Cross-Site Scripting Session Hijacking

A cross-site scripting session hijacking is the result of a hijacker locating a vulnerability on the website or web server.

In a successful cross-site scripting attack, the attacker will inject malicious code into web pages.

The malicious code will allow the hijacker to see the user’s session key in a man-in-the-middle attack and then steal the session.

