
漏洞修复:Cookie Security: HTTPOnly not Set on Application Cookie_cookie secure 缺失漏洞-CSDN博客

文章浏览阅读3.6k次。描述The web application does not utilize HTTP only cookies. This is a new security feature introduced by Microsoft in IE 6 SP1 to mitigate the possibility of a successful Cross-Site scripting attack by not allowing cookies with the HTTP only attribute to be_cookie secure 缺失漏洞