The SecOps Group CAP Question Answer
After purchasing an item on an e-commerce website, a user can view his order details by visiting the URL:
https://example.com/order_id=53870
A security researcher pointed out that by manipulating the order_id value in the URL, a user can view arbitrary orders and sensitive information associated with that order_id.
Which of the following is correct?
The SecOps Group CAP Summary
- Vendor: The SecOps Group
- Product: CAP
- Update on: Aug 4, 2025
- Questions: 60