1. Cross-site scripting (reflected)
2. Cookie without HttpOnly flag set
2.2. http://www.symform.com/error.aspx
3. Cross-domain Referer leakage
4. Cross-domain script include
4.2. http://www.symform.com/error.aspx
6.2. http://www.symform.com/error.aspx
Severity: | High |
Confidence: | Certain |
Host: | http://www.symform.com |
Path: | /error.aspx |
GET /error.aspx74426<script>alert(1)< Host: www.symform.com Proxy-Connection: keep-alive Referer: http://www.symform.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 404 Not Found Cache-Control: private Content-Type: text/html; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:29 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g X-AspNet-Version: 2.0.50727 Content-Length: 1776 Connection: keep-alive <?xml version="1.0" ?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... </strong>/error.aspx74426<script>alert(1)< ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.symform.com |
Path: | / |
GET / HTTP/1.1 Host: www.symform.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:21 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Content-Length: 21365 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.symform.com |
Path: | /error.aspx |
GET /error.aspx?aspxerrorpath Host: www.symform.com Proxy-Connection: keep-alive Referer: http://www.symform.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:27 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Content-Length: 16742 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.symform.com |
Path: | /error.aspx |
GET /error.aspx?aspxerrorpath Host: www.symform.com Proxy-Connection: keep-alive Referer: http://www.symform.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:27 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Content-Length: 16742 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... </script> <script type="text/javascript" src="http://www.google ...[SNIP]... <div id="social-network"> <a href="http://www.facebook <a href="http://www.linkedin <a href="http://www.twitter <a href="http://www.youtube ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.symform.com |
Path: | / |
GET / HTTP/1.1 Host: www.symform.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:21 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Content-Length: 21365 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... </script> <script type="text/javascript" src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.symform.com |
Path: | /error.aspx |
GET /error.aspx?aspxerrorpath Host: www.symform.com Proxy-Connection: keep-alive Referer: http://www.symform.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:27 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Content-Length: 16742 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... </script> <script type="text/javascript" src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.symform.com |
Path: | / |
TRACE / HTTP/1.0 Host: www.symform.com Cookie: 3610bc0d066172b4 |
HTTP/1.1 200 OK Content-Type: message/http Date: Fri, 24 Jun 2011 01:46:22 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Content-Length: 218 Connection: Close TRACE / HTTP/1.1 host: www.symform.com Cookie: 3610bc0d066172b4; ASP.NET_SessionId X-Forwarded-For: 173.193.214.243 X-Forwarded-Port: 80 X-Forwarded-Proto: http Connection: keep-alive |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.symform.com |
Path: | / |
GET / HTTP/1.1 Host: www.symform.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:21 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Content-Length: 21365 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... <a class="phone" href="mailto:info@symform.com"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.symform.com |
Path: | /error.aspx |
GET /error.aspx?aspxerrorpath Host: www.symform.com Proxy-Connection: keep-alive Referer: http://www.symform.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:27 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Content-Length: 16742 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... <a class="phone" href="mailto:info@symform.com"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.symform.com |
Path: | / |
GET /robots.txt HTTP/1.0 Host: www.symform.com |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/plain; charset=utf-8 Date: Fri, 24 Jun 2011 01:46:22 GMT Last-Modified: Wed, 22 Jun 2011 19:15:14 GMT Server: Apache/2.2.9 (Debian) mod_mono/2.6.3 mod_ssl/2.2.9 OpenSSL/0.9.8g Vary: Accept-Encoding X-AspNet-Version: 2.0.50727 Content-Length: 122 Connection: Close User-agent: * Disallow: /www-test Disallow: /docs Disallow: /jscript Disallow: /includes Disallow: /ftp Allow: / |