🔥 3-day streak
Cisco CCNA Cybersecurity (200-201 CCNACBR)42 / 145
Question 42 of 145
While reviewing a PCAP in Wireshark, an analyst follows an HTTP stream and sees the following request line: GET /download.php?file=../../../../etc/passwd HTTP/1.1 followed by a 200 OK response containing lines beginning with root:x:0:0. Interpreting the URI field in the request header, which intrusion is most likely occurring?
Reviewed for accuracy · Report an issueNext question