1. Cross-site scripting (reflected)
Severity: | High |
Confidence: | Certain |
Host: | http://www.plosone.org |
Path: | /article/info:doi/10.1371 |
GET /article/info:doi/10.1371 Host: www.plosone.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Sun, 21 Nov 2010 21:42:40 GMT Server: Apache/2.2.3 (CentOS) Set-Cookie: JSESSIONID=F914DB9D7 Cache-Control: max-age=1 Expires: Sun, 21 Nov 2010 21:42:41 GMT Connection: close Content-Type: text/html;charset=UTF-8 Set-Cookie: Coyote-2-95144505 Content-Length: 117546 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org xmlns:foaf="http://xmln ...[SNIP]... <a href="/article/metrics ...[SNIP]... |