1. Cross-site scripting (reflected)
1.3. http://www.adotas.com/wp/wp-content/plugins/polls/polls-css.css [REST URL parameter 4]
1.4. http://www.adotas.com/wp/wp-content/plugins/polls/polls-js.php [REST URL parameter 4]
1.5. http://www.adotas.com/wp/wp-includes/js/tw-sack.js [REST URL parameter 3]
3.1. http://www.adotas.com/2011/08/hackers-target-facebook-over-data-collection/
3.2. http://www.adotas.com/2011/08/hackers-target-facebook-over-data-collection/
3.3. http://www.adotas.com/2011/08/netseer-pushes-concepts-not-keywords-for-contextual-targeting/
3.4. http://www.adotas.com/2011/08/netseer-pushes-concepts-not-keywords-for-contextual-targeting/
4. Cross-domain script include
4.1. http://www.adotas.com/2011/08/hackers-target-facebook-over-data-collection/
4.2. http://www.adotas.com/2011/08/netseer-pushes-concepts-not-keywords-for-contextual-targeting/
6.1. http://www.adotas.com/2011/08/hackers-target-facebook-over-data-collection/
6.2. http://www.adotas.com/2011/08/netseer-pushes-concepts-not-keywords-for-contextual-targeting/
8. Content type incorrectly stated
Severity: | High |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/hackers-target |
GET /2011/08/hackers-target Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: IN_HASH=zzzzzz%3Dyyyyy; joinadotas=joinadotas Cache-Control: max-age=0 |
HTTP/1.1 404 Not Found Date: Thu, 11 Aug 2011 20:36:10 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Thu, 11 Aug 2011 20:36:10 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 72345 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <a class="su-badge" href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/netseer-pushes |
GET /2011/08/netseer-pushes Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com X-Moz: prefetch Cookie: joinadotas=joinadotas; __utma=47048311.676888594 |
HTTP/1.1 404 Not Found Date: Thu, 11 Aug 2011 20:38:35 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Thu, 11 Aug 2011 20:38:36 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 72435 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <a class="su-badge" href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /wp/wp-content/plugins |
GET /wp/wp-content/plugins Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/css,*/*;q=0.1 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com Cookie: joinadotas=joinadotas |
HTTP/1.1 404 Not Found Date: Thu, 11 Aug 2011 20:32:34 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Thu, 11 Aug 2011 20:32:34 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 72220 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <a class="su-badge" href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /wp/wp-content/plugins |
GET /wp/wp-content/plugins Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com Cookie: joinadotas=joinadotas |
HTTP/1.1 404 Not Found Date: Thu, 11 Aug 2011 20:32:42 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Thu, 11 Aug 2011 20:32:42 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 72225 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <a class="su-badge" href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /wp/wp-includes/js/tw |
GET /wp/wp-includes/js5c8e9"><script>alert(1)< Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com Cookie: joinadotas=joinadotas |
HTTP/1.1 404 Not Found Date: Thu, 11 Aug 2011 20:32:54 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Thu, 11 Aug 2011 20:32:55 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 72175 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <a class="su-badge" href="http://www ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/hackers-target |
GET /2011/08/hackers-target Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.1330e4c<script>alert(1)< Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: IN_HASH=zzzzzz%3Dyyyyy; joinadotas=joinadotas Cache-Control: max-age=0 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:35:30 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:35:30 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84304 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... ges/default/pollbg.gif'); border: 1px solid #c8c8c8; } a.ViewResult{position .wp-polls-loading { display:none; } </style> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/netseer-pushes |
