312-50v10 Certified Ethical Hacker v10 Exam

Loading demo links...

Showing 7–9 of 15 questions

Question 7

When does the Payment Card Industry Data Security Standard (PCI-DSS) require organizations to perform external and internal penetration testing?

Select an option, then click Submit answer.

  • At least twice a year or after any significant upgrade or modification

  • At least once a year and after any significant upgrade or modification

  • At least once every two years and after any significant upgrade or modification

  • At least once every three years or after any significant upgrade or modification

Question 8

The configuration allows a wired or wireless network interface controller to pass all traffic it receives to the Central Processing Unit (CPU), rather than passing only the frames that the controller is intended to receive. Which of the following is being described?

Select an option, then click Submit answer.

  • Multi-cast mode

  • Promiscuous mode

  • WEM

  • Port forwarding

Question 9

Identify the web application attack where the attackers exploit vulnerabilities in dynamically generated web pages to inject client-side script into web pages viewed by other users.

Select an option, then click Submit answer.

  • SQL injection attack

  • Cross-Site Scripting (XSS)

  • LDAP Injection attack

  • Cross-Site Request Forgery (CSRF)