DORK, XSS, HTTP Header Injection, SQL Injection, Various Hosts, CWE Report

CWE Vulns in Various Hosts | Vulnerability Crawler Report

Report generated by CloudScan Vulnerability Crawler at Sun Feb 06 10:08:17 CST 2011.

DORK CWE-79 XSS Report

Loading

1. SQL injection

1.1. http://googleads.g.doubleclick.net/pagead/ads [fu parameter]

1.2. http://googleads.g.doubleclick.net/pagead/ads [url parameter]

1.3. http://mm.chitika.net/minimall [cb parameter]

1.4. http://mm.chitika.net/minimall [cl_site_link parameter]

1.5. http://mm.chitika.net/minimall [frm parameter]

1.6. http://mm.chitika.net/minimall [output parameter]

1.7. http://pubads.g.doubleclick.net/gampad/ads [flash parameter]

1.8. http://www.baysideeyes.com.au/aboutus.htm [REST URL parameter 1]

1.9. http://www.baysideeyes.com.au/aboutus.htm [name of an arbitrarily supplied request parameter]

1.10. http://www.baysideeyes.com.au/cmsAdmin/uploads/BLEPHARITIS.pdf&s=204.93 [REST URL parameter 1]

1.11. http://www.baysideeyes.com.au/cmsAdmin/uploads/BLEPHARITIS.pdf&s=204.93 [REST URL parameter 2]

1.12. http://www.baysideeyes.com.au/cmsAdmin/uploads/BLEPHARITIS.pdf&s=204.93 [REST URL parameter 3]

1.13. http://www.baysideeyes.com.au/cmsAdmin/uploads/BLEPHARITIS.pdf&s=204.93 [name of an arbitrarily supplied request parameter]

1.14. http://www.baysideeyes.com.au/cmsAdmin/uploads/privacy.htm [REST URL parameter 1]

1.15. http://www.baysideeyes.com.au/cmsAdmin/uploads/privacy.htm [REST URL parameter 2]

1.16. http://www.baysideeyes.com.au/cmsAdmin/uploads/privacy.htm [REST URL parameter 3]

1.17. http://www.baysideeyes.com.au/cmsAdmin/uploads/privacy.htm [name of an arbitrarily supplied request parameter]

1.18. http://www.baysideeyes.com.au/favicon.ico [REST URL parameter 1]

1.19. http://www.baysideeyes.com.au/favicon.ico [name of an arbitrarily supplied request parameter]

1.20. http://www.baysideeyes.com.au/referrer-information.htm [REST URL parameter 1]

1.21. http://www.baysideeyes.com.au/referrer-information.htm [name of an arbitrarily supplied request parameter]

1.22. http://www.baysideeyes.com.au/sitemap.htm [REST URL parameter 1]

1.23. http://www.baysideeyes.com.au/sitemap.htm [name of an arbitrarily supplied request parameter]

1.24. http://www.facebook.com/search/ [name of an arbitrarily supplied request parameter]

1.25. http://www.freedownloadscenter.com/terms/team-calendar/calendar.html [REST URL parameter 1]

1.26. http://www.freedownloadscenter.com/terms/team-calendar/calendar.html [REST URL parameter 2]

1.27. http://www.freedownloadscenter.com/terms/team-calendar/calendar.html [REST URL parameter 3]

1.28. http://www.freedownloadscenter.com/terms/team-calendar/calendar.html [name of an arbitrarily supplied request parameter]

1.29. http://www.linkatopia.com/ [Referer HTTP header]

1.30. http://www.linkatopia.com/ [User-Agent HTTP header]

1.31. http://www.linkatopia.com/ [name of an arbitrarily supplied request parameter]

1.32. http://www.linuxsecurity.com/ads/adjs.php [REST URL parameter 1]

1.33. http://www.linuxsecurity.com/ads/adjs.php [REST URL parameter 2]

1.34. http://www.linuxsecurity.com/ads/adlog.php [REST URL parameter 1]

1.35. http://www.linuxsecurity.com/ads/adlog.php [REST URL parameter 2]

1.36. http://www.linuxsecurity.com/advisories/ [473097ac08cef5345a0ef7ef35a119cd cookie]

1.37. http://www.linuxsecurity.com/advisories/ [Referer HTTP header]

1.38. http://www.linuxsecurity.com/advisories/ [User-Agent HTTP header]

1.39. http://www.linuxsecurity.com/advisories/ [__utma cookie]

1.40. http://www.linuxsecurity.com/advisories/ [__utmb cookie]

1.41. http://www.linuxsecurity.com/advisories/ [__utmc cookie]

1.42. http://www.linuxsecurity.com/advisories/ [__utmz cookie]

