Auto Login

Random irrelevance that just didn't fit into other forums. Talk about anything.

Moderator: Talkative People

User avatar
eatcomics
ES Beta Backer
ES Beta Backer
Posts: 2528
Joined: Sat Mar 08, 2008 7:52 pm
Location: Illinois

Re: Auto Login

Post by eatcomics »

dandymcgee wrote:
eatcomics wrote: I script put on said sight could send said cookie to a specified place for storage and retrieval ;)

and yeah its a security flaw....
In that case the security flaw isn't how cookies work, but rather that the site is allowing arbitrary scripts submitted by a non-trusted user (you) to execute on its behalf. It's called Cross-site scripting (XSS) and is preventable.
Right right right, but you know what I mean :P I was just saying you can get it.... and have temporary access to user's accounts
Image
Post Reply