1. Cross-site scripting (reflected)
1.1. http://www.shell.us/home/content/usa/aboutshell/lets_go_tpkg/ [REST URL parameter 4]
1.2. http://www.shell.us/home/content/usa/aboutshell/lets_go_tpkg/ [REST URL parameter 5]
Severity: | High |
Confidence: | Certain |
Host: | http://www.shell.us |
Path: | /home/content/usa |
GET /home/content/usa Host: www.shell.us Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Server: Sun-ONE-Web-Server/6.1 Date: Fri, 10 Dec 2010 20:34:05 GMT Content-type: text/html;charset=UTF-8 Last-modified: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache Cache-control: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-language: en Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html lang="EN" xml:lang="EN" dir="ltr" xml ...[SNIP]... <!--Meta file is not found in the path : /usa/html/iwgen ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.shell.us |
Path: | /home/content/usa |
GET /home/content/usa Host: www.shell.us Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Server: Sun-ONE-Web-Server/6.1 Date: Fri, 10 Dec 2010 20:34:06 GMT Content-type: text/html;charset=UTF-8 Last-modified: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache Cache-control: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-language: en Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html lang="EN" xml:lang="EN" dir="ltr" xml ...[SNIP]... <!--Meta file is not found in the path : /usa/html/iwgen ...[SNIP]... |