security:xss_cross-site_scripting
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
security:xss_cross-site_scripting [2020/04/15 08:46] – peter | security:xss_cross-site_scripting [2020/07/15 09:30] (current) – external edit 127.0.0.1 | ||
---|---|---|---|
Line 13: | Line 13: | ||
Because it thinks the script came from a trusted source, the malicious script can access any cookies, session tokens, or other sensitive information retained by the browser and used with that site. | Because it thinks the script came from a trusted source, the malicious script can access any cookies, session tokens, or other sensitive information retained by the browser and used with that site. | ||
- | These scripts can even rewrite the content of the HTML page. For more details on the different types of XSS flaws, see: Types of [[https:// | + | These scripts can even rewrite the content of the HTML page. |
---- | ---- | ||
Line 24: | Line 24: | ||
---- | ---- | ||
+ | |||
+ | ===== References ===== | ||
+ | |||
+ | |||
+ | For more details on the different types of XSS flaws, see: Types of [[https:// |
security/xss_cross-site_scripting.1586940407.txt.gz · Last modified: 2020/07/15 09:30 (external edit)