1. Cross-site scripting (stored)
2. Cross-site scripting (reflected)
3. Cleartext submission of password
4. Password field with autocomplete enabled
5. Cross-domain Referer leakage
6. Cookie without HttpOnly flag set
7. Content type incorrectly stated
7.1. http://SmarterStats 6.x (6.2.4100):9999/Admin/frmViewReports.aspx
7.2. http://SmarterStats 6.x (6.2.4100):9999/Client/frmCustomReport.aspx
7.3. http://SmarterStats 6.x (6.2.4100):9999/default.aspx
Severity: | High |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Client/frmCustomReport |
POST /Client/frmCustomRep Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Cache-Control: max-age=0 Origin: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 18917 __EVENTTARGET=ctl00 ...[SNIP]... wNoZBYCZg8PFgIfA2hkF |
GET /Client/frmCustomReport Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:28:31 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/html; charset=utf-8 Connection: Close Content-Length: 30060 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><title> Custom Report - SmarterSta ...[SNIP]... <td>8b487<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Client/frmCustomReports |
POST /Client/frmCustomReport Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Origin: http://SmarterStats 6.x (6.2.4100):9999 X-Requested-With: XMLHttpRequest Cache-Control: no-cache X-MicrosoftAjax: Delta=true User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 5835 ctl00%24ScriptManager1 ...[SNIP]... 9wTw3zp0Q%2FFDJi2f ...[SNIP]... |
GET /Client/frmCustomReports Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:28:28 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/html; charset=utf-8 Connection: Close Content-Length: 19252 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><title> Custom Reports - SmarterSt ...[SNIP]... <td>99e6d<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Client/frmFavoriteR |
POST /Client/frmFavoriteReport Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Cache-Control: max-age=0 Origin: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 7407 __EVENTTARGET=ctl00%24BPH ...[SNIP]... DxBkZBYAZAIED2QWAgIB ...[SNIP]... |
GET /Client/frmFavoriteR Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:28:31 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/html; charset=utf-8 Connection: Close Content-Length: 15700 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><title> Favorite Reports - Smarter ...[SNIP]... <td class="rc">9dcad<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Default.aspx |
POST /Client/frmFavoriteReport Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Cache-Control: max-age=0 Origin: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 7407 __EVENTTARGET=ctl00%24BPH ...[SNIP]... DxBkZBYAZAIED2QWAgIB ...[SNIP]... |
POST /Default.aspx?Impers Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Origin: http://SmarterStats 6.x (6.2.4100):9999 X-Requested-With: XMLHttpRequest Cache-Control: no-cache X-MicrosoftAjax: Delta=true User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 526 ctl00%24ScriptManager1 ...[SNIP]... |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:28:34 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/plain; charset=utf-8 Connection: Close Content-Length: 48299 1|#||4|32173|updatePanel <div class="PageTitle" id="SectionHeader"> <div class="RoundedPageTi <div class="RoundedPageTi ...[SNIP]... <a class='htvA' href='#'>ee4d7<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Default.aspx |
POST /Client/frmCustomReport Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Origin: http://SmarterStats 6.x (6.2.4100):9999 X-Requested-With: XMLHttpRequest Cache-Control: no-cache X-MicrosoftAjax: Delta=true User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 5835 ctl00%24ScriptManager1 ...[SNIP]... 9wTw3zp0Q%2FFDJi2f ...[SNIP]... |
POST /Default.aspx?Impers Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Origin: http://SmarterStats 6.x (6.2.4100):9999 X-Requested-With: XMLHttpRequest Cache-Control: no-cache X-MicrosoftAjax: Delta=true User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 526 ctl00%24ScriptManager1 ...[SNIP]... |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:28:32 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/plain; charset=utf-8 Connection: Close Content-Length: 41841 1|#||4|27801|updatePanel <div class="PageTitle" id="SectionHeader"> <div class="RoundedPageTi <div class="RoundedPageTi ...[SNIP]... <a class='htvA' href='#'>ea8f7<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Client/frmFavoriteReport |