GET /2011/08/netseer-pushes Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.134fc73<script>alert(1)< Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com X-Moz: prefetch Cookie: joinadotas=joinadotas; __utma=47048311.676888594 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:37:57 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:37:57 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84672 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... ges/default/pollbg.gif'); border: 1px solid #c8c8c8; } a.ViewResult{position .wp-polls-loading { display:none; } </style> ...[SNIP]... |
Severity: | Low |
Confidence: | Tentative |
Host: | http://www.adotas.com |
Path: | /wp/wp-content/plugins |
GET /wp/wp-content/plugins Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/css,*/*;q=0.1 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com Cookie: joinadotas=joinadotas |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:29:39 GMT Server: Apache Last-Modified: Sun, 08 May 2011 09:02:57 GMT ETag: "c1205f-52c1-4a2bffd Accept-Ranges: bytes Content-Length: 21185 Cache-Control: max-age=2592000 Expires: Sat, 10 Sep 2011 20:29:39 GMT Connection: close Content-Type: text/css <?php /* +------------------------ | | | WordPress 2.1 Plugin: WP-Polls 2.20 | | Copyright (c) 2007 Lester "GaMerZ" Chan | | | | File Written By: | | - Lester "GaMerZ" Chan | | - http://www.lesterchan.net | | | | File Information: | | - Configure Poll Options | | - wp-content/plugins/polls | | +------------------------ */ ### Check Whether User Can Manage Polls if(!current_user_can( die('Access Denied'); } ### Variables Variables Variables $base_name = plugin_basename('polls $base_page = 'admin.php?page='.$base $id = intval($_GET['id']); ### If Form Is Submitted if($_POST['Submit']) { $poll_bar_style = strip_tags(trim($_POST[ $poll_bar_background = strip_tags(trim($_POST[ $poll_bar_border = strip_tags(trim($_POST[ $poll_bar_height = intval($_POST['poll_bar $poll_bar = array('style' => $poll_bar_style, 'background' => $poll_bar_background, 'border' => $poll_bar_border, 'height' => $poll_bar_height); $poll_ajax_style = array('loading' => intval($_POST['poll_ajax $poll_ans_sortby = strip_tags(trim($_POST[ $poll_ans_sortorder = strip_tags(trim($_POST[ $poll_ans_result_sortby = strip_tags(trim($_POST[ $poll_ans_result $poll_archive_perpage = intval($_POST['poll $poll_archive_displaypoll = intval($_POST['poll $poll_archive_url = strip_tags(trim($_POST[ $poll_archive_show = intval($_POST['poll $poll_currentpoll = intval($_POST['poll $poll_close = intval($_POST['poll_close $poll_logging_method = intval($_POST['poll $poll_allowtovote = intval($_POST['poll $update_poll_queries = array(); $update_poll_text = array(); $update_poll_queries[] = update_option('poll_bar', $poll_bar); $update_poll_queries[] = update_option('poll_ajax $update_poll_queries[] = update_option('poll_ans $update_poll_queries[] = update_option('poll_ans $update_poll_queries[] = update_option('poll_ans $update_poll_queries[] = update_option('poll_ans $update_poll_queries[] = update_option('poll $update_poll_queries[] = update_option('poll $update_poll_queries[] = update_option('poll $update_poll_queries[] = update_option('poll $update_poll_queries[] = update_option('poll $update_poll_queries[] = update_option('poll_close $update_poll_queries[] = update_option('poll $update_poll_queries[] = update_option('poll $update_poll_text[] = __('Poll Bar Style', 'wp-polls'); $update_poll_text[] = __('Poll AJAX Style', 'wp-polls'); $update_poll_text[] = __('Sort Poll Answers By Option', 'wp-polls'); $update_poll_text[] = __('Sort Order Of Poll Answers Option', 'wp-polls'); $update_poll_text[] = __('Sort Poll Results By Option', 'wp-polls'); $update_poll_text[] = __('Sort Order Of Poll Results Option', 'wp-polls'); $update_poll_text[] = __('Number Of Polls Per Page To Display In Poll Archive Option', 'wp-polls'); $update_poll_text[] = __('Type Of Polls To Display In Poll Archive Option', 'wp-polls'); $update_poll_text[] = __('Poll Archive URL Option', 'wp-polls'); $update_poll_text[] = __('Show Poll Achive Link Option', 'wp-polls'); $update_poll_text[] = __('Current Active Poll Option', 'wp-polls'); $update_poll_text[] = __('Poll Close Option', 'wp-polls'); $update_poll_text[] = __('Logging Method', 'wp-polls'); $update_poll_text[] = __('Allow To Vote Option', 'wp-polls'); $i=0; $text = ''; foreach($update_poll if($update_poll_query) { $text .