1.43. http://www.linuxsecurity.com/advisories/ [name of an arbitrarily supplied request parameter]

1.44. http://www.slackbooks.com/essentialknee [REST URL parameter 1]

1.45. http://www.slackbooks.com/essentialknee [name of an arbitrarily supplied request parameter]

1.46. http://www.slackbooks.com/orthopedics [REST URL parameter 1]

2. LDAP injection

2.1. http://ar.voicefive.com/bmx3/broker.pli [pid parameter]

2.2. http://www.youtube.com/v/VUCJyeb_3Mo [VISITOR_INFO1_LIVE cookie]

3. HTTP header injection

3.1. http://ad.doubleclick.net/ad/N553.158901.DATAXU/B4970757.11 [REST URL parameter 1]

3.2. http://ad.doubleclick.net/ad/N815.286991.WEBBUYERSGUIDE/B5173264 [REST URL parameter 1]

3.3. http://ad.doubleclick.net/ad/N815.zdenterprise/B4597436.59 [REST URL parameter 1]

3.4. http://ad.doubleclick.net/ad/N815.zdenterprise/B4822628.25 [REST URL parameter 1]

3.5. http://ad.doubleclick.net/ad/N815.zdenterprise/B5069510.14 [REST URL parameter 1]

3.6. http://ad.doubleclick.net/ad/N815.zdenterprise/B5069510.30 [REST URL parameter 1]

3.7. http://ad.doubleclick.net/ad/N815.zdenterprise/B5069510.9 [REST URL parameter 1]

3.8. http://ad.doubleclick.net/ad/entzd.eweek/ibmtutorial [REST URL parameter 1]

3.9. http://ad.doubleclick.net/ad/entzd.eweek/ibmwidget/cloudimu [REST URL parameter 1]

3.10. http://ad.doubleclick.net/ad/entzd.eweek/ibmwidget/virtimu [REST URL parameter 1]

3.11. http://ad.doubleclick.net/adi/N553.158901.DATAXU/B4970757.11 [REST URL parameter 1]

3.12. http://ad.doubleclick.net/adj/N553.158901.DATAXU/B4970757.11 [REST URL parameter 1]

3.13. http://ad.doubleclick.net/adj/oiq.man.homeappliance/ [REST URL parameter 1]

3.14. http://ad.doubleclick.net/jump/N553.158901.DATAXU/B4970757.11 [REST URL parameter 1]

3.15. http://bs.serving-sys.com/BurstingPipe/adServer.bs [bwVal parameter]

3.16. http://bs.serving-sys.com/BurstingPipe/adServer.bs [eyeblaster cookie]

3.17. http://bs.serving-sys.com/BurstingPipe/adServer.bs [flv parameter]

3.18. http://bs.serving-sys.com/BurstingPipe/adServer.bs [res parameter]

3.19. http://bs.serving-sys.com/BurstingPipe/adServer.bs [wmpv parameter]

3.20. http://live.activeconversion.com/webtracker/track2.html [avc parameter]

3.21. http://mm.chitika.net/track [target parameter]

3.22. http://www.salesforce.com/servlet/servlet.WebToLead [REST URL parameter 2]

3.23. https://www.salesforce.com/servlet/servlet.WebToLead [REST URL parameter 2]

4. Cross-site scripting (reflected)

4.1. http://ad.doubleclick.net/adj/oiq.man.homeappliance/ [mfg parameter]

4.2. http://ad.doubleclick.net/adj/oiq.man.homeappliance/ [name of an arbitrarily supplied request parameter]

4.3. http://ad.doubleclick.net/adj/oiq.man.homeappliance/ [tile parameter]

4.4. http://appcdn.wibiya.com/Handlers/newsticker.php [callback parameter]

4.5. http://ar.voicefive.com/b/rc.pli [func parameter]

4.6. http://baselinemag.us.intellitxt.com/al.asp [jscallback parameter]

4.7. http://baselinemag.us.intellitxt.com/intellitxt/front.asp [name of an arbitrarily supplied request parameter]

4.8. http://baselinemag.us.intellitxt.com/v4/init [jscallback parameter]

4.9. http://baselinemag.us.intellitxt.com/v4/init [name of an arbitrarily supplied request parameter]

4.10. http://cdn.w55c.net/i/0R8lWflQ0f_326769041.html [btid parameter]

4.11. http://cdn.w55c.net/i/0R8lWflQ0f_326769041.html [ei parameter]

4.12. http://cdn.w55c.net/i/0R8lWflQ0f_326769041.html [rtbhost parameter]

4.13. http://cdn.w55c.net/i/0R8lWflQ0f_326769041.html [wp_exchange parameter]

