1. Cross-site scripting (reflected)
1.1. http://www.solarwinds.com/geek/index.aspx [ctl00%24ctl00%24GlobalNavigation%24q parameter]
1.2. http://www.solarwinds.com/geek/index.aspx [ctl00%24ctl00%24GlobalNavigation%24q parameter]
1.3. http://www.solarwinds.com/geek/index.aspx [ctl00%24ctl00%24GlobalNavigation%24q parameter]
1.4. http://www.solarwinds.com/geek/index.aspx [prevPageName parameter]
1.5. http://www.solarwinds.com/index.aspx [ctl00%24gNav%24q parameter]
1.6. http://www.solarwinds.com/index.aspx [ctl00%24gNav%24q parameter]
1.7. http://www.solarwinds.com/index.aspx [ctl00%24gNav%24q parameter]
1.8. http://www.solarwinds.com/geek/ [Referal_Cookie cookie]
1.9. http://www.solarwinds.com/geek/ [SWI_SiteCatalyst_ID cookie]
1.10. http://www.solarwinds.com/geek/index.aspx [Referal_Cookie cookie]
1.11. http://www.solarwinds.com/geek/index.aspx [Referal_Cookie cookie]
1.12. http://www.solarwinds.com/geek/index.aspx [SWI_SiteCatalyst_ID cookie]
1.13. http://www.solarwinds.com/geek/index.aspx [SWI_SiteCatalyst_ID cookie]
1.14. http://www.solarwinds.com/index.aspx [Referal_Cookie cookie]
1.15. http://www.solarwinds.com/index.aspx [Referal_Cookie cookie]
1.16. http://www.solarwinds.com/index.aspx [SWI_SiteCatalyst_ID cookie]
1.17. http://www.solarwinds.com/index.aspx [SWI_SiteCatalyst_ID cookie]
2. ASP.NET ViewState without MAC enabled
2.1. http://www.solarwinds.com/geek/
2.2. http://www.solarwinds.com/geek/index.aspx
2.3. http://www.solarwinds.com/index.aspx
2.4. http://www.solarwinds.com/register/MoreSoftware.aspx
3. Cross-domain Referer leakage
3.1. http://www.solarwinds.com/geek/index.aspx
3.2. http://www.solarwinds.com/geek/index.aspx
3.3. http://www.solarwinds.com/index.aspx
3.4. http://www.solarwinds.com/register/MoreSoftware.aspx
4. Cross-domain script include
4.1. http://www.solarwinds.com/geek/
4.2. http://www.solarwinds.com/geek/index.aspx
4.3. http://www.solarwinds.com/index.aspx
4.4. http://www.solarwinds.com/register/MoreSoftware.aspx
5. Cookie without HttpOnly flag set
5.1. http://www.solarwinds.com/index.aspx
5.2. http://www.solarwinds.com/writecookie.aspx
6.1. http://www.solarwinds.com/geek/
6.2. http://www.solarwinds.com/geek/index.aspx
6.3. http://www.solarwinds.com/scripts/mouseover.js
6.4. http://www.solarwinds.com/scripts/rounded_corners_lite.inc.js
6.5. http://www.solarwinds.com/scripts/s_code.js
6.6. http://www.solarwinds.com/scripts/sitetracking/s_code.js
Severity: | High |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/index.aspx |
POST /geek/index.aspx HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 16233 __EVENTTARGET=&_ ...[SNIP]... Ryb2xzUmVxdWlyZVBvc3 ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:13:26 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 97505 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><link ...[SNIP]... <h1 style='display:inline'>>>f9b63<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/index.aspx |
POST /geek/index.aspx HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 16233 __EVENTTARGET=&_ ...[SNIP]... Ryb2xzUmVxdWlyZVBvc3 ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:13:24 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 97548 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><link ...[SNIP]... <script language='javascript' ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/index.aspx |
POST /geek/index.aspx HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 16233 __EVENTTARGET=&_ ...[SNIP]... Ryb2xzUmVxdWlyZVBvc3 ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:13:31 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 98316 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><link ...[SNIP]... <title> >>ebee5</title><script </title> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/index.aspx |
POST /geek/index.aspx Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 16154 __EVENTTARGET=ctl00 ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:14:30 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 110934 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1" ...[SNIP]... d('loginpop').hide(); } function popupCloseListner() { //$find('loginpop').hide( var returnurl = '/geek/index.aspx if(returnurl != null && returnurl != '') { window.location = returnurl; } else { window.location.href = window.location; ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /index.aspx |
POST /index.aspx?CMP=EMC-DCE Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 15680 __EVENTTARGET=&_ ...[SNIP]... ZSBGcmVlIERvd25sb2Fk ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:10:34 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 97523 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><link ...[SNIP]... <script language='javascript' ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /index.aspx |
POST /index.aspx?CMP=EMC-DCE Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 15680 __EVENTTARGET=&_ ...[SNIP]... ZSBGcmVlIERvd25sb2Fk ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:10:42 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 97584 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><link ...[SNIP]... <title> ''37f21</title><script </title> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /index.aspx |
POST /index.aspx?CMP=EMC-DCE Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 15680 __EVENTTARGET=&_ ...[SNIP]... ZSBGcmVlIERvd25sb2Fk ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:10:37 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 97480 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><link ...[SNIP]... <h1 style='display:inline'>''4bb13<script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/ |
