An application inserts into a database, the value received in the HTTP Request header "Referer". Which of the following are TRUE? (Choose two options)

Input validation must be done for all HTTP request headers.

Input validation is not needed for any HTTP request headers, as they are generated by browser and cannot be provided by users

The "Referer" header needs to be "input validated" to prevent SQL injection.

All HTTP header values can be changed/tampered using special tools like an interception proxy.

Verified Answer
Correct Option - cd

To get all Infosys Certified Associate in Cyber Security Fundamentals Exam questions Join Telegram Group https://rebrand.ly/lex-telegram-236dee

Telegram