4.14. http://connect.in.com/kochupusthakam/blog/malayalam-kambi-kathakal-kochu-pusthakam-hot-stories-08e6ccaa51723198405bf5af8bd98aab75c93754.html [REST URL parameter 1]

4.15. http://connect.in.com/kochupusthakam/blog/malayalam-kambi-kathakal-kochu-pusthakam-hot-stories-08e6ccaa51723198405bf5af8bd98aab75c93754.html [REST URL parameter 1]

4.16. http://dean.edwards.name/weblog/2006/03/base/ [REST URL parameter 1]

4.17. http://dean.edwards.name/weblog/2006/03/base/ [REST URL parameter 1]

4.18. http://dean.edwards.name/weblog/2006/03/base/ [REST URL parameter 4]

4.19. http://dean.edwards.name/weblog/2006/03/base/ [name of an arbitrarily supplied request parameter]

4.20. http://digg.com/submit [REST URL parameter 1]

4.21. http://download32.us.intellitxt.com/al.asp [jscallback parameter]

4.22. http://download32.us.intellitxt.com/iframescript.jsp [src parameter]

4.23. http://download32.us.intellitxt.com/intellitxt/front.asp [name of an arbitrarily supplied request parameter]

4.24. http://download32.us.intellitxt.com/v4/advert [jscallback parameter]

4.25. http://download32.us.intellitxt.com/v4/context [jscallback parameter]

4.26. http://download32.us.intellitxt.com/v4/init [jscallback parameter]

4.27. http://download32.us.intellitxt.com/v4/init [name of an arbitrarily supplied request parameter]

4.28. http://driverbyte.com/download-ga-81845gv-gigabyte-vga-driver_freedownload [REST URL parameter 1]

4.29. http://driverbyte.com/download-ga-81845gv-gigabyte-vga-driver_freedownload [REST URL parameter 1]

4.30. http://driverbyte.com/download-ga-81845gv-gigabyte-vga-driver_freedownload [name of an arbitrarily supplied request parameter]

4.31. http://driverbyte.com/download-ga-81845gv-gigabyte-vga-driver_freedownload [name of an arbitrarily supplied request parameter]

4.32. http://flowplayer.org/tools/overlay.html [REST URL parameter 1]

4.33. http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens/d/type/product_problem [REST URL parameter 5]

4.34. http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens/d/type/product_problem [REST URL parameter 7]

4.35. http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens/d/type1a19b%252527%25253balert%2525281%252529%25252f%25252f35f276845e/product_problem&hl=en&client=ca-pub-4582869284305424&adU=www.Rackspace.com/Exchange_Hosting&adT=ImageAd&gl=US&usg=AFQjCNFHyAxyRcv5LqEhS2qHXwW0t83rLQ/ [REST URL parameter 5]

4.36. http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens/d/type1a19b%252527%25253balert%2525281%252529%25252f%25252f35f276845e/product_problem&hl=en&client=ca-pub-4582869284305424&adU=www.Rackspace.com/Exchange_Hosting&adT=ImageAd&gl=US&usg=AFQjCNFHyAxyRcv5LqEhS2qHXwW0t83rLQ/ [REST URL parameter 7]

4.37. http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens/d/type1a19b%27%3balert%281%29%2f%2f35f276845e/product_problem/ [REST URL parameter 7]

4.38. http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens47888%252527%25253balert%252528document.cookie%252529%25252f%25252f8fcf167d281/d/type/product_problem&hl=en&client=ca-pub-4582869284305424&adU=www.Rackspace.com/Exchange_Hosting&adT=ImageAd&gl=US&usg=AFQjCNFt7K-JBKpz6-rzEu72zZg5MwT1cg/ [REST URL parameter 5]

4.39. http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens47888%252527%25253balert%252528document.cookie%252529%25252f%25252f8fcf167d281/d/type/product_problem&hl=en&client=ca-pub-4582869284305424&adU=www.Rackspace.com/Exchange_Hosting&adT=ImageAd&gl=US&usg=AFQjCNFt7K-JBKpz6-rzEu72zZg5MwT1cg/ [REST URL parameter 7]

4.40. http://homeappliance.manualsonline.com/ex/mfg/headline/m/ariens47888%27%3balert%28document.cookie%29%2f%2f8fcf167d281/d/type/product_problem/ [REST URL parameter 5]

4.41. http://img.mediaplex.com/content/0/14302/119028/OI_revised_60days_baker_160x600.js [mpck parameter]

4.42. http://img.mediaplex.com/content/0/14302/119028/OI_revised_60days_baker_160x600.js [mpjs parameter]

