- Home
- All questions
- Question 159
CompTIA Security+ study material · question 159 of 611
Which two findings fall under security misconfiguration? Choose two.
Show the answer
Answer: B. Default accounts left enabled
C. Verbose error pages exposed in production
Misconfiguration is a flaw of omission. Concatenated SQL is injection and a static session identifier is an authentication failure.
Source: OWASP Top 10 (OWASP) — OWASP Top Ten › Security Misconfiguration