GET /geek/ HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Cookie: ecm=user_id=0&isMemb |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:12:22 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 105119 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1" ...[SNIP]... <script language="javascript" type="text/javascript"> var additionalSCParams = {"eVar41":"EMC-DCE-SWI-GF </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/ |
GET /geek/ HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Cookie: ecm=user_id=0&isMemb |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:12:25 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 105119 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1" ...[SNIP]... <script language="javascript" type="text/javascript"> var additionalSCParams = {"eVar41":"EMC-DCE-SWI-GF </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/index.aspx |
GET /geek/index.aspx Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:12:44 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 105165 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1" ...[SNIP]... <script language="javascript" type="text/javascript"> var additionalSCParams = {"eVar41":"EMC-DCE-SWI-GF </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/index.aspx |
POST /geek/index.aspx HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 16233 __EVENTTARGET=&_ ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:14:04 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 105165 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1" ...[SNIP]... <script language="javascript" type="text/javascript"> var additionalSCParams = {"eVar41":"EMC-DCE-SWI-GF </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/index.aspx |
POST /geek/index.aspx HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 16233 __EVENTTARGET=&_ ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:14:09 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 105165 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1" ...[SNIP]... <script language="javascript" type="text/javascript"> var additionalSCParams = {"eVar41":"EMC-DCE-SWI-GF </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/index.aspx |
GET /geek/index.aspx Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:12:45 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 105165 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1" ...[SNIP]... <script language="javascript" type="text/javascript"> var additionalSCParams = {"eVar41":"EMC-DCE-SWI-GF </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /index.aspx |
POST /index.aspx?CMP=EMC-DCE Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 15680 __EVENTTARGET=&_ ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:12:06 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 121260 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><m ...[SNIP]... mpaign='';s.state='';s var s_code=s.t();if(s_code </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /index.aspx |
GET /index.aspx?CMP=EMC-DCE Accept: */* Referer: http://now.eloqua.com/es Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Cookie: s_camapign_cvp=%5B%5B |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:09:03 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Set-Cookie: Referal_Cookie=EMC-DCE Vary: Accept-Encoding Content-Length: 121310 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><m ...[SNIP]... mpaign='';s.state='';s var s_code=s.t();if(s_code </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /index.aspx |
POST /index.aspx?CMP=EMC-DCE Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Content-Type: application/x-www-form Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Pragma: no-cache Cookie: ecm=user_id=0&isMemb Content-Length: 15680 __EVENTTARGET=&_ ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:12:13 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 121260 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><m ...[SNIP]... ucts='';s.purchaseID='';s var s_code=s.t();if(s_code </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /index.aspx |
GET /index.aspx?CMP=EMC-DCE Accept: */* Referer: http://now.eloqua.com/es Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Cookie: s_camapign_cvp=%5B%5B |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:09:02 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Set-Cookie: Referal_Cookie=EMC-DCE Vary: Accept-Encoding Content-Length: 121310 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><m ...[SNIP]... ucts='';s.purchaseID='';s var s_code=s.t();if(s_code </script> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.solarwinds.com |
Path: | /geek/ |
GET /geek/ HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.solarwinds.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.solarwinds.com Proxy-Connection: Keep-Alive Cookie: ecm=user_id=0&isMemb |
HTTP/1.1 200 OK Cache-Control: private Date: Fri, 19 Nov 2010 21:10:35 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=7 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 p3p: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Vary: Accept-Encoding Content-Length: 105091 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1" ...[SNIP]... <input type="hidden" name="__VIEWSTATE" id="__VIEWSTATE" value="/wEPDwUJNjAxMDc2MjIz |