4.43. http://img.mediaplex.com/content/0/14302/119028/OI_revised_60days_baker_160x600.js [mpvc parameter]

4.44. http://img.mediaplex.com/content/0/14302/119028/OI_revised_60days_baker_160x600.js [placementid parameter]

4.45. http://info.bisk.com/MCIndex.asp [name of an arbitrarily supplied request parameter]

4.46. http://jlinks.industrybrains.com/jsct [ct parameter]

4.47. http://jlinks.industrybrains.com/jsct [name of an arbitrarily supplied request parameter]

4.48. http://jlinks.industrybrains.com/jsct [tr parameter]

4.49. http://jqueryui.com/themeroller/ [bgColorActive parameter]

4.50. http://jqueryui.com/themeroller/ [bgColorContent parameter]

4.51. http://jqueryui.com/themeroller/ [bgColorDefault parameter]

4.52. http://jqueryui.com/themeroller/ [bgColorError parameter]

4.53. http://jqueryui.com/themeroller/ [bgColorHeader parameter]

4.54. http://jqueryui.com/themeroller/ [bgColorHighlight parameter]

4.55. http://jqueryui.com/themeroller/ [bgColorHover parameter]

4.56. http://jqueryui.com/themeroller/ [bgColorOverlay parameter]

4.57. http://jqueryui.com/themeroller/ [bgColorShadow parameter]

4.58. http://jqueryui.com/themeroller/ [bgImgOpacityActive parameter]

4.59. http://jqueryui.com/themeroller/ [bgImgOpacityContent parameter]

4.60. http://jqueryui.com/themeroller/ [bgImgOpacityDefault parameter]

4.61. http://jqueryui.com/themeroller/ [bgImgOpacityError parameter]

4.62. http://jqueryui.com/themeroller/ [bgImgOpacityHeader parameter]

4.63. http://jqueryui.com/themeroller/ [bgImgOpacityHighlight parameter]

4.64. http://jqueryui.com/themeroller/ [bgImgOpacityHover parameter]

4.65. http://jqueryui.com/themeroller/ [bgImgOpacityOverlay parameter]

4.66. http://jqueryui.com/themeroller/ [bgImgOpacityShadow parameter]

4.67. http://jqueryui.com/themeroller/ [bgTextureActive parameter]

4.68. http://jqueryui.com/themeroller/ [bgTextureContent parameter]

4.69. http://jqueryui.com/themeroller/ [bgTextureDefault parameter]

4.70. http://jqueryui.com/themeroller/ [bgTextureError parameter]

4.71. http://jqueryui.com/themeroller/ [bgTextureHeader parameter]

4.72. http://jqueryui.com/themeroller/ [bgTextureHighlight parameter]

4.73. http://jqueryui.com/themeroller/ [bgTextureHover parameter]

4.74. http://jqueryui.com/themeroller/ [bgTextureOverlay parameter]

4.75. http://jqueryui.com/themeroller/ [bgTextureShadow parameter]

4.76. http://jqueryui.com/themeroller/ [borderColorActive parameter]

4.77. http://jqueryui.com/themeroller/ [borderColorContent parameter]

4.78. http://jqueryui.com/themeroller/ [borderColorDefault parameter]

4.79. http://jqueryui.com/themeroller/ [borderColorError parameter]

4.80. http://jqueryui.com/themeroller/ [borderColorHeader parameter]

4.81. http://jqueryui.com/themeroller/ [borderColorHighlight parameter]

4.82. http://jqueryui.com/themeroller/ [borderColorHover parameter]

4.83. http://jqueryui.com/themeroller/ [cornerRadius parameter]

4.84. http://jqueryui.com/themeroller/ [cornerRadiusShadow parameter]

4.85. http://jqueryui.com/themeroller/ [fcActive parameter]

4.86. http://jqueryui.com/themeroller/ [fcContent parameter]

4.87. http://jqueryui.com/themeroller/ [fcDefault parameter]

4.88. http://jqueryui.com/themeroller/ [fcError parameter]

4.89. http://jqueryui.com/themeroller/ [fcHeader parameter]

4.90. http://jqueryui.com/themeroller/ [fcHighlight parameter]

4.91. http://jqueryui.com/themeroller/ [fcHover parameter]

4.92. http://jqueryui.com/themeroller/ [ffDefault parameter]

4.93. http://jqueryui.com/themeroller/ [fsDefault parameter]

4.94. http://jqueryui.com/themeroller/ [fwDefault parameter]

4.95. http://jqueryui.com/themeroller/ [iconColorActive parameter]

4.96. http://jqueryui.com/themeroller/ [iconColorContent parameter]

