Exam Details

  • Exam Code
    :312-50V10
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :747 Q&As
  • Last Updated
    :Apr 14, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-50V10 Questions & Answers

  • Question 681:

    Identify the web application attack where the attackers exploit vulnerabilities in dynamically generated web pages to inject client-side script into web pages viewed by other users.

    A. SQL injection attack

    B. Cross-Site Scripting (XSS)

    C. LDAP Injection attack

    D. Cross-Site Request Forgery (CSRF)

  • Question 682:

    Cross-site request forgery involves:

    A. A request sent by a malicious user from a browser to a server

    B. Modification of a request by a proxy between client and server

    C. A browser making a request to a server without the user's knowledge

    D. A server making a request to another server without the user's knowledge

  • Question 683:

    When a security analyst prepares for the formal security assessment - what of the following should be done in order to determine inconsistencies in the secure assets database and verify that system is compliant to the minimum security baseline?

    A. Data items and vulnerability scanning

    B. Interviewing employees and network engineers

    C. Reviewing the firewalls configuration

    D. Source code review

  • Question 684:

    What type of vulnerability/attack is it when the malicious person forces the user's browser to send an authenticated request to a server?

    A. Cross-site request forgery

    B. Cross-site scripting

    C. Session hijacking

    D. Server side request forgery

  • Question 685:

    Firewalls are the software or hardware systems that are able to control and monitor the traffic coming in and out the target network based on pre-defined set of rules.

    Which of the following types of firewalls can protect against SQL injection attacks?

    A. Data-driven firewall

    B. Stateful firewall

    C. Packet firewall

    D. Web application firewall

  • Question 686:

    Which of the following attacks exploits web age vulnerabilities that allow an attacker to force an unsuspecting user's browser to send malicious requests they did not intend?

    A. Command Injection Attacks

    B. File Injection Attack

    C. Cross-Site Request Forgery (CSRF)

    D. Hidden Field Manipulation Attack

  • Question 687:

    A hacker named Jack is trying to compromise a bank's computer system. He needs to know the operating system of that computer to launch further attacks.

    What process would help him?

    A. Banner Grabbing

    B. IDLE/IPID Scanning

    C. SSDP Scanning

    D. UDP Scanning

  • Question 688:

    Which of the following types of jailbreaking allows user-level access but does not allow iboot-level access?

    A. Bootrom Exploit

    B. iBoot Exploit

    C. Sandbox Exploit

    D. Userland Exploit

  • Question 689:

    Why should the security analyst disable/remove unnecessary ISAPI filters?

    A. To defend against social engineering attacks

    B. To defend against webserver attacks

    C. To defend against jailbreaking

    D. To defend against wireless attacks

  • Question 690:

    During the process of encryption and decryption, what keys are shared?

    During the process of encryption and decryption, what keys are shared?

    A. Private keys

    B. User passwords

    C. Public keys

    D. Public and private keys

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.