PrepAway - Latest Free Exam Questions & Answers

What is this called?

John has been granted standard user access to an ecommerce portal. After logging in. he has access to administrative privileges. What is this called?

PrepAway - Latest Free Exam Questions & Answers

A.
Privilege Escalation

B.
Hacking

C.
SQL Injection

D.
A rootkit

Explanation:
Whenever a user has (accidentally or on purpose) more privileges than assigned, that is called privilege escalation. Privilege escalation is the act of exploiting a bug or design flaw in a software application to gain access to resources, which normally would have been protected, from an application or user. The result is that the application performs actions with more privileges than intended by the application developer or system administrator.

Answer option D is incorrect. A rootkit is software that takes control of the systems root.

Answer option C is incorrect. SQL injection is a method of getting into a website by using SQL commands injected into the website.

Answer option B is incorrect. In this case, this was accidental. The user did not purposefully hack into the system.


Leave a Reply