Ofcourse it doesn't work properly! It's a very good thing that the cookie is accessed through the same site (including subdomain) only.

For example if I have http://test.virtualave.net and Microsoft has http://microsoft.virtualave.net , you want Microsoft to get my password because they're both subdomains of virtualave.net?