Question 151

During a SQL update of a database, a temporary field used as part of the update sequence was modified by an attacker before the update completed in order to allow access to the system. Which of the following best describes this type of vulnerability?
  • Question 152

    A security analyst needs to improve the company's authentication policy following a password audit. Which of the following should be included in the policy? (Select two).
  • Question 153

    Visitors to a secured facility are required to check in with a photo ID and enter the facility through an access control vestibule Which of the following but describes this form of security control?
  • Question 154

    Which of the following would help ensure a security analyst is able to accurately measure the overall risk to an organization when a new vulnerability is disclosed?
  • Question 155

    During the onboarding process, an employee needs to create a password for an intranet account.
    The password must include ten characters, numbers, and letters, and two special characters.
    Once the password is created, the company will grant the employee access to other company- owned websites based on the intranet profile. Which of the following access management concepts is the company most likely using to safeguard intranet accounts and grant access to multiple sites based on a user's intranet account? (Select two).