Sometimes when a cross site scripting bug is found in a particular web application, the bug tracking sites will say, "Exploitation of this issue may enable an attacker to steal cookie-based authentication credentials from legitimate users of the software."
How is that possible? Ryan ____________________ BYU Unix Users Group http://uug.byu.edu/ ___________________________________________________________________ List Info: http://uug.byu.edu/cgi-bin/mailman/listinfo/uug-list
