1. Cross-site scripting (reflected)
2. Cross-domain Referer leakage
3. Cookie without HttpOnly flag set
3.2. http://adsfac.us/link.asp
3.3. http://adsfac.us/link.asp
Severity: | High |
Confidence: | Certain |
Host: | http://adsfac.us |
Path: | /ag.asp |
GET /ag.asp?cc=ddf63<script>alert(1)< Host: adsfac.us Proxy-Connection: keep-alive Referer: http://www.bostonherald Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.237 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private Pragma: no-cache Content-Length: 293 Content-Type: text/html Expires: Sat, 29 Jan 2011 01:55:08 GMT Server: Microsoft-IIS/7.0 Set-Cookie: FSddf63%3Cscript%3Ealert Set-Cookie: FSddf63%3Cscript%3Ealert P3P: CP="NOI DSP COR NID CUR OUR NOR" Date: Sat, 29 Jan 2011 01:56:07 GMT Connection: close if (typeof(fd_clk) == 'undefined') {var fd_clk = 'http://ADSFAC.US/link ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://adsfac.us |
Path: | /link.asp |
GET /link.asp?cc=QAN007 Host: adsfac.us Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: FSQAN007310005=uid |
HTTP/1.1 302 Object moved Cache-Control: private Content-Length: 276 Content-Type: text/html Expires: Sat, 29 Jan 2011 05:19:26 GMT Location: http://www.qantasvac Server: Microsoft-IIS/7.0 Set-Cookie: FSQAN007=pctl=310005 P3P: CP="NOI DSP COR NID CUR OUR NOR" Date: Sat, 29 Jan 2011 05:20:26 GMT Connection: close <head><title>Object moved</title></head> <body><h1>Object Moved</h1>This object may be found <a HREF="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://adsfac.us |
Path: | /ag.asp |
GET /ag.asp?cc=QAN007.310005 Host: adsfac.us Proxy-Connection: keep-alive Referer: http://www.bostonherald Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.237 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private Pragma: no-cache Content-Length: 1042 Content-Type: text/javascript Expires: Fri, 28 Jan 2011 23:44:09 GMT Server: Microsoft-IIS/7.0 Set-Cookie: FSQAN007310005=uid Set-Cookie: FSQAN007=pctl=310005&fpt P3P: CP="NOI DSP COR NID CUR OUR NOR" Date: Fri, 28 Jan 2011 23:45:09 GMT Connection: close if (typeof(fd_clk)== ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://adsfac.us |
Path: | /link.asp |
GET /link.asp HTTP/1.1 Host: adsfac.us Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: FSQAN007310005=uid |
HTTP/1.1 302 Object moved Cache-Control: private Content-Length: 152 Content-Type: text/html Expires: Sat, 29 Jan 2011 05:19:26 GMT Location: http://www.facilitat Server: Microsoft-IIS/7.0 Set-Cookie: FS=fpt=0%2C0%2C&pctcrt=1 P3P: CP="NOI DSP COR NID CUR OUR NOR" Date: Sat, 29 Jan 2011 05:20:26 GMT Connection: close <head><title>Object moved</title></head> <body><h1>Object Moved</h1>This object may be found <a HREF="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://adsfac.us |
Path: | /link.asp |
GET /link.asp?cc=QAN007 Host: adsfac.us Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: FSQAN007310005=uid |
HTTP/1.1 302 Object moved Cache-Control: private Content-Length: 276 Content-Type: text/html Expires: Sat, 29 Jan 2011 05:19:26 GMT Location: http://www.qantasvac Server: Microsoft-IIS/7.0 Set-Cookie: FSQAN007=pctl=310005 P3P: CP="NOI DSP COR NID CUR OUR NOR" Date: Sat, 29 Jan 2011 05:20:26 GMT Connection: close <head><title>Object moved</title></head> <body><h1>Object Moved</h1>This object may be found <a HREF="http://www ...[SNIP]... |