- Home
- All questions
- Question 464
CompTIA Security+ study material · question 464 of 611
What does cross-site scripting give the attacker access to?
Show the answer
Answer: A. Whatever the site's origin can reach in the victim's browser
The script runs under the site's origin, so it inherits that origin's access to cookies, storage and the DOM.
Source: OWASP Cross Site Scripting Prevention Cheat Sheet (OWASP) — OWASP Cross Site Scripting Prevention Cheat Sheet › Introduction