4.97. http://jqueryui.com/themeroller/ [iconColorDefault parameter]

4.98. http://jqueryui.com/themeroller/ [iconColorError parameter]

4.99. http://jqueryui.com/themeroller/ [iconColorHeader parameter]

4.100. http://jqueryui.com/themeroller/ [iconColorHighlight parameter]

4.101. http://jqueryui.com/themeroller/ [iconColorHover parameter]

4.102. http://jqueryui.com/themeroller/ [name of an arbitrarily supplied request parameter]

4.103. http://jqueryui.com/themeroller/ [offsetLeftShadow parameter]

4.104. http://jqueryui.com/themeroller/ [offsetTopShadow parameter]

4.105. http://jqueryui.com/themeroller/ [opacityOverlay parameter]

4.106. http://jqueryui.com/themeroller/ [opacityShadow parameter]

4.107. http://jqueryui.com/themeroller/ [thicknessShadow parameter]

4.108. http://lovely-faces.com/index.php [v_sex parameter]

4.109. http://lovely-faces.com/index.php [v_sex parameter]

4.110. http://manual.ariens.com/aowners [REST URL parameter 1]

4.111. http://manual.ariens.com/favicon.ico [REST URL parameter 1]

4.112. http://mm.chitika.net/minimall [callback parameter]

4.113. http://mm.chitika.net/minimall [output parameter]

4.114. http://pubads.g.doubleclick.net/gampad/ads [slotname parameter]

4.115. http://px.owneriq.net/anst/s/oiqrmb.js [REST URL parameter 3]

4.116. http://px.owneriq.net/j/ [pt parameter]

4.117. http://router.infolinks.com/gsd/1296944121644.0 [callback parameter]

4.118. http://router.infolinks.com/gsd/1296944132032.0 [callback parameter]

4.119. http://router.infolinks.com/gsd/1296944168552.0 [callback parameter]

4.120. http://rt32.infolinks.com/action/doq.htm [fuid parameter]

4.121. http://rt32.infolinks.com/action/doq.htm [rid parameter]

4.122. http://rt82.infolinks.com/action/doq.htm [fuid parameter]

4.123. http://rt82.infolinks.com/action/doq.htm [rid parameter]

4.124. http://rt83.infolinks.com/action/doq.htm [fuid parameter]

4.125. http://rt83.infolinks.com/action/doq.htm [rid parameter]

4.126. https://splunk.webex.com/mw0305l/mywebex/default.do [REST URL parameter 1]

4.127. https://splunk.webex.com/mw0305l/mywebex/default.do [REST URL parameter 2]

4.128. http://splunkbase.splunk.com/ [1ffc5%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E46cc332d1dc parameter]

4.129. http://splunkbase.splunk.com/ [name of an arbitrarily supplied request parameter]

4.130. http://splunkbase.splunk.com/account:session/ [REST URL parameter 1]

4.131. http://splunkbase.splunk.com/account:session/ [redir parameter]

4.132. http://splunkbase.splunk.com/apps/All/4.x/ [REST URL parameter 1]

4.133. http://splunkbase.splunk.com/apps/All/4.x/ [REST URL parameter 2]

4.134. http://splunkbase.splunk.com/apps/All/4.x/ [REST URL parameter 3]

4.135. http://splunkbase.splunk.com/apps/All/4.x/ [name of an arbitrarily supplied request parameter]

4.136. http://splunkbase.splunk.com/apps/All/4.x/ [sort parameter]

4.137. http://splunkbase.splunk.com/static/css/splunk_shared.css [REST URL parameter 1]

4.138. http://splunkbase.splunk.com/static/css/splunk_shared.css [REST URL parameter 2]

4.139. http://splunkbase.splunk.com/static/css/splunk_shared.css [REST URL parameter 3]

4.140. http://splunkbase.splunk.com/static/css/splunkbase.css [REST URL parameter 1]

4.141. http://splunkbase.splunk.com/static/css/splunkbase.css [REST URL parameter 2]

4.142. http://splunkbase.splunk.com/static/css/splunkbase.css [REST URL parameter 3]

4.143. http://splunkbase.splunk.com/static/js/splunkbase.js [REST URL parameter 1]

4.144. http://splunkbase.splunk.com/static/js/splunkbase.js [REST URL parameter 2]

4.145. http://splunkbase.splunk.com/static/js/splunkbase.js [REST URL parameter 3]

4.146. http://tipd.com/ [name of an arbitrarily supplied request parameter]

4.147. http://us.blackberry.com/eng/devices/blackberrytorch.jsp [REST URL parameter 3]

4.148. http://us.blackberry.com/smartphones/94178">