= '<font color="green">'.$update } $i++; } if(empty($text)) { $text = '<font color="red">'.__('No Poll Option Updated', 'wp-polls').'</font>'; } wp_clear_scheduled_hook( if (!wp_next_scheduled( wp_schedule_event(time(), 'daily', 'polls_cron'); } } ?> <script type="text/javascript"> ...[SNIP]... if(pollbar_style == 'use_css') { document.getElementById( } else { document.getElementById( } } document.getElementById( document.getElementById( ...[SNIP]... </script> <?php if(!empty($text)) { echo '<!-- Last Action --><div id="message" class="updated fade"><p>'.$text.'</p>< <form id="poll_options_form" method="post" action="<?php echo $_SERVER['REQUEST_URI']; ?>"> ...[SNIP]... <h2><?php _e('Poll Options', 'wp-polls'); ?></h2> ...[SNIP]... <legend><?php _e('Poll Bar Style', 'wp-polls'); ?></legend> ...[SNIP]... <th align="left" width="20%"><?php _e('Poll Bar Style', 'wp-polls'); ?></th> <td align="left" colspan="2"> <?php $pollbar = get_option('poll_bar'); $pollbar_url = get_option('siteurl').' $pollbar_path = ABSPATH.'/wp-content if($handle = @opendir($pollbar_path)) { while (false !== ($filename = readdir($handle))) { if ($filename != '.' && $filename != '..') { if(is_dir($pollbar_path.' $pollbar_info = getimagesize($pollbar if($pollbar['style'] == $filename) { echo '<input type="radio" name="poll_bar_style" value="'.$filename.'" checked="checked" onblur="set_pollbar } else { echo '<input type="radio" name="poll_bar_style" value="'.$filename.'" onblur="set_pollbar } echo ' '; echo '<img src="'.$pollbar_url.'/'. echo ' ('. echo '<br /><br />'."\n"; } } } closedir($handle); } ?> <input type="radio" name="poll_bar_style" value="use_css"<?php checked('use_css', $pollbar['style']); ?> onblur="update_pollbar( </td> ...[SNIP]... <th align="left" width="20%"><?php _e('Poll Bar Background', 'wp-polls'); ?></th> ...[SNIP]... <input type="text" id="poll_bar_bg" name="poll_bar_bg" value="<?php echo $pollbar['background']; ?>" size="6" maxlength="6" onblur="update_pollbar( ...[SNIP]... <div id="wp-polls-pollbar-bg" style="background-color: #<?php echo $pollbar['background']; ?>;"> ...[SNIP]... <th align="left" width="20%"><?php _e('Poll Bar Border', 'wp-polls'); ?></th> ...[SNIP]... <input type="text" id="poll_bar_border" name="poll_bar_border" value="<?php echo $pollbar['border']; ?>" size="6" maxlength="6" onblur="update_pollbar( ...[SNIP]... <div id="wp-polls-pollbar ...[SNIP]... <th align="left" width="20%"><?php _e('Poll Bar Height', 'wp-polls'); ?></th> ...[SNIP]... <input type="text" id="poll_bar_height" name="poll_bar_height" value="<?php echo $pollbar['height']; ?>" size="2" maxlength="2" onblur="update_pollbar( ...[SNIP]... <th align="left" width="20%"><?php _e('Your poll bar will look like this', 'wp-polls'); ?></th> <td align="left" > <?php if($pollbar['style'] == 'use_css') { echo '<div id="wp-polls-pollbar" style="width: 100px; height: '.$pollbar['height'].'px; background-color: #'.$pollbar['background'] } else { echo '<div id="wp-polls-pollbar" style="width: 100px; height: '.$pollbar['height'].'px; background-color: #'.$pollbar['background'] } ?> </td> ...[SNIP]... </fieldset> <?php $poll_ajax_style = get_option('poll_ajax <fieldset class="options"> ...[SNIP]... <legend><?php _e('Polls AJAX Style', 'wp-polls'); ?></legend> ...[SNIP]... <th align="left" width="30%"><?php _e('Show Loading Image With Text', 'wp-polls'); ?></th> ...[SNIP]... <option value="0"<?php selected('0', $poll_ajax_style['loading <option value="1"<?php selected('1', $poll_ajax_style['loading ...[SNIP]... <th align="left" width="30%"><?php _e('Show Fading In And Fading Out Of Poll', 'wp-polls'); ?></th> ...[SNIP]... <option value="0"<?php selected('0', $poll_ajax_style['fading' <option value="1"<?php selected('1', $poll_ajax_style['fading' ...[SNIP]... <legend><?php _e('Sorting Of Poll Answers', 'wp-polls'); ?></legend> ...[SNIP]... <th align="left" width="30%"><?php _e('Sort Poll Answers By:', 'wp-polls'); ?></th> ...