Results 1 to 2 of 2
Thread: session hijacking
- 05-03-2010, 12:02 PM #1
Member
- Join Date
- May 2010
- Posts
- 1
- Rep Power
- 0
session hijacking
In our application we have 3 layers/managers. Each of them having different roles. According to there role Each of them have some different as well as common priveleges.
But due to same session variable name they can access each others privelegs by session hijacking .
Please suggest to avoid this session hijacking
- 05-04-2010, 10:34 AM #2
Moderator
- Join Date
- Apr 2009
- Posts
- 10,438
- Rep Power
- 16
Similar Threads
-
How to Kill session at application context level by using session Id
By Kishore.Kumar in forum Java ServletReplies: 1Last Post: 04-21-2009, 11:20 PM -
session
By jhen in forum Java ServletReplies: 5Last Post: 03-16-2009, 04:44 PM -
[SOLVED] Access to default session deniedAccess to default session denied
By jazz2k8 in forum NetworkingReplies: 1Last Post: 03-10-2009, 01:12 PM -
How do I create session for a user when S/he login and expire the session.
By dpk_vash in forum Web FrameworksReplies: 2Last Post: 12-23-2008, 06:35 PM -
session
By jm_it04 in forum AWT / SwingReplies: 0Last Post: 03-04-2008, 11:32 AM


LinkBack URL
About LinkBacks
Reply With Quote

Bookmarks