Once an attack is activated, everything from accounthijacking, changing of user Settings, cookie theft and poisoning, or false advertising is possible.
The threats against web applications include user accounthijacking, bypass of access control, reading or modifying sensitive data, or presenting fraudulent content.
在 受到威胁的web应用中,包括用户帐户劫持,绕开访问控制,阅读或修改敏感数据,或出示虚假的内容。
3
If you see a page displaying a cookie, then session hijacking of the user's account is possible.