1. Cross-site scripting (reflected)
1.2. http://www.paloaltonetworks.com/cam/switch/index.php [ts parameter]
2. Cross-domain Referer leakage
3. Cross-domain script include
Severity: | High |
Confidence: | Certain |
Host: | http://www.paloalton |
Path: | /cam/switch/index.php |
GET /cam/switch/index.php?ts Host: www.paloaltonetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.scmagazineus Cookie: X-Mapping-mkmfjdci |
HTTP/1.1 200 OK Server: Apache/2.2 Content-Type: text/html; charset=UTF-8 Date: Fri, 22 Jul 2011 20:15:22 GMT Connection: Keep-Alive Content-Length: 8296 <!DOCTYPE html> <html lang="en"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> <meta name="generator" content="Dreamweaver"> <meta name="author" content="C. W. Miller ...[SNIP]... <a href="http://www.facebook ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.paloalton |
Path: | /cam/switch/index.php |
GET /cam/switch/index.php?ts Host: www.paloaltonetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.scmagazineus Cookie: X-Mapping-mkmfjdci |
HTTP/1.1 200 OK Server: Apache/2.2 Content-Type: text/html; charset=UTF-8 Date: Fri, 22 Jul 2011 20:15:11 GMT Connection: Keep-Alive Content-Length: 8287 <!DOCTYPE html> <html lang="en"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> <meta name="generator" content="Dreamweaver"> <meta name="author" content="C. W. Miller ...[SNIP]... <a href="http://www.facebook ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.paloalton |
Path: | /cam/switch/index.php |
GET /cam/switch/index.php?ts Host: www.paloaltonetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.scmagazineus Cookie: X-Mapping-mkmfjdci |
HTTP/1.1 200 OK Server: Apache/2.2 Content-Type: text/html; charset=UTF-8 Date: Fri, 22 Jul 2011 20:15:08 GMT Connection: Keep-Alive Content-Length: 8158 <!DOCTYPE html> <html lang="en"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> <meta name="generator" content="Dreamweaver"> <meta name="author" content="C. W. Miller ...[SNIP]... <li class="fb"><a href="http://www.facebook ...[SNIP]... <li class="tw"><a href="http://twitthis.com ...[SNIP]... <li class="lk"><a href="http://www.linkedin ...[SNIP]... <!-- GOOGLE ANALYTICS CODE --> <script src="http://www.google ...[SNIP]... </script> <script type="text/javascript" language="javascript" src="http://t3.track <!-- ETRIGUE CODE --> <script language="javascript" type="text/javascript" src="http://paloalto <!-- Segment Pixel ... Palo Alto Networks - DO NOT MODIFY --> <img src="http://ad.retargeter <!-- BIZO TRACKING CODE --> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.paloalton |
Path: | /cam/switch/index.php |
GET /cam/switch/index.php?ts Host: www.paloaltonetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.scmagazineus Cookie: X-Mapping-mkmfjdci |
HTTP/1.1 200 OK Server: Apache/2.2 Content-Type: text/html; charset=UTF-8 Date: Fri, 22 Jul 2011 20:15:08 GMT Connection: Keep-Alive Content-Length: 8158 <!DOCTYPE html> <html lang="en"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> <meta name="generator" content="Dreamweaver"> <meta name="author" content="C. W. Miller ...[SNIP]... <!-- GOOGLE ANALYTICS CODE --> <script src="http://www.google ...[SNIP]... </script> <script type="text/javascript" language="javascript" src="http://t3.track <!-- ETRIGUE CODE --> <script language="javascript" type="text/javascript" src="http://paloalto ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.paloalton |
Path: | /js/plugins/jquery |
GET /js/plugins/jquery Host: www.paloaltonetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.paloalton Cookie: X-Mapping-mkmfjdci |
HTTP/1.1 200 OK Server: Apache/2.2 Content-Type: application/x-javascript Date: Fri, 22 Jul 2011 20:12:08 GMT Accept-Ranges: bytes Last-Modified: Tue, 17 May 2011 19:47:09 GMT Content-Length: 9020 Connection: Keep-Alive X-Cache-Info: cached // ColorBox v1.3.9 - a full featured, light-weight, customizable lightbox based on jQuery 1.3 // c) 2009 Jack Moore - www.colorpowered.com - jack@colorpowered.com // Licensed under the MIT license: http://www.opensource.org (function(b,gb){var v="none",t="click",N= ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.paloalton |
Path: | /cam/switch/index.php |
GET /robots.txt HTTP/1.0 Host: www.paloaltonetworks.com |
HTTP/1.1 200 OK Date: Fri, 22 Jul 2011 20:15:08 GMT Server: Apache/2.2 Last-Modified: Sat, 30 Apr 2011 00:14:36 GMT Accept-Ranges: bytes Content-Length: 352 Connection: close Content-Type: text/plain; charset=UTF-8 #------------------------ User-agent: * Disallow: /cgi-bin # no programs Disallow: /js/ Disallow: /flash/ Disallow: /*.pdf$ Disallow: /css/ Disallow: /images/cam/ Disallow: /images/tabs/ Disal ...[SNIP]... |