Question: When a customer logs in to the application, he receives the following response: HTTP / 1 . 1 3 0 2 Found Location: / home
When a customer logs in to the application, he receives the following response:
HTTP Found
Location: homeasp
SetCookie: SessId
SetCookie: UID
SetCookie: DiscountAgreed
What can you infer from the above response?
a
The response contains three cookies: session token, user identifier and discount rate.
b
The session token may be vulnerable to sequencing or other attacks
c
SetCookie: UID can potentially be leveraged to exploit access control weaknesses
d
Customers can not modify the DiscountAgreed cookie value
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
