1. Cross-site scripting (reflected)
2. Cookie without HttpOnly flag set
3. Cross-domain script include
| Severity: | High | 
| Confidence: | Certain | 
| Host: | http://www.speedshape.com | 
| Path: | /portfolio/wp-content | 
| GET /portfolio/wp-content Host: www.speedshape.com Proxy-Connection: keep-alive Referer: http://www.speedshape.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=0f2893a25b | 
| HTTP/1.1 200 OK Date: Thu, 10 Feb 2011 15:46:11 GMT Server: Apache/2.0.54 X-Powered-By: PHP/5.2.14 Vary: Accept-Encoding Content-Type: text/html Content-Length: 156 //portfolio/wp-content | 
| Severity: | Low | 
| Confidence: | Firm | 
| Host: | http://www.speedshape.com | 
| Path: | / | 
| GET / HTTP/1.1 Host: www.speedshape.com Proxy-Connection: keep-alive Referer: http://www.mmdnewswire Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* | 
| HTTP/1.1 200 OK Date: Thu, 10 Feb 2011 15:40:29 GMT Server: Apache/2.0.54 X-Powered-By: PHP/5.2.14 X-Pingback: http://www.speedshape.com Set-Cookie: PHPSESSID=897460cecd Vary: Accept-Encoding Content-Type: text/html; charset=UTF-8 Content-Length: 110550 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head profi ...[SNIP]... | 
| Severity: | Information | 
| Confidence: | Certain | 
| Host: | http://www.speedshape.com | 
| Path: | / | 
| GET / HTTP/1.1 Host: www.speedshape.com Proxy-Connection: keep-alive Referer: http://www.mmdnewswire Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* | 
| HTTP/1.1 200 OK Date: Thu, 10 Feb 2011 15:40:29 GMT Server: Apache/2.0.54 X-Powered-By: PHP/5.2.14 X-Pingback: http://www.speedshape.com Set-Cookie: PHPSESSID=897460cecd Vary: Accept-Encoding Content-Type: text/html; charset=UTF-8 Content-Length: 110550 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head profi ...[SNIP]... <!-- End Of Script Generated By cforms --> <script charset="utf-8" type="text/javascript" src="http://w.sharethis ...[SNIP]... <!-- NextGeEN Gallery CoolIris/PicLens support --> <script type="text/javascript" src="http://lite.piclens ...[SNIP]... | 
| Severity: | Information | 
| Confidence: | Certain | 
| Host: | http://www.speedshape.com | 
| Path: | /portfolio/wp-content | 
| GET /portfolio/wp-content Host: www.speedshape.com Proxy-Connection: keep-alive Referer: http://www.speedshape.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=0f2893a25b | 
| HTTP/1.1 200 OK Date: Thu, 10 Feb 2011 15:40:36 GMT Server: Apache/2.0.54 Last-Modified: Wed, 07 Jul 2010 22:05:01 GMT ETag: "f8fe03-87e3-5c78dd40" Accept-Ranges: bytes Content-Length: 34787 Vary: User-Agent Content-Type: application/x-javascript X-Pad: avoid browser bug // script.aculo.us controls.js v1.8.3, Thu Oct 08 11:23:33 +0200 2009 // Copyright (c) 2005-2009 Thomas Fuchs (http://script.aculo.us, http://mir.aculo.us) // (c) 2005-2009 Ivan Krstic (htt ...[SNIP]... <tdd@tddsworld.com> ...[SNIP]... |