1.1. http://anrtx.tacoda.net/rtx/r.js [N cookie]
1.2. http://anrtx.tacoda.net/rtx/r.js [si parameter]
2. Cookie scoped to parent domain
3. Cookie without HttpOnly flag set
Severity: | High |
Confidence: | Certain |
Host: | http://anrtx.tacoda.net |
Path: | /rtx/r.js |
GET /rtx/r.js HTTP/1.1 Host: anrtx.tacoda.net Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: TID=16de2p81ll7gc1; Anxd=x; N=2:5f3227f22d70c13d |
HTTP/1.1 200 OK Date: Sun, 07 Nov 2010 20:39:01 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Sun, 07 Nov 2010 20:54:01 GMT Set-Cookie: ANRTT=60190^1^1289766347 Set-Cookie: Tsid=0^1289161512 Set-Cookie: TData=99999|^|#|60190 Set-Cookie: Anxd=x; expires=Mon, 08-Nov-10 02:39:01 GMT; path=/; domain=.tacoda.net Set-Cookie: N=2:54c431981101e514 210d2c62cd6,54c431981101e514c9c Content-Length: 90 Keep-Alive: timeout=60, max=817 Connection: Keep-Alive Content-Type: application/x-javascript var ANUT=1; var ANOO=0; var ANSR=0; var ANTID='16de2p81ll7gc1'; var ANSL; ANRTXR(); |
Severity: | High |
Confidence: | Certain |
Host: | http://anrtx.tacoda.net |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=ADN&si=ed3ac%0d%0a79be230f998&pi=&xs=3&pu=http%253A/ Accept: */* Referer: http://cdn.at.atwola.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: anrtx.tacoda.net Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Date: Sun, 07 Nov 2010 22:24:32 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Sun, 07 Nov 2010 22:39:32 GMT Set-Cookie: TID=16de9p00ivl096; path=/; expires=Wed, 02-Nov-11 22:24:32 GMT; domain=.tacoda.net Set-Cookie: ANRTT=60190^1^1289773472; path=/; expires=Sun, 14-Nov-10 22:24:32 GMT; domain=.tacoda.net Set-Cookie: Tsid=0^1289168672 79be230f998^1289168672^1289170472; path=/; expires=Sun, 07-Nov-10 22:54:32 GMT; domain=.tacoda.net Set-Cookie: TData=99999|^|#|60190; expires=Wed, 02-Nov-11 22:24:32 GMT; path=/; domain=.tacoda.net Set-Cookie: Anxd=x; expires=Mon, 08-Nov-10 04:24:32 GMT; path=/; domain=.tacoda.net Set-Cookie: N=2:5f3227f22d70c13d Content-Length: 108 Content-Type: application/x-javascript var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16de9p00ivl096'; var ANSL='99999|^|#|60190'; ANRTXR(); |
Severity: | Information |
Confidence: | Certain |
Host: | http://anrtx.tacoda.net |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=ADN&si Accept: */* Referer: http://cdn.at.atwola.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: anrtx.tacoda.net Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Date: Sun, 07 Nov 2010 20:25:12 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Sun, 07 Nov 2010 20:40:12 GMT Set-Cookie: TID=16de2p81ll7gc1; path=/; expires=Wed, 02-Nov-11 20:25:12 GMT; domain=.tacoda.net Set-Cookie: ANRTT=60190^1^1289766312; path=/; expires=Sun, 14-Nov-10 20:25:12 GMT; domain=.tacoda.net Set-Cookie: Tsid=0^1289161512 Set-Cookie: TData=99999|^|#|60190; expires=Wed, 02-Nov-11 20:25:12 GMT; path=/; domain=.tacoda.net Set-Cookie: Anxd=x; expires=Mon, 08-Nov-10 02:25:12 GMT; path=/; domain=.tacoda.net Set-Cookie: N=2:5f3227f22d70c13d Content-Length: 108 Content-Type: application/x-javascript var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16de2p81ll7gc1'; var ANSL='99999|^|#|60190'; ANRTXR(); |
Severity: | Information |
Confidence: | Certain |
Host: | http://anrtx.tacoda.net |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=ADN&si Accept: */* Referer: http://cdn.at.atwola.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: anrtx.tacoda.net Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Date: Sun, 07 Nov 2010 20:25:12 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Sun, 07 Nov 2010 20:40:12 GMT Set-Cookie: TID=16de2p81ll7gc1; path=/; expires=Wed, 02-Nov-11 20:25:12 GMT; domain=.tacoda.net Set-Cookie: ANRTT=60190^1^1289766312; path=/; expires=Sun, 14-Nov-10 20:25:12 GMT; domain=.tacoda.net Set-Cookie: Tsid=0^1289161512 Set-Cookie: TData=99999|^|#|60190; expires=Wed, 02-Nov-11 20:25:12 GMT; path=/; domain=.tacoda.net Set-Cookie: Anxd=x; expires=Mon, 08-Nov-10 02:25:12 GMT; path=/; domain=.tacoda.net Set-Cookie: N=2:5f3227f22d70c13d Content-Length: 108 Content-Type: application/x-javascript var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16de2p81ll7gc1'; var ANSL='99999|^|#|60190'; ANRTXR(); |
Severity: | Information |
Confidence: | Certain |
Host: | http://anrtx.tacoda.net |
Path: | / |
TRACE / HTTP/1.0 Host: anrtx.tacoda.net Cookie: e4308e49748d5188 |
HTTP/1.1 200 OK Date: Sun, 07 Nov 2010 20:38:43 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 Connection: close Content-Type: message/http TRACE / HTTP/1.0 CLIENTIP: 174.122.23.218 Connection: Keep-Alive Cookie: e4308e49748d5188 Host: anrtx.tacoda.net |