[SNIP]... <option value="polla_aid"<?php selected('polla_aid', get_option('poll_ans <option value="polla_answers"<?php selected('polla_answers', get_option('poll_ans ...[SNIP]... <th align="left" width="30%"><?php _e('Sort Order Of Poll Answers:', 'wp-polls'); ?></th> ...[SNIP]... <option value="asc"<?php selected('asc', get_option('poll_ans <option value="desc"<?php selected('desc', get_option('poll_ans ...[SNIP]... <legend><?php _e('Sorting Of Poll Results', 'wp-polls'); ?></legend> ...[SNIP]... <th align="left" width="30%"><?php _e('Sort Poll Results By:', 'wp-polls'); ?></th> ...[SNIP]... <option value="polla_votes"<?php selected('polla_votes', get_option('poll_ans <option value="polla_aid"<?php selected('polla_aid', get_option('poll_ans <option value="polla_answers"<?php selected('polla_answers', get_option('poll_ans ...[SNIP]... <th align="left" width="30%"><?php _e('Sort Order Of Poll Results:', 'wp-polls'); ?></th> ...[SNIP]... <option value="asc"<?php selected('asc', get_option('poll_ans <option value="desc"<?php selected('desc', get_option('poll_ans ...[SNIP]... <legend><?php _e('Allow To Vote', 'wp-polls'); ?></legend> ...[SNIP]... <th align="left" width="30%"><?php _e('Who Is Allowed To Vote?', 'wp-polls'); ?></th> ...[SNIP]... <option value="0"<?php selected('0', get_option('poll <option value="1"<?php selected('1', get_option('poll <option value="2"<?php selected('2', get_option('poll ...[SNIP]... <legend><?php _e('Logging Method', 'wp-polls'); ?></legend> ...[SNIP]... <th align="left" width="30%"><?php _e('Poll Logging Method:', 'wp-polls'); ?></th> ...[SNIP]... <option value="0"<?php selected('0', get_option('poll_logging <option value="1"<?php selected('1', get_option('poll_logging <option value="2"<?php selected('2', get_option('poll_logging <option value="3"<?php selected('3', get_option('poll_logging <option value="4"<?php selected('4', get_option('poll_logging ...[SNIP]... <legend><?php _e('Poll Archive', 'wp-polls'); ?></legend> ...[SNIP]... <th align="left" width="30%"><?php _e('Number Of Polls Per Page:', 'wp-polls'); ?></th> ...[SNIP]... <input type="text" name="poll_archive ...[SNIP]... <th align="left" width="30%"><?php _e('Type Of Polls To Display In Poll Archive:', 'wp-polls'); ?></th> ...[SNIP]... <option value="1"<?php selected('1', get_option('poll_archive <option value="2"<?php selected('2', get_option('poll_archive <option value="3"<?php selected('3', get_option('poll_archive ...[SNIP]... <th align="left" width="30%"><?php _e('Poll Archive URL:', 'wp-polls'); ?></th> ...[SNIP]... <input type="text" name="poll_archive_url" value="<?php echo get_option('poll_archive ...[SNIP]... <th align="left" width="30%"><?php _e('Display Poll Archive Link Below Poll?', 'wp-polls'); ?></th> ...[SNIP]... <option value="0"<?php selected('0', get_option('poll_archive <option value="1"<?php selected('1', get_option('poll_archive ...[SNIP]... <em><?php _e('Note: Only polls\' results will be shown in the Poll Archive regardless of whether the poll is closed or opened.', 'wp-polls'); ?></em> ...[SNIP]... <legend><?php _e('Current Active Poll', 'wp-polls'); ?></legend> ...[SNIP]... <th align="left" width="30%"><?php _e('Current Active Poll', 'wp-polls'); ?>:</th> ...[SNIP]... <option value="-1"<?php selected(-1, get_option('poll <option value="-2"<?php selected(-2, get_option('poll <option value="0"<?php selected(0, get_option('poll <?php if(function_exists( <option value="-3"<?php selected(-3, get_option('poll <?php } ?> <option value="0"> ...[SNIP]... </option> <?php $polls = $wpdb->get_results( if($polls) { foreach($polls as $poll) { $poll_question = stripslashes($poll->pollq $poll_id = intval($poll->pollq_id); if($poll_id == intval(get_option('poll echo "<option value=\"$poll_id\" selected=\"selected\"> } else { echo "<option value=\"$poll_id\">$poll } } } ?> </select> ...[SNIP]... </tr> <?php if(function_exists( <tr valign="top"> ...[SNIP]... <em><?php _e('Note: If you chose \'Display Multiple Polls\' for the above option, you need to configure it in Presentation -> Sidebar Widgets -> Poll.', 'wp-polls'); ?></em></th> </tr> <?php } ?> <tr valign="top"> ...[SNIP]... <th align="left" width="30%"><?php _e('When Poll Is Closed', 'wp-polls'); ?>:</th> ...[SNIP]... <option value="1"<?php selected(1, get_option('poll_close')) <option value="2"<?php selected(2, get_option('poll_close')) ...[SNIP]... <input type="submit" name="Submit" class="button" value="<?php _e('Update Options', 'wp-polls'); ?>" /> <input type="button" name="cancel" value="<?php _e('Cancel', 'wp-polls'); ?>" class="button" onclick="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/hackers-target |
