1.1. http://tacoda.at.atwola.com/rtx/r.js [N cookie]
1.2. http://tacoda.at.atwola.com/rtx/r.js [si parameter]
2. Cookie scoped to parent domain
3. Cookie without HttpOnly flag set
Severity: | High |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=AGU&si Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://www.autobytel.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.237 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ATTACID=a3Z0aWQ9MTZp |
HTTP/1.1 200 OK Date: Mon, 24 Jan 2011 22:22:15 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Mon, 24 Jan 2011 22:37:15 GMT Set-Cookie: ANRTT=60848^1^1296494968 Set-Cookie: Tsid=0^1295907735 Set-Cookie: TData=99999|^|56780|60739 Set-Cookie: Anxd=x; expires=Tue, 25-Jan-11 04:22:15 GMT; path=/; domain=tacoda.at.atwola Set-Cookie: N=2:71e5fe306b3f97af efba738129d,3c9757ed1e17089910d Set-Cookie: ATTAC=a3ZzZWc9OTk5OT Cteonnt-Length: 128 Content-Type: application/x-javascript Content-Length: 128 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16if17a0kq0bgd'; var ANSL='99999|^|56780|60739 ANRTXR(); |
Severity: | High |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=AGU&si=eca17%0d%0a2d0ccfdc61b&pi=M&xs=3&pu=http%253A/ Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://www.autobytel.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.237 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ATTACID=a3Z0aWQ9MTZp |
HTTP/1.1 200 OK Date: Mon, 24 Jan 2011 22:20:49 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Mon, 24 Jan 2011 22:35:49 GMT Set-Cookie: ANRTT=60848^1^1296494968 Set-Cookie: Tsid=0^1295907649 2d0ccfdc61b^1295907649^1295909449; path=/; expires=Mon, 24-Jan-11 22:50:49 GMT; domain=tacoda.at.atwola Set-Cookie: TData=99999|^|56780|60739 Set-Cookie: Anxd=x; expires=Tue, 25-Jan-11 04:20:49 GMT; path=/; domain=tacoda.at.atwola Set-Cookie: N=2:71e5fe306b3f97af Set-Cookie: ATTAC=a3ZzZWc9OTk5OT ntCoent-Length: 128 Content-Type: application/x-javascript Content-Length: 128 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16if17a0kq0bgd'; var ANSL='99999|^|56780|60739 ANRTXR(); |
Severity: | Information |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=AGU&si Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://www.autobytel.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.237 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ATTACID=a3Z0aWQ9MTZp |
HTTP/1.1 200 OK Date: Mon, 24 Jan 2011 21:06:44 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Mon, 24 Jan 2011 21:21:44 GMT Set-Cookie: ANRTT=60848^1^1296494968 Set-Cookie: Tsid=0^1295903204 Set-Cookie: TData=99999|^|56780|60739 Set-Cookie: Anxd=x; expires=Tue, 25-Jan-11 03:06:44 GMT; path=/; domain=tacoda.at.atwola Set-Cookie: N=2:71e5fe306b3f97af Set-Cookie: ATTAC=a3ZzZWc9OTk5OT Cteonnt-Length: 128 Content-Type: application/x-javascript Content-Length: 128 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16if17a0kq0bgd'; var ANSL='99999|^|56780|60739 ANRTXR(); |
Severity: | Information |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=AGU&si Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://www.autobytel.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.237 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ATTACID=a3Z0aWQ9MTZp |
HTTP/1.1 200 OK Date: Mon, 24 Jan 2011 21:06:44 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Mon, 24 Jan 2011 21:21:44 GMT Set-Cookie: ANRTT=60848^1^1296494968 Set-Cookie: Tsid=0^1295903204 Set-Cookie: TData=99999|^|56780|60739 Set-Cookie: Anxd=x; expires=Tue, 25-Jan-11 03:06:44 GMT; path=/; domain=tacoda.at.atwola Set-Cookie: N=2:71e5fe306b3f97af Set-Cookie: ATTAC=a3ZzZWc9OTk5OT Cteonnt-Length: 128 Content-Type: application/x-javascript Content-Length: 128 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16if17a0kq0bgd'; var ANSL='99999|^|56780|60739 ANRTXR(); |