POST /Client/frmFavoriteReport Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Cache-Control: max-age=0 Origin: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 7407 __EVENTTARGET=ctl00%24BPH ...[SNIP]... AIED2QWAgIBD2QWAmYPE ...[SNIP]... |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:29:25 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/html; charset=utf-8 Connection: Close Content-Length: 41272 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><title> Favorite Reports - Smarter ...[SNIP]... <td class="rc">Top Pages37158<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /login.aspx |
GET /login.aspx HTTP/1.1 Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:20:30 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/html; charset=utf-8 Connection: Close Content-Length: 8691 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><ti ...[SNIP]... <body class="Login" dir="ltr"> <form name="aspnetForm" method="post" action="login.aspx" id="aspnetForm"> <div> ...[SNIP]... </div> <input name="ctl00$MPH </div> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /login.aspx |
GET /login.aspx HTTP/1.1 Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:20:30 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/html; charset=utf-8 Connection: Close Content-Length: 8691 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><ti ...[SNIP]... <body class="Login" dir="ltr"> <form name="aspnetForm" method="post" action="login.aspx" id="aspnetForm"> <div> ...[SNIP]... </div> <input name="ctl00$MPH </div> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Admin/GettingStarted |
GET /Admin/GettingStarted Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:57:09 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Connection: Close Content-Length: 9299 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html> <head id="ctl00_head1"><title> Getting Started </title><script ...[SNIP]... <td><a id="ctl00_MPH_Task1L ...[SNIP]... <td><a id="ctl00_MPH_Task2L ...[SNIP]... <td><a id="ctl00_MPH_Task3L ...[SNIP]... <td><a id="ctl00_MPH_Task4L ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /login.aspx |
POST /login.aspx HTTP/1.1 Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Origin: http://SmarterStats 6.x (6.2.4100):9999 X-Requested-With: XMLHttpRequest Cache-Control: no-cache X-MicrosoftAjax: Delta=true User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 949 ctl00%24ScriptManager1 ...[SNIP]... |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:20:54 GMT X-AspNet-Version: 4.0.30319 Set-Cookie: SelectedLanguage=; expires=Wed, 05-May-2021 17:20:54 GMT; path=/ Set-Cookie: loginsettings=gaIINJ Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/plain; charset=utf-8 Content-Length: 40 Connection: Close 1|#||4|15|pageRedirect|| |
Severity: | Information |
Confidence: | Firm |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Admin/frmViewReports |
POST /Admin/frmViewReports Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Origin: http://SmarterStats 6.x (6.2.4100):9999 X-Requested-With: XMLHttpRequest Cache-Control: no-cache X-MicrosoftAjax: Delta=true User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 6845 ctl00%24ScriptManager1 ...[SNIP]... |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:24:35 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/plain; charset=utf-8 Connection: Close Content-Length: 8566 1|#||4|620|updatePanel <div id="ctl00_BPH_btnSen ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /Client/frmCustomReport |
POST /Client/frmCustomReport Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Origin: http://SmarterStats 6.x (6.2.4100):9999 X-Requested-With: XMLHttpRequest Cache-Control: no-cache X-MicrosoftAjax: Delta=true User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 5896 ctl00%24ScriptManager1 ...[SNIP]... |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:28:15 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/plain; charset=utf-8 Connection: Close Content-Length: 13774 1|#||4|9|updatePanel |5280|updatePanel|ctl00 <!-- HyperMultiPage --> <div class='' id='ctl00_MPH_MP1'> <input type="hidden" name="ctl00$MPH$VisibleP ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://SmarterStats 6.x (6.2.4100):9999 |
Path: | /default.aspx |
POST /default.aspx HTTP/1.1 Host: SmarterStats 6.x (6.2.4100):9999 Proxy-Connection: keep-alive Referer: http://SmarterStats 6.x (6.2.4100):9999 Origin: http://SmarterStats 6.x (6.2.4100):9999 X-Requested-With: XMLHttpRequest Cache-Control: no-cache X-MicrosoftAjax: Delta=true User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId Content-Length: 554 ctl00%24ScriptManager1 ...[SNIP]... |
HTTP/1.1 200 OK Server: SmarterTools/2.0.4100 Date: Thu, 05 May 2011 17:24:36 GMT X-AspNet-Version: 4.0.30319 X-Compressed-By: HttpCompress Cache-Control: private Content-Type: text/plain; charset=utf-8 Connection: Close Content-Length: 8055 1|#||4|4816|updatePanel <div class="PageTitle" id="SectionHeader"> <div class="RoundedPageTi <div class="RoundedPageTi ...[SNIP]... |