Attacker, who is an authorized system user, simply changes the URL to a privileged unprotected page and gets the access of it. This happened due to :

  1. Failure to Restrict URL Access

  2. Cross Site Scripting

  3. Broken Authentication and Session Management

  4. Insufficient Transport Layer Protection


Correct Option: A

Find more quizzes: