Sometimes when a cross site scripting bug is found in a particular web
application, the bug tracking sites will say, "Exploitation of this issue
may enable an attacker to steal cookie-based authentication credentials from
legitimate users of the software."

How is that possible?

Ryan


____________________
BYU Unix Users Group 
http://uug.byu.edu/ 
___________________________________________________________________
List Info: http://uug.byu.edu/cgi-bin/mailman/listinfo/uug-list

Reply via email to