1. Cross-site scripting (reflected)
1.3. http://www.myvirtualpaper.com/doc/lpa-magazine/lpa_nov.2010/2010112201/ [Referer HTTP header]
Severity: | Low |
Confidence: | Certain |
Host: | http://www.myvirtualpaper |
Path: | /doc/cahier-publicitaire |
GET /doc/cahier-publicitaire Host: www.myvirtualpaper.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Referer: http://www.google.com |
HTTP/1.1 200 OK Date: Wed, 01 Dec 2010 06:18:00 GMT Server: Apache X-Powered-By: PHP/5.1.6 Set-Cookie: PHPSESSID=kke8glmuss Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: UNIQID_flash_906311 Content-Length: 5044 Connection: close Content-Type: text/html; charset=UTF-8 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html> <head> <script type="text/javascript"> var gaJsHost = (("https:" == document.location ...[SNIP]... ,publication:"vin-et ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.myvirtualpaper |
Path: | /doc/lpa-magazine/lpa |
GET /doc/lpa-magazine/lpa Host: www.myvirtualpaper.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Referer: http://www.google.com |
HTTP/1.1 200 OK Date: Wed, 01 Dec 2010 06:17:53 GMT Server: Apache X-Powered-By: PHP/5.1.6 Set-Cookie: PHPSESSID=6u8tm8vjer Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: UNIQID_flash_676611 Content-Length: 4786 Connection: close Content-Type: text/html; charset=UTF-8 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html> <head> <script type="text/javascript"> var gaJsHost = (("https:" == document.location ...[SNIP]... e",publication:"lpa ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.myvirtualpaper |
Path: | /doc/lpa-magazine/lpa_nov |
GET /doc/lpa-magazine/lpa_nov Host: www.myvirtualpaper.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Referer: http://www.google.com |
HTTP/1.1 200 OK Date: Wed, 01 Dec 2010 06:17:58 GMT Server: Apache X-Powered-By: PHP/5.1.6 Set-Cookie: PHPSESSID=4gebl83d26 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: UNIQID_flash_916531 Content-Length: 4802 Connection: close Content-Type: text/html; charset=UTF-8 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html> <head> <script type="text/javascript"> var gaJsHost = (("https:" == document.location ...[SNIP]... ",publication:"lpa_nov ...[SNIP]... |