cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1112
Views
5
Helpful
1
Replies

Bug CSCuc23836

d_jones01
Level 1
Level 1

Does anyone know if this bug allows the cookies to be altered in any way?

1 Reply 1

It allows the cookies if successfully stolen via an XSS attack to be possibly viewed.  Cisco should support the Http Only flag, but they have not put a fix in for this and don't appear to have any plans to do so.