Skip to content

Commit

Permalink
Publish Latest 2024-02-27
Browse files Browse the repository at this point in the history
Updates based on OWASP/wstg@a6c4017
  • Loading branch information
wstgbot committed Feb 27, 2024
1 parent b7fb5e3 commit f9f16a9
Showing 1 changed file with 1 addition and 1 deletion.
Original file line number Diff line number Diff line change
Expand Up @@ -195,7 +195,7 @@ startswith(), endswith(), contains(), indexOf()

### Weak SessionID

Weak Session ID has algorithm may be vulnerable to brute Force attack. For example, one site is using `MD5(Password + UserID)` as sessionID. Then, testers may guess or generate the sessionID for other users.
Weak Session ID has algorithm may be vulnerable to brute force attack. For example, one site is using `MD5(Password + UserID)` as sessionID. Then, testers may guess or generate the sessionID for other users.

## References

Expand Down

0 comments on commit f9f16a9

Please sign in to comment.