1. Cross-site scripting (reflected)
Severity: | High |
Confidence: | Certain |
Host: | http://www.marinetraffic |
Path: | /ais/datasheet.aspx |
GET /ais/datasheet.aspx Host: www.marinetraffic.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: public, max-age=10 Content-Type: text/html; charset=utf-8 Expires: Thu, 25 Nov 2010 16:02:37 GMT Last-Modified: Thu, 25 Nov 2010 16:02:27 GMT Vary: * Server: Microsoft-IIS/7.0 Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET Date: Thu, 25 Nov 2010 16:02:27 GMT Connection: close Content-Length: 74385 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-e ...[SNIP]... <a href='datasheet.aspx ...[SNIP]... |