1. Cross-site scripting (reflected)
2. Cross-domain Referer leakage
3. Cross-domain script include
4.1. http://www.ndbc.noaa.gov/rss/ndbc_obs_search.php
4.2. http://www.ndbc.noaa.gov/rss/xsl_mop-up.js
4.3. http://www.ndbc.noaa.gov/sar.php
4.4. http://www.ndbc.noaa.gov/show_plot.php
4.5. http://www.ndbc.noaa.gov/station_realtime.php
Severity: | High |
Confidence: | Certain |
Host: | http://www.ndbc.noaa.gov |
Path: | /rss/ndbc_obs_search.php |
GET /rss/ndbc_obs_search.php/d6e4c<a%20xmlns%3aa%3d Host: www.ndbc.noaa.gov Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: fsr.s={"v":1,"rid": |
HTTP/1.1 200 OK Date: Sat, 26 Feb 2011 02:29:20 GMT Server: Apache X-Powered-By: PHP/5.1.6 Cache-Control: max-age=600, must-revalidate Expires: Sat, 26 Feb 2011 02:39:20 GMT Vary: Accept-Encoding Content-Length: 1650 Connection: close Content-Type: text/xml <?xml version="1.0"?> <?xml-stylesheet type="text/xsl" href="/rss/ndbcrss.xsl"?> <rss version="2.0" xmlns:georss="http://www <channel> ...[SNIP]... <br /> Example: http://www.ndbc.noaa.gov ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.ndbc.noaa.gov |
Path: | /station_page.php |
GET /station_page.php?station Host: www.ndbc.noaa.gov Proxy-Connection: keep-alive Referer: http://www.erh.noaa.gov Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: fsr.s={"v":1,"rid": |
HTTP/1.1 200 OK Date: Fri, 25 Feb 2011 21:18:10 GMT Server: Apache X-Powered-By: PHP/5.1.6 Cache-Control: max-age=900, must-revalidate Expires: Fri, 25 Feb 2011 21:33:10 GMT Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=ISO-8859-1 Content-Length: 60905 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-eq ...[SNIP]... <link rel="stylesheet" href="/style/ndbc.css" type="text/css" /> <script src="http://maps.google ...[SNIP]... </a> <a href="http://www.weather ...[SNIP]... <td align="right"><a href="http://www.weather ...[SNIP]... <td width="20%" align="center"><a href="http://www.weather ...[SNIP]... <br /> <a href="http://ioos.gov/" title="IOOS Program" class="nav">IOOS® Program</a> ...[SNIP]... <br /> <a href="http://www.usa.gov/ ...[SNIP]... <h1 style="text-align:center; margin:3px;">Station 44018 <a href='http://www.navcen ...[SNIP]... <div id="ndbcmapnwslinks" style="text-align:left <a href="http://www.weather ...[SNIP]... <td width="70%" align="left" class="gray_no_line"><a href="http://www.doc.gov/ ...[SNIP]... <td width="15%" align="left"> <a href="http://www.weather ...[SNIP]... <br /> <a href="http://www.weather ...[SNIP]... <br /> <a href="http://www.weather ...[SNIP]... <td width="15%" align="left"> <a href="http://www.weather ...[SNIP]... <br /> <a href="http://www.weather ...[SNIP]... <br /> <a href="http://www.weather ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.ndbc.noaa.gov |
Path: | /station_page.php |
GET /station_page.php?station Host: www.ndbc.noaa.gov Proxy-Connection: keep-alive Referer: http://www.erh.noaa.gov Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: fsr.s={"v":1,"rid": |
HTTP/1.1 200 OK Date: Fri, 25 Feb 2011 21:18:10 GMT Server: Apache X-Powered-By: PHP/5.1.6 Cache-Control: max-age=900, must-revalidate Expires: Fri, 25 Feb 2011 21:33:10 GMT Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=ISO-8859-1 Content-Length: 60905 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-eq ...[SNIP]... <link rel="stylesheet" href="/style/ndbc.css" type="text/css" /> <script src="http://maps.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.ndbc.noaa.gov |
Path: | /rss/ndbc_obs_search.php |
GET /rss/ndbc_obs_search.php HTTP/1.1 Host: www.ndbc.noaa.gov Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: fsr.s={"v":1,"rid": |
