3.4.5 The application is published under a domain name with other applications that set or use session cookies that might override or disclose the session cookie¶
Verify that if the application is published under a domain name with other applications that set or use session cookies that might override or disclose the session cookies, set the path attribute in cookie-based session tokens using the most precise path possible. (C6)
| Level 1 | X |
| Level 2 | X |
| Level 3 | X |
| CWE | NIST |
|---|---|
| 16 | 7.1.1 |