Skip to content

Commit

Permalink
Update 27-code_example--Session_cookies_(domain)--.md
Browse files Browse the repository at this point in the history
Fix
  • Loading branch information
blabla1337 committed May 17, 2015
1 parent efe76cd commit 47549fc
Showing 1 changed file with 1 addition and 1 deletion.
Expand Up @@ -4,7 +4,7 @@ Session cookies (domain)
**Example:**

/*
Setting the Domain attribute to a too permissive value, such as example.com
Setting the "Domain" attribute to a too permissive value, such as "example.com"
allows an attacker to launch attacks on the session IDs between different hosts and
web applications belonging to the same domain, known as cross-subdomain cookies.
For example, vulnerabilities in www.example.com might allow an attacker to get access
Expand Down

0 comments on commit 47549fc

Please sign in to comment.