The referer field in HTTP requests can be easily modified and, as such, is not a valid means of message integrity checking.
Impact: Gain Privileges or Assume Identity
Actions, which may not be authorized otherwise, can be carried out as if they were validated by the server referred to.
c++javaHigh