GET /2011/08/hackers-target Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: IN_HASH=zzzzzz%3Dyyyyy; joinadotas=joinadotas Cache-Control: max-age=0 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:29:48 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:29:48 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84247 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <div> <form method=post action="http://app <input type=hidden name="fields_ajkey" value="9faa72328a"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/hackers-target |
GET /2011/08/hackers-target Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: IN_HASH=zzzzzz%3Dyyyyy; joinadotas=joinadotas Cache-Control: max-age=0 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:29:48 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:29:48 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84247 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... </div> <form method=post action="http://app <label for="subscribe"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/netseer-pushes |
GET /2011/08/netseer-pushes Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com X-Moz: prefetch Cookie: joinadotas=joinadotas; __utma=47048311.676888594 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:30:30 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:30:30 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84631 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <div> <form method=post action="http://app <input type=hidden name="fields_ajkey" value="797c2fd6df"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/netseer-pushes |
GET /2011/08/netseer-pushes Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com X-Moz: prefetch Cookie: joinadotas=joinadotas; __utma=47048311.676888594 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:30:30 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:30:30 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84631 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... </div> <form method=post action="http://app <label for="subscribe"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/hackers-target |
GET /2011/08/hackers-target Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: IN_HASH=zzzzzz%3Dyyyyy; joinadotas=joinadotas Cache-Control: max-age=0 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:29:48 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:29:48 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84247 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... </script> <script language="javascript" src="http://cache-02 ...[SNIP]... <!-- Google Plus One---> <script type="text/javascript" src="https://apis.google ...[SNIP]... <div id="top-ad"> <script language=JavaScript src="http://rotator ...[SNIP]... <br /> <script language=JavaScript src="http://rotator ...[SNIP]... </a><script src="http://static.ak ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 </script> ...[SNIP]... </script><script type="text/javascript" src="http://s7.addthis ...[SNIP]... </h6> <script language=JavaScript src="http://rotator ...[SNIP]... </a><script type="text/javascript" src="http://platform ...[SNIP]... <div class="in-share"> <script type="text/javascript" src="http://platform ...[SNIP]... <!-- social-media-module --> <script type="text/javascript" src="https://apis.google ...[SNIP]... <div id="top-of-sidebar-ad"> <script language=JavaScript src="http://rotator ...[SNIP]... <!-- Added on Oct 28 2009 --> <script type="text/javascript" src="http://jsc ...[SNIP]... <!-- Page Generated in 1.4431.443 seconds. 14--> <script src="http://www.google </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/netseer-pushes |
