Privilege Escalation

Cookies are untrusted input, however. Unless you take explicit steps to tamper-proof your cookies, a malicious user can easily manipulate the value of the returned cookie.

Headers
  ▼ General
      Remote Address: 121.232.112.200:443
      Request Method: GET
      Status Code: 200 OK
  ▶ Request Headers
  ▼ Response Headers
      Set-Cookie: session_id=142983010
      Set-Cookie: user_id=3829