Files
codeql/csharp/ql/src/Security Features/CookieWithOverlyBroadDomain.cs
2018-08-02 17:53:23 +01:00

12 lines
300 B
C#

class CookieWithOverlyBroadDomain
{
static public void AddCookie()
{
HttpCookie cookie1 = new HttpCookie("sessionID");
cookie1.Domain = "online-bank.com";
HttpCookie cookie2 = new HttpCookie("sessionID");
cookie2.Domain = ".ebanking.online-bank.com";
}
}