Questions about this topic? Sign up to ask in the talk tab.

Difference between revisions of "Cookies/Flags/Path"

From NetSec
Jump to: navigation, search
(Created page with "The Path flag specifies which sub-part of a domain may access a cookie. Very useful when hosting on free hosters such as Geocities or ISP hosts. Indeed, if http://www.geocities.c...")
 
(No difference)

Latest revision as of 06:39, 19 July 2012

The Path flag specifies which sub-part of a domain may access a cookie. Very useful when hosting on free hosters such as Geocities or ISP hosts. Indeed, if http://www.geocities.com/mysupersite sets a cookie without putting the Path=/mysupersite flag, then http://www.geocities.com/myevilsite can steal all the cookies from mysupersite, who will therefore starve. Uncool, isn't it? :(.