<?xml version="1.0" encoding='utf-8'?>
<!DOCTYPE wml PUBLIC "-//WAPFORUM//DTD WML 1.1//EN" "http://www.wapforum.org/DTD/wml_1.1.xml">
<wml>
<card id="card1" title="Session ID - Page 3 - Wikipedia">
<p>
<a accesskey="1" href="page.php?w=Session_ID&amp;p=2">1.Previous</a><br />
<a accesskey="3" href="page.php?w=Session_ID&amp;p=4">3.Next</a>
</p>
<p>It is different from a user ID in that sessions are typically short-lived (they expire after a preset time of inactivity which may be minutes or hours) and may become invalid after a certain goal has been met (for example, once the buyer has finalized their order, they cannot use the same session ID to add more items).</p>

<p>As session IDs are often used to identify a user that has logged into a website, they can be used by an attacker to <a href="page.php?w=Session_hijacking">hijack the session</a> and obtain potential privileges. A session</p><p>
<a accesskey="1" href="page.php?w=Session_ID&amp;p=2">1.Previous</a><br />
<a accesskey="3" href="page.php?w=Session_ID&amp;p=4">3.Next</a>
</p>

<do type="prev" label="Search">
        <go href="search.wml"/>
</do>

</card>
</wml>
