP Top Ten category does this attack represent, and what is the primary business impact?

    Select an answer first
  4. 24application · medium

    A company's web application allows users to upload profile pictures. An attacker uploads a file with a .jpg extension but with PHP code inside. The server executes the PHP code, giving the attacker remote control. Which ASM mechanism would have MOST effectively prevented this attack?

    Select an answer first
Finished these 4 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to 303

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “303” is a trademark of its owner, used for identification only.