Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CCSP All Questions

View all questions & answers for the CCSP exam

Exam CCSP topic 1 question 248 discussion

Actual exam question from ISC's CCSP
Question #: 248
Topic #: 1
[All CCSP Questions]

Which of the following threat types can occur when baselines are not appropriately applied or when unauthorized changes are made?

  • A. Security misconfiguration
  • B. Insecure direct object references
  • C. Unvalidated redirects and forwards
  • D. Sensitive data exposure
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️
Security misconfigurations occur when applications and systems are not properly configured or maintained in a secure manner. This can be due to a shortcoming in security baselines or configurations, unauthorized changes to system configurations, or a failure to patch and upgrade systems as the vendor releases security patches. Insecure direct object references occur when code references aspects of the infrastructure, especially internal or private systems, and an attacker can use that knowledge to glean more information about the infrastructure. Unvalidated redirects and forwards occur when an application has functions to forward users to other sites, and these functions are not properly secured to validate the data and redirect requests, allowing spoofing for malware or phishing attacks.
Sensitive data exposure occurs when an application does not use sufficient encryption and other security controls to protect sensitive application data.

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
l3087
7 months ago
security misconfiguration is vulnerability, not threat
upvoted 1 times
...
akg001
2 years, 6 months ago
Selected Answer: A
A. Security misconfiguration
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...