1. Cross-site scripting (reflected)
2. Content type incorrectly stated
Severity: | High |
Confidence: | Certain |
Host: | http://cdn.widgetserver |
Path: | /syndication/json/i |
GET /syndication/json/i Host: cdn.widgetserver.com Proxy-Connection: keep-alive Referer: http://www.cbs.com/ User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.205 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: application/x-javascript Date: Wed, 27 Apr 2011 23:15:41 GMT Expires: Sat, 30 Apr 2011 23:14:41 GMT P3P: CP="NON ADMa OUR IND PHY ONL UNI COM NAV STA" Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 9253 WIDGETBOX.subscriber.Main ...[SNIP]... s":false,"isAdEnabled" |
Severity: | High |
Confidence: | Firm |
Host: | http://cdn.widgetserver |
Path: | /syndication/json/i |
GET /syndication/json/i Host: cdn.widgetserver.com Proxy-Connection: keep-alive Referer: http://www.cbs.com/ User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.205 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Content-Type: application/x-javascript Date: Wed, 27 Apr 2011 23:15:28 GMT Expires: Sun, 7 May 1995 12:00:00 GMT P3P: CP="NON ADMa OUR IND PHY ONL UNI COM NAV STA" Pragma: no-cache Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 1161 WIDGETBOX.subscriber.Main ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://cdn.widgetserver |
Path: | /syndication/xml/i |
GET /syndication/xml/i Host: cdn.widgetserver.com Proxy-Connection: keep-alive Referer: http://cdn.widgetserver Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.205 Safari/534.16 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/xml;charset=UTF-8 Date: Wed, 27 Apr 2011 23:17:02 GMT Expires: Sat, 30 Apr 2011 23:16:02 GMT P3P: CP="NON ADMa OUR IND PHY ONL UNI COM NAV STA" Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 3414 <response><widgets> ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://cdn.widgetserver |
Path: | /syndication/xml/i |
GET /syndication/xml/i Host: cdn.widgetserver.com Proxy-Connection: keep-alive Referer: http://cdn.widgetserver Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.205 Safari/534.16 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Content-Type: text/xml;charset=UTF-8 Date: Wed, 27 Apr 2011 23:16:41 GMT Expires: Sun, 7 May 1995 12:00:00 GMT P3P: CP="NON ADMa OUR IND PHY ONL UNI COM NAV STA" Pragma: no-cache Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 1696 <response><widgets> ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://cdn.widgetserver |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Host: cdn.widgetserver.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.205 Safari/534.16 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Accept-Ranges: bytes Content-Type: text/plain; charset=UTF-8 Date: Thu, 28 Apr 2011 10:31:43 GMT ETag: "47e-44a9bfa34e740+gzip" Last-Modified: Fri, 11 Apr 2008 17:08:05 GMT P3P: CP="NON ADMa OUR IND PHY ONL UNI COM NAV STA" Server: ECS (dca/5329) Vary: Accept-Encoding X-Cache: HIT Content-Length: 1150 ............ .h.......(....... ..... ......................... ...[SNIP]... |