1. Cross-site scripting (reflected)
1.1. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [AdID parameter]
1.2. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [AdID parameter]
1.3. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [FlightID parameter]
1.4. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [Redirect parameter]
1.5. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [Redirect parameter]
1.6. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [Segments parameter]
1.7. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [Segments parameter]
1.8. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [TargetID parameter]
1.9. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [TargetID parameter]
1.10. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [Values parameter]
1.11. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [Values parameter]
1.12. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [Values parameter]
1.13. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [sz parameter]
1.14. http://ad.doubleclick.net/adi/N3753.cnn/B4094158.41 [sz parameter]
1.15. http://ad.doubleclick.net/click [openeep parameter]
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:27:33 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8073 <!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. --> <!-- Code auto-generated on Thu Oct 07 23:26:16 EDT 2010 --> <script src="http://s0.2mdn.net ...[SNIP]... /267/%2a/w%3B230758201 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:27:38 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 33852 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 3a4b/f/261/%2a/q ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:26:35 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 33877 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... %3Dv8/3a4b/f/267/%2a/v ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 33877 Cache-Control: no-cache Pragma: no-cache Date: Sun, 07 Nov 2010 20:31:43 GMT Expires: Sun, 07 Nov 2010 20:31:43 GMT <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 37430,37580,38202,38203 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 33877 Cache-Control: no-cache Pragma: no-cache Date: Sun, 07 Nov 2010 20:31:38 GMT Expires: Sun, 07 Nov 2010 20:31:38 GMT <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 37430,37580,38202,38203 this.clickN = ""; this.type = type; this.uniqueId = plcrInfo_1288735998848 this.thirdPartyImpUrl = ""; this. ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:29:44 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 32445 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 1-0%3B0%3B53180471%3B4307 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Set-Cookie: id=c2336402e000096||t P3P: CP="CURa ADMa DEVa PSAo PSDo OUR BUS UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR" Set-Cookie: test_cookie=CheckFor Date: Sun, 07 Nov 2010 20:29:40 GMT Cache-Control: private, x-gzip-ok="" Expires: Sun, 07 Nov 2010 20:29:40 GMT Content-Length: 33904 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 852,34253,36376,37152 this.clickN = ""; this.type = type; this.uniqueId = plcrInfo_1286596196561 this.thirdPartyImpUrl = ""; ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:28:38 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 33877 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 0758201%3B2-0%3B0 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:28:33 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 33877 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 0758201%3B2-0%3B0 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:30:31 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 33877 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 376,37152,37430,37580 this.clickN = ""; this.type = type; this.uniqueId = plcrInfo_1288735998848 this.thirdPartyImpUrl = ""; ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:30:36 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 33877 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 376,37152,37430,37580 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 33874 Cache-Control: no-cache Pragma: no-cache Date: Sun, 07 Nov 2010 22:42:29 GMT Expires: Sun, 07 Nov 2010 22:42:29 GMT <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... 6376,37152,37430,37580 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:25:55 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 33877 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... ck.net/click%3Bh%3Dv8 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3753.cnn/B4094158 |
GET /adi/N3753.cnn/B4094158 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://ads.cnn.com/html Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: ad.doubleclick.net Proxy-Connection: Keep-Alive Cookie: test_cookie=CheckFor |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Sun, 07 Nov 2010 20:25:51 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 33877 <SCRIPT language="JavaScript"> if(typeof(dartCallba var dartCallbackObjects = new Array(); if(typeof(dartCreati var dartCreativeDisplayM ...[SNIP]... ck.net/click%3Bh%3Dv8 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /click |
GET /click;h=v8/3a4b/3/0/*/b Host: ad.doubleclick.net Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: id=c872a402e000091||t |
HTTP/1.1 200 OK Date: Sun, 07 Nov 2010 22:44:08 GMT Server: IBM_HTTP_Server Set-Cookie: SaneID=174.122.23.218 Set-Cookie: JSESSIONID=0000p Cache-Control: no-cache="set-cookie,set Expires: Thu, 01 Dec 1994 16:00:00 GMT Connection: close Content-Type: text/html;charset=ISO Content-Language: en-US Content-Length: 13386 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3 ...[SNIP]... <a href="https://www201 ...[SNIP]... |