Answer:
An attacker can exploit session fixation by tricking users into using a predetermined session ID set by the attacker.
An attacker can exploit session fixation by tricking users into using a predetermined session ID set by the attacker.
You may be interested in:
Web Security MCQs