HTTP/1.1 200 OK Date: Sat, 26 Feb 2011 02:29:15 GMT Server: Apache X-Powered-By: PHP/5.1.6 Cache-Control: max-age=600, must-revalidate Expires: Sat, 26 Feb 2011 02:39:15 GMT Vary: Accept-Encoding Content-Length: 1563 Connection: close Content-Type: text/xml <?xml version="1.0"?> <?xml-stylesheet type="text/xsl" href="/rss/ndbcrss.xsl"?> <rss version="2.0" xmlns:georss="http://www <channel> ...[SNIP]... <managingEditor>webmaster.ndbc@noaa.gov</managingEditor> ...[SNIP]... <webMaster>webmaster.ndbc@noaa.gov</webMaster> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.ndbc.noaa.gov |
Path: | /rss/xsl_mop-up.js |
GET /rss/xsl_mop-up.js HTTP/1.1 Host: www.ndbc.noaa.gov Proxy-Connection: keep-alive Referer: http://www.ndbc.noaa.gov Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Sat, 26 Feb 2011 14:08:39 GMT Server: Apache Last-Modified: Thu, 04 Oct 2007 21:37:32 GMT ETag: "68813-aa3-97fc7f00" Accept-Ranges: bytes Content-Length: 2723 Cache-Control: must-revalidate Connection: close Content-Type: application/x-javascript // -*-coding: latin-1;-*- // Time-stamp: "2006-05-17 22:06:46 ADT" sburke@cpan.org // A workaround for XSL-to-XHTML systems that don't // implement XSL 'disable-output-escaping= // // sburke@cpan.org, Sean M. Burke. // - I hereby release this JavaScript code into the public domain. var is_decoding; var DEBUG = 0; function complaining (s) { alert(s); return new Error(s,s); } if(!( document.g ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.ndbc.noaa.gov |
Path: | /sar.php |
GET /sar.php HTTP/1.1 Host: www.ndbc.noaa.gov Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: fsr.s={"v":1,"rid": |
HTTP/1.1 200 OK Date: Sat, 26 Feb 2011 02:29:16 GMT Server: Apache X-Powered-By: PHP/5.1.6 Cache-Control: max-age=900, must-revalidate Expires: Sat, 26 Feb 2011 02:44:16 GMT Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=ISO-8859-1 Content-Length: 13082 <HTML lang="en-US"> <HEAD> <title>NDBC - Station not found</title> <LINK rel="stylesheet" href="/style/ndbc.css" type="text/css"> </HEAD> <!-- Start Top Navbar --> <body> <table cellspacing="0" cellp ...[SNIP]... <A HREF="mailto:webmaster.ndbc@noaa.gov"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.ndbc.noaa.gov |
Path: | /show_plot.php |
GET /show_plot.php HTTP/1.1 Host: www.ndbc.noaa.gov Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: fsr.s={"v":1,"rid": |
HTTP/1.1 200 OK Date: Sat, 26 Feb 2011 02:29:16 GMT Server: Apache X-Powered-By: PHP/5.1.6 Cache-Control: max-age=900, must-revalidate Expires: Sat, 26 Feb 2011 02:44:16 GMT Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=ISO-8859-1 Content-Length: 13297 <!-- Cannot put DOCTYPE in error page until navbar include files are cleaned up... <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... <a href="mailto:webmaster.ndbc@noaa.gov"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.ndbc.noaa.gov |
Path: | /station_realtime.php |
GET /station_realtime.php HTTP/1.1 Host: www.ndbc.noaa.gov Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: fsr.s={"v":1,"rid": |
HTTP/1.1 200 OK Date: Sat, 26 Feb 2011 02:29:20 GMT Server: Apache X-Powered-By: PHP/5.1.6 Cache-Control: max-age=900, must-revalidate Expires: Sat, 26 Feb 2011 02:44:20 GMT Vary: Accept-Encoding Connection: close Content-Type: text/html; charset=ISO-8859-1 Content-Length: 13091 <html lang="en-US"> <head> <title>NDBC - Station not found</title> <link rel="stylesheet" href="/style/ndbc.css" type="text/css" /> </head> <!-- Start Top Navbar --> <body> <table cellspacing="0" c ...[SNIP]... <a href="mailto:webmaster.ndbc@noaa.gov"> ...[SNIP]... |