GET /2011/08/netseer-pushes Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com X-Moz: prefetch Cookie: joinadotas=joinadotas; __utma=47048311.676888594 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:30:30 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:30:30 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84631 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... </script> <script language="javascript" src="http://cache-02 ...[SNIP]... <!-- Google Plus One---> <script type="text/javascript" src="https://apis.google ...[SNIP]... <div id="top-ad"> <script language=JavaScript src="http://rotator ...[SNIP]... <br /> <script language=JavaScript src="http://rotator ...[SNIP]... </a><script src="http://static.ak ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 </script> ...[SNIP]... </script><script type="text/javascript" src="http://s7.addthis ...[SNIP]... </h6> <script language=JavaScript src="http://rotator ...[SNIP]... </a><script type="text/javascript" src="http://platform ...[SNIP]... <div class="in-share"> <script type="text/javascript" src="http://platform ...[SNIP]... <!-- social-media-module --> <script type="text/javascript" src="https://apis.google ...[SNIP]... <div id="top-of-sidebar-ad"> <script language=JavaScript src="http://rotator ...[SNIP]... <!-- Added on Oct 28 2009 --> <script type="text/javascript" src="http://jsc ...[SNIP]... <!-- Page Generated in 1.5621.562 seconds. 14--> <script src="http://www.google </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | / |
TRACE / HTTP/1.0 Host: www.adotas.com Cookie: 32188dab3ac8a5e8 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:29:39 GMT Server: Apache Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: www.adotas.com Cookie: 32188dab3ac8a5e8; joinadotas=joinadotas |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/hackers-target |
GET /2011/08/hackers-target Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: IN_HASH=zzzzzz%3Dyyyyy; joinadotas=joinadotas Cache-Control: max-age=0 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:29:48 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:29:48 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84247 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <area shape="default" href="mailto:partnership@adotas.com"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /2011/08/netseer-pushes |
GET /2011/08/netseer-pushes Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com X-Moz: prefetch Cookie: joinadotas=joinadotas; __utma=47048311.676888594 |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:30:30 GMT Server: Apache X-Powered-By: PHP/5.1.6 X-Pingback: http://www.adotas.com/wp Link: <http://www.adotas.com/?p Cache-Control: max-age=7200 Expires: Thu, 11 Aug 2011 22:30:30 GMT Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 84631 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- http://icontact.adota ...[SNIP]... <area shape="default" href="mailto:partnership@adotas.com"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.adotas.com |
Path: | /wp/wp-includes/js/tw |
GET /robots.txt HTTP/1.0 Host: www.adotas.com |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:29:42 GMT Server: Apache Last-Modified: Sat, 14 May 2011 02:18:19 GMT ETag: "a2304-28b-4a333092630c0" Accept-Ranges: bytes Content-Length: 651 Cache-Control: max-age=18180 Expires: Fri, 12 Aug 2011 01:32:42 GMT Connection: close Content-Type: text/plain # Exclude Files From All Robots: User-agent: * # directories Disallow: /wp Disallow: /cgi-bin Disallow: /db Disallow: /neo-mail Disallow: /newsletter* Disallow: /partyinvite Disallow: /stats Disallow ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.adotas.com |
Path: | /wp/wp-content/plugins |
GET /wp/wp-content/plugins Host: www.adotas.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/css,*/*;q=0.1 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.adotas.com Cookie: joinadotas=joinadotas |
HTTP/1.1 200 OK Date: Thu, 11 Aug 2011 20:29:39 GMT Server: Apache Last-Modified: Sun, 08 May 2011 09:02:57 GMT ETag: "c1205f-52c1-4a2bffd Accept-Ranges: bytes Content-Length: 21185 Cache-Control: max-age=2592000 Expires: Sat, 10 Sep 2011 20:29:39 GMT Connection: close Content-Type: text/css <?php /* +------------------------ | | | WordPress 2.1 Plugin: WP-Polls 2.20 | | Copyright (c) 2007 Lester "GaMerZ" Chan ...[SNIP]... |