CAP 試験問題を無料オンラインアクセス

試験コード:CAP
試験名称:Certified AppSec Practitioner Exam
認定資格:ISC
無料問題数:60
更新日:2026-09-02
評価
100%

問題 1

GraphQL is an open-source data query and manipulation language for APIs, and a query runtime engine. In this context, what is GraphQL Introspection?

問題 2

The payload {{7*7}} can be used for determining which of the following vulnerabilities?

問題 3

Which of the following Google Dorks can be used for finding directory listing on victim-app.com?

問題 4

Which is the most effective way of input validation to prevent Cross-Site Scripting attacks?

問題 5

Observe the HTTP request below and identify the vulnerability attempted.
GET /help.php?file=../../../etc/passwd HTTP/1.1
Host: example.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:107.0) Gecko/20100101 Firefox/107.0 Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,*/*;q=0.8 Accept-Language: en-GB,en;q=0.5 Accept-Encoding: gzip, deflate Upgrade-Insecure-Requests: 1 Sec-Fetch-Dest: document Sec-Fetch-Mode: navigate Sec-Fetch-Site: none Sec-Fetch-User: ?1 Cookie: JSESSIONID=38RB5ECV10785B53AF29816E92E2E50 Te: trailers Connection: keep-alive

コメントを追加

あなたのメールアドレスが公開されることはありません。個人情報に関する内容は隠されます *

insert code
画面にある文字を入力してください。